Download
Community
knowledgeBase
» www.packagedownloadstower.com
Overview
Analysis
IPs Addresses (10)
Downloads (4)
Network (6)
www.packagedownloadstower.com
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Root domain:
packagedownloadstower.com
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.installCore.BeijingQingchuanglianxiangTechnologyCo.Installer (M), PUP.InstallCore (M), PUP.InstallCore.Fukupef.Installer.Meta (M)
100.00%
ESET NOD32
Win32/InstallCore.ADX.gen potentially unwanted application, Win32/InstallCore.AFO.gen potentially unwanted application
75.00%
IPs Addresses
The domain www.packagedownloadstower.com has been seen to resolve to the following 10 IP addresses.
54.69.198.37
ec2-54-69-198-37.us-west-2.compute.amazonaws.com
May 16, 2016
52.25.41.73
ec2-52-25-41-73.us-west-2.compute.amazonaws.com
May 16, 2016
52.24.26.116
ec2-52-24-26-116.us-west-2.compute.amazonaws.com
May 16, 2016
54.148.57.212
ec2-54-148-57-212.us-west-2.compute.amazonaws.com
May 16, 2016
54.191.37.5
ec2-54-191-37-5.us-west-2.compute.amazonaws.com
April 7, 2016
54.69.11.66
ec2-54-69-11-66.us-west-2.compute.amazonaws.com
April 7, 2016
52.88.159.85
ec2-52-88-159-85.us-west-2.compute.amazonaws.com
April 7, 2016
52.35.10.15
ec2-52-35-10-15.us-west-2.compute.amazonaws.com
April 7, 2016
52.34.170.106
ec2-52-34-170-106.us-west-2.compute.amazonaws.com
April 7, 2016
52.25.23.136
ec2-52-25-23-136.us-west-2.compute.amazonaws.com
April 7, 2016
Downloads
File downloads found at URLs served by www.packagedownloadstower.com.
2 / 68 (PUP)
http://www.packagedownloadstower.com/c?x=H4fNIpjmN0UKH/RFKlcVTF5yQf4b44FK5bnHzDaeO0A=&c=sFb9Qnbvxn9JUn5WGBOLObtigWEWCfhZgc98IZPlgPJeCkXxR7m6Cyd10qeKBhEfABy2oEvwWtRjyb4MZR5KbIUV1wiiam8trFlzdX7GJwFYMMUAzD66tkak4mFqALwI00LhCnn2HUgpTK0 cbvs1POzdaSNyjqdSxDCpKf/MrVU25rd1GsLNgjYMahCSg/g&downloadAs=MusicEditorFree.exe&fallback_url=http://www.downloadonic.com/music-editor.net/.../MusicEditorFree_IS.exe
(9d5b.tmp)
1 / 68 (PUP)
http://www.packagedownloadstower.com/c?x=pADKupoPkmRVd3DNLanqw71Sa/1tRIA2y51K/mg xVI=&c=lmbYpXMexi96PI6X3XaB/7QVIePeGm0GNWfeWKqUQyU11gN00Avv9sK A0NY0U3a1m5tSZS3J434JpoE4POyVIInrYbwdbM1w7dZCsJIz5EldThMNtPpzk4L1HLK7aoZ&downloadAs=FreeWiFiHotspot.exe&fallback_url=http://www.downloadonic.com/free-wifi-hotspot.com/.../FreeWiFiHotspot_IS.exe
(c11fad3ca47cf16c6da1cb1d681045ce)
2 / 68 (PUP)
http://www.packagedownloadstower.com/c?x=rlAgVKjqey0MDKJAqOj2OObp0pvBRkbVtCIySWdGbFY=&c=QOdqexdII7H6de//mrCc8dssxzHTs1bbSKGe1P6QG5BRO2P80OBbbELW5UJMlERMkEbOdlGu95XuolphJHEDL1Mv7bTwu1hgytokviFzl2 NQ5wlzu1OHGw zIXafZlt&downloadAs=FreeSoundRecorder.exe&fallback_url=http://.../
(05df8e142ed9fe2a686eb1be306f06fc)
2 / 68 (PUP)
http://www.packagedownloadstower.com/c?x=p90sOC1YE8iApqB2NHpor2HgNCisB5zkky9eiB9f5tk=&c=Q1RgdMsfTvvZVGgW0HxJs7dF2PddVHAOQ2yc2T45n9H309FJo7M10liicTiUH8gOsLX84tjs1KTQJAn0 ql6bJNzM1A/JvmRTNDeheE9x0KWYLqyXfavBkW5 BKQb0wk&downloadAs=KeyloggerFree.exe&fallback_url=http://www.downloadonic.com/key-logger-free.com/.../KeyloggerFree_IS.exe
(77889e35437c2c2faaf1f8ca161adc47)
Network Communications
The following 6 files have been seen to comunicate with www.packagedownloadstower.com in live environments.
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
036629fbd4864725737a8ba8fe7e8cd6.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
Proxomitron.exe (Proxomitron by Groom-A-Zebu (tm))
X