d.down4loadist.net

Whois Privacy Corp.

Domain Information

The domain d.down4loadist.net registered by Whois Privacy Corp. was initially registered in February of 2015 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Salt Lake City, Utah within the United States which resides on the Hosting Services, Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Utah, United States (US)

Create date:
Thursday, February 19, 2015

Expires date:
Friday, February 19, 2016

Updated date:
Thursday, February 19, 2015

ASN:
AS29854 WESTHOST - WestHost, Inc.,US

Root domain:

Scanner detections:
Detections  (75% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FaglaroEnterprises, PUP.Blisbury (M)
66.67%

VIPRE Antivirus
Threat.4783941, Trojan.Win32.Generic.pak!cobra
66.67%

Emsisoft Anti-Malware
Gen:Variant.Strictor.79472
66.67%

Lavasoft Ad-Aware
Gen:Variant.Strictor.79472
66.67%

ESET NOD32
Win32/ExpressDownloader.K potentially unwanted application
66.67%

Sophos
PUA 'Smile Files Downloader' (of type Adware)
66.67%

MicroWorld eScan
Gen:Variant.Strictor.79472
66.67%

Malwarebytes
PUP.Optional.SmileFiles.A
66.67%

Bitdefender
Gen:Variant.Strictor.79472
66.67%

Avira AntiVirus
APPL/Downloader.Gen4
66.67%

G Data
Gen:Variant.Strictor.79472
66.67%

AVG
Faglaro Enterprises Limited, Generic_r
66.67%

Panda Antivirus
Trj/Genetic.gen
66.67%

avast!
Win32:Downloader-TSH [PUP]
33.33%

F-Secure
Gen:Variant.Strictor.79472
33.33%

The domain d.down4loadist.net has been seen to resolve to the following IP address.

199.195.196.180.static.midphase.com
May 6, 2015

File downloads found at URLs served by d.down4loadist.net.

The following 19 files have been seen to comunicate with d.down4loadist.net in live environments.

URL:
http://d.down4loadist.net/

Web server:
nginx/1.2.1