1.735322.getsecureinstall.com

Whois Privacy Corp.

Domain Information

The domain 1.735322.getsecureinstall.com registered by Whois Privacy Corp. was initially registered in March of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Remove Malware from 1.735322.getsecureinstall.com - Powered by Reason Core Security
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Virginia, United States (US)

Create date:
Monday, March 31, 2014

Expires date:
Thursday, March 31, 2016

Updated date:
Wednesday, December 02, 2015

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Avira AntiVirus
Adware/iBryte.bxjq, Adware/iBryte.bxoq, Adware/iBryte.bxjz, ADWARE/Adware.Gen7
100.00%

Reason Heuristics
PUP.Installer.WARPINSTALL.N, PUP.Installer.Adknowledge, PUP.Adknowledge.WARPINSTALL.Installer (M), PUP.Adknowledge.WARPINSTALLER.Installer (M)
100.00%

Malwarebytes
PUP.Optional.OptimumInstaller.A
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

K7 Gateway Antivirus
Unwanted-Program
100.00%

NANO AntiVirus
Trojan.Win32.IBryte.cwbnyw, Trojan.Win32.IBryte.cwgube, Trojan.Win32.Agent.cxjjsz
100.00%

Kaspersky
not-a-virus:Downloader.Win32.Agent, HEUR:Trojan.Win32.Generic, Trojan.Win32.Badur
100.00%

Sophos
iBryte Optimum Installer, PUA 'iBryte Optimum Installer'
100.00%

Comodo Security
Application.Win32.IBryte.U, Application.Win32.iBryte.WRP
100.00%

VIPRE Antivirus
Optimum Installer, Trojan.Win32.Generic, Threat.4150696, Threat.4778314
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, Downloader.Agent, AdWare.iBryte
100.00%

Rising Antivirus
PE:Malware.Agent!6.175E, PE:Malware.Agent!6.162B, PE:Malware.iBryte!6.192B
100.00%

AVG
Adware AdPlugin, Win.Threat.Medium, Adware AdPlugin.FF, Adware AdPlugin.DQ, Adware AdPlugin.DL, Adware AdPlugin.FG
100.00%

avast!
Win32:Somoto-N [PUP], Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:IBryte-CY [PUP]
100.00%

Kingsoft AntiVirus
Win32.Troj.DownAgent.bk.(kcloud), Win32.Troj.Badur.hr.(kcloud)
100.00%

The domain 1.735322.getsecureinstall.com has been seen to resolve to the following 4 IP addresses.

ec2-54-243-244-249.compute-1.amazonaws.com
September 9, 2014

ec2-23-21-189-120.compute-1.amazonaws.com
September 9, 2014

ec2-23-21-100-173.compute-1.amazonaws.com
May 10, 2014

ec2-50-17-234-52.compute-1.amazonaws.com
April 20, 2014

File downloads found at URLs served by 1.735322.getsecureinstall.com.

33 / 68    (Adware)

45 / 68    (Adware)

31 / 68    (Adware)

45 / 68    (Adware)

31 / 68    (Adware)

45 / 68    (Adware)

45 / 68    (Adware)

45 / 68    (Adware)

47 / 68    (Adware)

44 / 68    (Adware)

39 / 68    (Adware)

43 / 68    (Adware)

38 / 68    (Adware)

34 / 68    (Adware)

34 / 68    (Adware)

30 / 68    (Adware)

30 / 68    (Adware)

26 / 68    (Adware)

35 / 68    (Adware)

Remove Malware from 1.735322.getsecureinstall.com - Powered by Reason Core Security