cdn.highwinds.service.downloadadmin.com

Download Admin  (via a Proxy Registrant)

Domain Information

The domain cdn.highwinds.service.downloadadmin.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2008. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Morgan, Utah within the United States. The domain is associated with the publisher Download Admin who is located in SAN FRANCISCO, California in the United States.
Registrar:
GODADDY.COM, LLC

Server location:
Utah, United States (US)

Create date:
Thursday, November 06, 2008

Expires date:
Thursday, November 06, 2014

Updated date:
Wednesday, November 20, 2013

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadAdmin.N, PUP.Installer.DownloadAdmin.T, PUP.Installer.Groovecom.Y, PUP.Installer.DownloadAdmin.Q
100.00%

NANO AntiVirus
Trojan.Win32.Downware.crgjbr
100.00%

Dr.Web
Adware.Downware.2220
100.00%

VIPRE Antivirus
DownloadAdmin
100.00%

ESET NOD32
Win32/DownloadAdmin
100.00%

Malwarebytes
PUP.Optional.DownloadAdmin
75.00%

Sophos
Download Admin
75.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
75.00%

Comodo Security
Application.Win32.DownloadAdmin.TTK
50.00%

F-Secure
Adware:W32/WebInstallBundle
25.00%

Avira AntiVirus
ADWARE/Adware.Gen9
25.00%

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader
25.00%

AVG
Generic
25.00%

Clam AntiVirus
Win.Adware.Agent-6650
25.00%

herdProtect (fuzzy)
a variant of c23fc63d946278a8503784075a83e8b4d8c3ac3d
25.00%

The domain cdn.highwinds.service.downloadadmin.com has been seen to resolve to the following 2 IP addresses.

hwcdn.net
April 11, 2014

tlb.hwcdn.net
April 11, 2014

File downloads found at URLs served by cdn.highwinds.service.downloadadmin.com.