The domain www.getmydownloadsnow.net registered by Whois Privacy Corp. was initially registered in November of 2014 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Francisco, California within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Northern California) region datacenter.
Registrant:
Whois Privacy Corp.
Registrar:
TLD REGISTRAR SOLUTIONS LTD
Server location:
California, United States (US)
Create date:
Thursday, November 13, 2014
Expires date:
Friday, November 13, 2015
Updated date:
Thursday, November 13, 2014
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.VASSANAKONGSOONGNERN.Q, PUP.ThitimaPhiwsawang.Installer (M), PUP.CoolMirage.VASSANAKONGSOONGNERN
100.00%
K7 AntiVirus
Adware
85.71%
Dr.Web
Adware.Downware.8319, Adware.Yontoo.54
85.71%
Kaspersky
not-a-virus:AdWare.NSIS.Yontoo, not-a-virus:Downloader.Win32.TornTV
71.43%
VIPRE Antivirus
CoolMirage Ltd
71.43%
Sophos
Generic PUA DP, CoolMirage, Generic PUA HF, Generic PUA OG
71.43%
ESET NOD32
NSIS/TrojanDownloader.Adload.AA, NSIS/TrojanDropper.Agent.CB
71.43%
Panda Antivirus
Trj/Chgt.N, Generic Suspicious
28.57%
Trend Micro House Call
Suspicious_GEN.F47V0105, Suspicious_GEN.F47V0216
28.57%
G Data
NSIS.Application.Adload
28.57%
McAfee
Artemis!CB543C48E39E, Artemis!77BB31D9AA84
28.57%
Baidu Antivirus
Adware.NSIS.Yontoo, Trojan.MSIL.ShimChanger
28.57%
Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen, Win32/Virus.Downloader.e28
28.57%
AhnLab V3 Security
Win-PUP/CrossRider
28.57%
The domain www.getmydownloadsnow.net has been seen to resolve to the following 2 IP addresses.
ec2-184-169-167-236.us-west-1.compute.amazonaws.com
November 29, 2014
ec2-184-169-163-148.us-west-1.compute.amazonaws.com
November 29, 2014
File downloads found at URLs served by www.getmydownloadsnow.net.
URL:
http://www.getmydownloadsnow.net/
Google Analytics:
UA-37828094
Title:
“HDVid - The best streaming expirience”
Network:
Amazon Web Services (AWS), running an EC2 instance
Web server:
Apache/2.2.20 (Ubuntu) (PHP/5.3.6-13ubuntu3.9)
Related Domains