cdn.download.fileparade.com

Perion Network Ltd

Domain Information

This is the download CDN (content delivery network) for FileParade / SweetIM hosted files that distribute a download manager to bundle additional adware-type offers including the SweetIM Toolbar and SweetPacks. The domain cdn.download.fileparade.com registered by Perion Network Ltd was initially registered in December of 2005 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network. The domain is associated with the publisher Perion Network Ltd. who is located in Tel Aviv, Israel.
Remove Malware from cdn.download.fileparade.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Wednesday, December 21, 2005

Expires date:
Sunday, January 01, 2017

Updated date:
Wednesday, December 09, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SweetIM.R, PUP.Installer.SweetIM.S, PUP.Installer.SweetIM.J, PUP.Installer.SweetIM.X, PUP.Installer.SweetIM.O, PUP.Installer.SweetIM.K, PUP.Perion.Montera.Bundler (M)
100.00%

Dr.Web
Adware.SweetIM.26, Adware.SweetIM.6, Adware.SweetIM.16, Adware.SweetIM.17
81.48%

ESET NOD32
Win32/SweetIM (variant)
77.78%

Malwarebytes
PUP.Optional.SweetIM
70.37%

VIPRE Antivirus
Sweetpacks/SweetIM, Threat.4789481
70.37%

Comodo Security
Heur.Suspicious
62.96%

Trend Micro House Call
TROJ_GEN.F47V0118, TROJ_GEN.USCD0OACN, TROJ_GEN.F47V1021, TROJ_GEN.F47V0113, TROJ_GEN.F47V1104, TROJ_GEN.F47V0311, TROJ_GEN.F47V0614, TROJ_GEN.F47V0128
48.15%

MicroWorld eScan
Win32/SweetIM.C, Trojan.Generic.8604746, Trojan.Generic.9720627, Trojan.Generic.9971443
37.04%

Bkav FE
W32.Cloddd4.Trojan, W32.Clod768.Trojan, W32.Clod111.Trojan, W32.Clod871.Trojan
37.04%

Emsisoft Anti-Malware
Trojan.Generic.8604746, Trojan.Generic.8815812, Trojan.Generic.9720627, Trojan.Generic.9971443, Trojan.Win32.SweetIM.AMN
37.04%

IKARUS anti.virus
AdWare.SweetIMBar, Trojan.SuspectCRC, Win32.AdWare, PUA.SweetIM
37.04%

McAfee
Artemis!1A2CB2D38399, Artemis!4881AD041C73, Artemis!999FE482443D
33.33%

Bitdefender
Trojan.Generic.8604746, Trojan.Generic.8815812, Trojan.Generic.9720627, Trojan.Generic.9971443
33.33%

Lavasoft Ad-Aware
Trojan.Generic.8604746, Trojan.Generic.9720627, Trojan.Generic.9971443
33.33%

McAfee Web Gateway
Artemis!1A2CB2D38399, Artemis!4881AD041C73, Artemis!999FE482443D, Heuristic.BehavesLike.Win32.ModifiedUPX.C!86
33.33%

The domain cdn.download.fileparade.com has been seen to resolve to the following 15 IP addresses.

a23-62-6-203.deploy.static.akamaitechnologies.com
December 25, 2015

a23-62-6-216.deploy.static.akamaitechnologies.com
December 25, 2015

a23-0-160-97.deploy.static.akamaitechnologies.com
December 7, 2015

a23-0-160-96.deploy.static.akamaitechnologies.com
December 7, 2015

a23-0-160-56.deploy.static.akamaitechnologies.com
December 24, 2014

a23-0-160-48.deploy.static.akamaitechnologies.com
December 24, 2014

a23-3-13-217.deploy.static.akamaitechnologies.com
August 22, 2014

a23-3-13-202.deploy.static.akamaitechnologies.com
August 22, 2014

a23-67-242-73.deploy.static.akamaitechnologies.com
May 30, 2014

a23-67-250-97.deploy.static.akamaitechnologies.com
April 16, 2014

a23-67-250-121.deploy.static.akamaitechnologies.com
April 16, 2014

March 28, 2014

March 28, 2014

a23-67-242-48.deploy.static.akamaitechnologies.com
December 27, 2013

a23-67-242-18.deploy.static.akamaitechnologies.com
December 27, 2013

File downloads found at URLs served by cdn.download.fileparade.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://cdn.download.fileparade.com/.../AngryBirdsSDM.exe  (53572b58cd4c75e45a9bfc8c273cef49)

1 / 68      (Adware)

6 / 68      (Adware)

5 / 68      (Adware)

7 / 68      (Adware)
http://cdn.download.fileparade.com/.../CalibreSDM.exe  (f2df59cd325030fe5134737ac7a4a1dd)

13 / 68    (Adware)

6 / 68      (Adware)

6 / 68      (Adware)

12 / 68    (Adware)
http://cdn.download.fileparade.com/.../FlashPlayerSDM.exe  (4881ad041c73ad1e69e0a91f53773fc3)

6 / 68      (Adware)

26 / 68    (Adware)
http://cdn.download.fileparade.com/.../WinRARSDM.exe  (1a2cb2d3839908702fbda6a030e27e29)

23 / 68    (Adware)

21 / 68    (Adware)

18 / 68    (Adware)
http://cdn.download.fileparade.com/.../PDFcreatorSDM.exe  (d99df35c0bd68c3111b655dced109d0c)

18 / 68    (Adware)
http://cdn.download.fileparade.com/.../AudacitySDM.exe  (378fea61188c8e0d80c5f15f036effd2)

18 / 68    (Adware)

18 / 68    (Adware)

18 / 68    (Adware)

8 / 68      (Adware)

8 / 68      (Adware)
http://cdn.download.fileparade.com/.../gimp_mp_pgr.exe  (50b1c31f5381450465b029f48f244206)

6 / 68      (Adware)
http://cdn.download.fileparade.com/.../WinRARSDM.exe  (1cf5889cdefbc4f477c7aa28090ac444)

6 / 68      (Adware)
http://cdn.download.fileparade.com/.../FlashPlayerSDM.exe  (85cf9b35072c4745b0c25e94980f352b)

4 / 68      (Adware)

6 / 68      (Adware)

The following 70 files have been seen to comunicate with cdn.download.fileparade.com in live environments.

 
Latest 20 of 70 files

URL:
http://cdn.download.fileparade.com/

Title:
“Under Construction”

Web server:
Microsoft-IIS/7.5 (ASP.NET)

Notes from the site - “During the installation you will be offered an alternative search service to be used in your browser(s). You may also be offered one or more additional desktop utilities. You may skip or opt-out of any of these components during installation. SweetPacks offers search-related services designed to make your browsing experience easier and more valuable. These services seamlessly integrate with your browser, providing you with a custom homepage, new tab and alternative default search. All these provide easy access to a powerful web search directly from your browser. Using the search box next to the address bar, or the address bar itself (depending on your browser version), you can directly and easily access search results without having to navigate to any search homepage. These search services are available for Internet Explorer, Firefox and Google Chrome. During installation, you may receive additional applications that may be of interest to you. These include Internet security software; file backup; system utilities; games & gamers networks; mobile apps & games; social connectors; recipes; coupons/retail & price comparison tools; and more. Accepting, skipping or opting-out of these offers is clear and easy to do. Similarly, downloaded offers can be easily removed at any time. You can easily uninstall any or all of the installed components.”
Remove Malware from cdn.download.fileparade.com - Powered by Reason Core Security