download.cdn.expressdownload.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.cdn.expressdownload.net is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Tuesday, October 08, 2013

Expires date:
Sunday, October 08, 2017

Updated date:
Wednesday, September 09, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.BandooMedia.V, PUP.Optional.Installer.W, PUP.Optional.Installer.V, Threat.Bandoo.Installer, PUP.Bandoo.BandooMedia.Installer (M)
100.00%

Malwarebytes
PUP.Optional.Bandoo
86.67%

Dr.Web
Adware.Bandoo.13, Trojan.Damaged.1, Adware.Bandoo.194
86.67%

ESET NOD32
Win32/Toolbar.SearchSuite (variant), Win32/iLivid (variant)
73.33%

Trend Micro House Call
TROJ_GEN.F47V0102, TROJ_GEN.F47V0219, TROJ_GEN.F47V0605, Suspicious_GEN.F47V0617, Suspicious_GEN.F47V0717, Suspicious_GEN.F47V0723
66.67%

AVG
MalSign.Generic, Adware Generic_r.VQ
66.67%

Baidu Antivirus
Adware.Win32.iLivid
66.67%

VIPRE Antivirus
Trojan.Win32.Generic, iLivid, Threat.4150696
60.00%

Kaspersky
not-a-virus:WebToolbar.Win64.SearchSuite, not-a-virus:WebToolbar.Win32.SearchSuite
53.33%

McAfee
Artemis!9556A78BB7AC, Artemis!C242B5A5B592, Artemis!B6A829DFA975, Artemis!875998794E2E, Artemis!430BA1894F53, Artemis!F5B21AD0B250
46.67%

McAfee Web Gateway
Artemis!9556A78BB7AC, Artemis!C242B5A5B592, Artemis!B6A829DFA975, Artemis!875998794E2E
46.67%

IKARUS anti.virus
PUA.Bandoo, PUA.SearchSuite, PUA.Soffer
46.67%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
40.00%

Fortinet FortiGate
Riskware/ILivid, Riskware/Win64_SearchSuite, Riskware/SearchSuite
33.33%

Comodo Security
Application.Win32.iLivid.~A, Application.Win32.SeaSuite.AKA
26.67%

The domain download.cdn.expressdownload.net has been seen to resolve to the following 35 IP addresses.

a23-15-7-88.deploy.static.akamaitechnologies.com
February 1, 2016

a23-15-7-106.deploy.static.akamaitechnologies.com
February 1, 2016

May 5, 2015

May 5, 2015

a23-0-160-75.deploy.static.akamaitechnologies.com
May 3, 2015

a23-62-7-41.deploy.static.akamaitechnologies.com
December 1, 2014

a23-62-7-64.deploy.static.akamaitechnologies.com
December 1, 2014

a184-29-106-74.deploy.static.akamaitechnologies.com
December 1, 2014

a184-29-106-98.deploy.static.akamaitechnologies.com
December 1, 2014

a23-62-6-59.deploy.static.akamaitechnologies.com
October 24, 2014

a23-0-160-65.deploy.static.akamaitechnologies.com
September 3, 2014

a23-0-160-51.deploy.static.akamaitechnologies.com
September 2, 2014

a23-0-160-16.deploy.static.akamaitechnologies.com
September 2, 2014

a184-51-126-67.deploy.static.akamaitechnologies.com
August 20, 2014

a184-51-126-74.deploy.static.akamaitechnologies.com
August 20, 2014

a23-62-6-41.deploy.static.akamaitechnologies.com
August 20, 2014

a23-62-6-96.deploy.static.akamaitechnologies.com
August 20, 2014

May 1, 2014

May 1, 2014

a184-29-105-51.deploy.static.akamaitechnologies.com
March 27, 2014

a184-29-105-27.deploy.static.akamaitechnologies.com
March 27, 2014

a184-51-206-218.deploy.static.akamaitechnologies.com
March 14, 2014

a184-51-206-154.deploy.static.akamaitechnologies.com
March 14, 2014

March 14, 2014

March 14, 2014

a23-67-244-99.deploy.static.akamaitechnologies.com
March 14, 2014

a23-67-244-145.deploy.static.akamaitechnologies.com
March 14, 2014

a23-67-243-97.deploy.static.akamaitechnologies.com
February 5, 2014

a23-67-243-24.deploy.static.akamaitechnologies.com
February 5, 2014

a23-66-230-113.deploy.static.akamaitechnologies.com
February 3, 2014

 
Showing 30 of 35 IP Addresses

File downloads found at URLs served by download.cdn.expressdownload.net.

1 / 68      (PUP)

33 / 68    (PUP)

30 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

14 / 68    (PUP)

15 / 68    (PUP)

14 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

9 / 68      (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

14 / 68    (PUP)

14 / 68    (PUP)

15 / 68    (PUP)

14 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

15 / 68    (PUP)

9 / 68      (PUP)

13 / 68    (PUP)

4 / 68      (Malware)

13 / 68    (PUP)

9 / 68      (PUP)

9 / 68      (PUP)

11 / 68    (PUP)

9 / 68      (PUP)

 
Latest 30 of 57 download URLs

The following 319 files have been seen to comunicate with download.cdn.expressdownload.net in live environments.

 
Latest 20 of 323 files

URL:
http://download.cdn.expressdownload.net/

Web server:
Apache

Facebook:
Shares:  2

Statistics are for the previous month.