app.installdistribution.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain app.installdistribution.net is registered by proxy through GODADDY.COM, LLC and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Jose, California within the United States which resides on the CDNetworks Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, July 14, 2013

Expires date:
Monday, July 14, 2014

Updated date:
Sunday, July 14, 2013

ASN:
AS36408 CDNETWORKSUS-02 CDNetworks Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Adware.Graftor.108504
100.00%

McAfee
Artemis!EE632490644F
100.00%

Malwarebytes
PUP.Optional.LyricsAd
100.00%

avast!
NSIS:AddLyrics-S [Adw]
100.00%

Kaspersky
not-a-virus:AdWare.Win32.Lyckriks
100.00%

Bitdefender
Gen:Variant.Adware.Graftor.108504
100.00%

Sophos
Generic PUA BN
100.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.108504
100.00%

Microsoft Security Essentials
Adware:Win32/AddLyrics
100.00%

G Data
Gen:Variant.Adware.Graftor.108504
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen
100.00%

ESET NOD32
Win32/Adware.AddLyrics
100.00%

Fortinet FortiGate
Adware/Lyckriks
100.00%

AVG
Generic5
100.00%

Panda Antivirus
Suspicious file
100.00%

The domain app.installdistribution.net has been seen to resolve to the following 2 IP addresses.

November 16, 2013

November 16, 2013

File downloads found at URLs served by app.installdistribution.net.

19 / 68    (PUP)

The following 17 files have been seen to comunicate with app.installdistribution.net in live environments.

 
Latest 20 of 42 files