www.download111bucket.com

Whois Privacy Corp.

Domain Information

The domain www.download111bucket.com registered by Whois Privacy Corp. was initially registered in July of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrar:
INTERNET.BS CORP.

Server location:
Dublin City, Ireland (IE)

Create date:
Friday, July 25, 2014

Expires date:
Monday, July 25, 2016

Updated date:
Sunday, July 26, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallX.Bundle, PUP.Installer.BuildInput.H, PUP.Installer.FileMonarch.F, PUP.Installer.BuildInput.F, PUP.Installer.Adknowledge, PUP.Adknowledge.BuildInput.Bundler (M), PUP.Adknowledge.BootCompute.Installer (M), PUP.installCore.CommandFlux.Installer (M), PUP.Adknowledge.FileMonarch.Bundler (M), PUP.Adknowledge.BuildInput.Installer (M), PUP.Adknowledge.BuildInp.Bundler (M), PUP.Adknowledge.BuildInp.Installer (M), PUP.Adknowledge.BootComp.Installer (M), PUP.Adknowledge.FileMona.Bundler (M)
100.00%

K7 AntiVirus
Riskware , Unwanted-Program , Trojan
61.90%

Dr.Web
Trojan.Click3.5306, Adware.iBryte.480, Trojan.DownLoader11.31896, Trojan.DownLoader11.32067, Trojan.DownLoader11.30244, Adware.iBryte.478
61.90%

VIPRE Antivirus
Trojan.Win32.Clicker, Threat.4778314, Threat.4798837, Threat.4150696
61.90%

Avira AntiVirus
TR/Click.Clikug.A.34, TR/Kazy.439479.9, Adware/iBryte.bxop, ADWARE/Adware.Gen7, Adware/iBryte.bxmz, ADWARE/InstallCo.DX
61.90%

AVG
Adware AdPlugin.AAE, Adware AdPlugin.AAJ, Adware AdPlugin.AEF, Adware AdPlugin.ADE, Clicker, Adware InstallCore
61.90%

Comodo Security
Application.Win32.iBryte.WRP, Application.Win32.AgentCV.HWYE, Application.Win32.InstallCore.GH
61.90%

McAfee
Artemis!0FF2B0F7AD04, Trojan.Artemis!0D59CA479E98, Trojan.Artemis!0E4DD5E60F72
57.14%

Malwarebytes
PUP.Optional.GigaClicks.A, PUP.Optional.Ibryte, PUP.Optional.OptimunInstaller, PUP.Optional.OptimumInstaller.A, PUP.Optional.iBryte
57.14%

avast!
Win32:PUP-gen [PUP], Win32:IBryte-EF [PUP], Win32:Adware-gen [Adw]
57.14%

Kaspersky
Trojan-Clicker.Win32.Agent, not-a-virus:AdWare.Win32.iBryte, not-a-virus:HEUR:AdWare.Win32.iBryte, not-a-virus:Downloader.Win32.Agent
57.14%

Sophos
Mal/Generic-S, iBryte Optimum Installer, PUA 'iBryte Optimum Installer', Virus 'Mal/Inject-CEE'
57.14%

G Data
Trojan.GenericKD.1618449, Win32.Adware.Ibryte, Gen:Variant.Adware.Strictor.61512, Gen:Variant.Application.Kazy.427497, Gen:Variant.Kazy.439479
57.14%

IKARUS anti.virus
Trojan-Clicker.BFNI, Trojan.Win32.Badur, AdWare.AdPlugin
57.14%

NANO AntiVirus
Trojan.Win32.Adpeak.cumkpw, Trojan.Win32.IBryte.deobns, Trojan.Win32.Buzus.debolj, Trojan.Win32.IBryte.ddtkup, Trojan.Win32.Inject.dengxv
57.14%

The domain www.download111bucket.com has been seen to resolve to the following 5 IP addresses.

ns1.ibspark.com
August 13, 2015

ec2-23-21-85-230.compute-1.amazonaws.com
July 1, 2015

ec2-23-21-223-96.compute-1.amazonaws.com
May 4, 2015

ec2-54-204-30-210.compute-1.amazonaws.com
November 29, 2014

ec2-54-235-107-24.compute-1.amazonaws.com
August 26, 2014

File downloads found at URLs served by www.download111bucket.com.

The following 144 files have been seen to comunicate with www.download111bucket.com in live environments.

 
Latest 20 of 156 files

URL:
http://www.download111bucket.com/

Google Analytics:
UA-48689684

Title:
“download111bucket.com”

Web server:
nginx

30 of 618 related domains