download.cdn.torchbrowser.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.cdn.torchbrowser.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the nLayer Communications Internal/Backbone network.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Sunday, January 01, 2012

Expires date:
Sunday, January 01, 2017

Updated date:
Monday, November 03, 2014

ASN:
AS4436 AS-GTT-4436 - nLayer Communications, Inc.,US

Root domain:

Scanner detections:
Detections  (52% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Toolbar.246, Adware.Bandoo.211, Adware.Bandoo.246, Adware.Bandoo.211, Adware.Bandoo.379
58.82%

Bkav FE
W32.HfsAdware
47.06%

ESET NOD32
Win32/Toolbar.SearchSuite potentially unwanted application, Detection.Undefined, Win32/Sality.NBA virus
41.18%

NANO AntiVirus
Trojan.Win32.Downware.crewao, Riskware.Win32.Toolbar.doipql
35.29%

Reason Heuristics
PUP.TorchBrowser.Optional.Installer.Meta (L), Adware.General.AT
29.41%

Agnitum Outpost
Riskware.TorchMedia
29.41%

ESET NOD32
Win32/TorchMedia (variant), Win32/Toolbar.SearchSuite potentially unwanted, Win32/Toolbar.SearchSuite.W potentially unwanted
29.41%

Trend Micro House Call
Suspicious_GEN.F47V1204, Suspicious_GEN.F47V0402, Suspicious_GEN.F47V0215, Suspicious_GEN.F47V1224
29.41%

Baidu Antivirus
PUA.Win32.SearchSuite
29.41%

McAfee Web Gateway
Artemis
23.53%

Fortinet FortiGate
Riskware/TorchMedia
23.53%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Kukacka
23.53%

Clam AntiVirus
Win.Adware.Searchsuite-3
17.65%

Malwarebytes
PUP.Optional.TorchMedia, PUP.Optional.SearchSuite
17.65%

McAfee
Artemis!0CC1F076D554, Artemis!D9460CDE167F, Artemis!D03872A2A34F
17.65%

The domain download.cdn.torchbrowser.com has been seen to resolve to the following 135 IP addresses.

August 23, 2016

August 23, 2016

cdn-208-111-161-254.iad.llnw.net
March 31, 2016

cdn-208-111-160-6.iad.llnw.net
March 31, 2016

a23-220-148-51.deploy.static.akamaitechnologies.com
March 3, 2016

a23-220-148-40.deploy.static.akamaitechnologies.com
March 3, 2016

a23-220-148-59.deploy.static.akamaitechnologies.com
March 2, 2016

a184-51-126-104.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-89.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-163.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-162.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-138.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-107.deploy.static.akamaitechnologies.com
February 28, 2016

a23-15-7-91.deploy.static.akamaitechnologies.com
February 28, 2016

a184-51-126-105.deploy.static.akamaitechnologies.com
February 27, 2016

a23-220-148-57.deploy.static.akamaitechnologies.com
February 25, 2016

a184-51-126-107.deploy.static.akamaitechnologies.com
February 23, 2016

a184-51-126-81.deploy.static.akamaitechnologies.com
February 22, 2016

a184-51-126-96.deploy.static.akamaitechnologies.com
February 22, 2016

a23-0-160-97.deploy.static.akamaitechnologies.com
February 21, 2016

a23-220-148-25.deploy.static.akamaitechnologies.com
February 21, 2016

a23-0-160-90.deploy.static.akamaitechnologies.com
February 15, 2016

a23-220-148-49.deploy.static.akamaitechnologies.com
February 10, 2016

a23-62-6-41.deploy.static.akamaitechnologies.com
February 8, 2016

a23-0-160-65.deploy.static.akamaitechnologies.com
February 8, 2016

a23-62-6-146.deploy.static.akamaitechnologies.com
February 3, 2016

a23-62-6-107.deploy.static.akamaitechnologies.com
February 3, 2016

a23-15-8-73.deploy.static.akamaitechnologies.com
February 3, 2016

a23-15-8-82.deploy.static.akamaitechnologies.com
February 3, 2016

February 3, 2016

 
Showing 30 of 135 IP Addresses

File downloads found at URLs served by download.cdn.torchbrowser.com.

1 / 68      (PUP)

9 / 68      (PUP)

3 / 68      (PUP)

4 / 68      (PUP)
http://download.cdn.torchbrowser.com/cdn/r/.../TorchSetupFull-r0-n-bi.exe  (torchsetupfull-r0-n-bf.exe.aol609a2704-8717-4464-8b17-8ca720477815)

4 / 68      (PUP)

8 / 68      (Infected)

1 / 68      (PUP)

1 / 68      (PUP)

5 / 68      (PUP)

11 / 68    (PUP)

 
Latest 30 of 482 download URLs

The following 931 files have been seen to comunicate with download.cdn.torchbrowser.com in live environments.

 
Latest 20 of 1,185 files

URL:
http://download.cdn.torchbrowser.com/

Web server:
Apache

Facebook:
Shares:  3

Statistics are for the previous month.