download.download-new.com

Corp New Ventures Services

Domain Information

The domain download.download-new.com registered by Corp New Ventures Services was initially registered in April of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Remove Malware from download.download-new.com - Powered by Reason Core Security
Registrar:
ZIGZAGNAMES.COM LLC

Server location:
Arizona, United States (US)

Create date:
Tuesday, April 14, 2015

Expires date:
Thursday, April 14, 2016

Updated date:
Tuesday, April 21, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC

Root domain:

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Downware.1664, Adware.InstallCore.133, Trojan.Packed.24524, Trojan.Packed.24814, Trojan.DownLoader11.3480, Trojan.Packed.30508, Trojan.MulDrop4.64479
78.57%

VIPRE Antivirus
OutBrowse, InstallCore, Threat.4786018, Threat.4823950, Threat.4150696, Threat.4778314, Threat.5063361
78.57%

Sophos
Generic PUA CN, OutBrowse, Generic PUA AL, Install Core, PUA 'Install Core Click run software', PUA 'Install Core', PUA 'OutBrowse' (of type Adware)
76.19%

Reason Heuristics
PUP.OutBrowse.G, PUP.Installer.QuickDownloader.M, PUP.Installer.FastDownloads.M, PUP.Installer.OutBrowse.F, PUP.Installer.Adlogica, PUP.Installer.Outbrowse, Threat.Adknowledge.Bundler, PUP.Outbrowse.Bundler, PUP.Adlogica.Bundler, PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Adknowledge.PremiumInstaller.Installer (M), PUP.Adknowledge.INSTALLDOTEXE.Installer (M), PUP.Outbrowse.Bundler (M)
66.67%

ESET NOD32
Win32/InstallCore.DP potentially unwanted application, Win32/InstallCore.BY potentially unwanted application, Win32/OutBrowse.G potentially unwanted application, Win32/InstallCore.DF potentially unwanted application
66.67%

K7 AntiVirus
Unwanted-Program , Trojan , Adware
61.90%

AVG
MalSign.OutBrowse, InstallC, Adware InstallCore.VP, Adware InstallCore.LA, Adware InstallCore.VA, Adware AdInstaller.ExpressInstall
61.90%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Adware
59.52%

NANO AntiVirus
Trojan.Win32.OutBrowse.csowwk, Trojan.Win32.Generic.cthmwf, Riskware.Win32.InstallCore.dfgloi, Riskware.Win32.InstallCore.dfgmpl
57.14%

Avira AntiVirus
Adware/InstallCore.AU.3, Adware/InstallCore.AU.23, ADWARE/InstallCore.Gen7, Adware/InstallCore.AU.1, APPL/Downloader.Gen
54.76%

Comodo Security
Application.Win32.OutBrowse.~G, Application.Win32.InstallCore.KAU, Application.Win32.Outbrowse.G, Application.Win32.iBryte.M
52.38%

F-Prot
W32/InstallCore.R3.gen, W32/Outbrowse.B.gen, W32/A-dbe1ec51, W32/A-c9057ef6, W32/Ibryte.G.gen, W32/A-825ac5d5, W32/InstallCore.R.gen
50.00%

Vba32 AntiVirus
Downloader.OutBrowse, Downware.InstallCore, BScope.Malware-Cryptor.iBryte, SScope.Malware-Cryptor.iBryte
47.62%

avast!
Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:Trojan-gen, Installer-K [PUP], Win32:PUP-gen [PUP], Win32:IBryte-CH [PUP], Win32:OutBrowse-CH [PUP]
45.24%

Malwarebytes
PUP.Optional.Smart, PUP.Optional.OutBrowse, PUP.Optional.Downloadster, PUP.Optional.Outbrowse, PUP.Optional.InstallCore.A
40.48%

The domain download.download-new.com has been seen to resolve to the following 10 IP addresses.

May 28, 2015

May 3, 2015

cf-190-93-252-129.cloudflare.com
October 9, 2014

cf-190-93-253-129.cloudflare.com
October 9, 2014

ip-184-168-221-65.ip.secureserver.net
April 14, 2014

January 17, 2014

January 17, 2014

January 17, 2014

January 17, 2014

(CloudFlare)
January 17, 2014

File downloads found at URLs served by download.download-new.com.

 
Latest 30 of 81 download URLs

The following 2 files have been seen to comunicate with download.download-new.com in live environments.

URL:
http://download.download-new.com/

Google Analytics:
UA-2249740

Title:
“Download-New.com”

Description:
“Find Cash Advance, Debt Consolidation and more at Download-New.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Download-New.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 298 related domains

Remove Malware from download.download-new.com - Powered by Reason Core Security