download.downloadinfo103.com

Ramu Yalamanchi

Domain Information

The domain download.downloadinfo103.com registered by Ramu Yalamanchi was initially registered in October of 2014 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Thursday, October 9, 2014

Expires date:
Sunday, October 9, 2016

Updated date:
Wednesday, October 14, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (84% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SoftDownloads.N, PUP.Installer.SoftDownloads.M, Threat.Adlogica.Bundler, PUP.Adlogica.SoftDownloads.Bundler (M), PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Adlogica.SoftDown.Bundler (M), PUP.installCore.Download.Installer (M)
93.75%

ESET NOD32
Win32/InstallCore.QH potentially unwanted application, Win32/InstallCore.AFF.gen potentially unwanted application
25.00%

F-Prot
W32/InstallCore.AC.gen
18.75%

Avira AntiVirus
ADWARE/InstallCore.Gen9, ADWARE/InstallCore.Gen7, TR/Dropper.Gen
18.75%

Dr.Web
Trojan.InstallCore.7
12.50%

VIPRE Antivirus
Threat.4150696
12.50%

K7 AntiVirus
Trojan
12.50%

NANO AntiVirus
Riskware.Win32.InstallCore.dhpyjp
12.50%

Sophos
Install Core Click run software
12.50%

AVG
Generic
12.50%

ESET NOD32
Win32/InstallCore.QH (variant)
6.25%

Bkav FE
W32.HfsAdware
6.25%

Agnitum Outpost
PUA.InstallCore
6.25%

herdProtect (fuzzy)
a variant of 46a3209fd5111d95d4dda7ffcf23e5896f7430b6
6.25%

Clam AntiVirus
Win.Trojan.Installcore-331
6.25%

The domain download.downloadinfo103.com has been seen to resolve to the following 5 IP addresses.

ip-184-168-221-47.ip.secureserver.net
October 19, 2015

May 6, 2015

May 6, 2015

October 20, 2014

October 20, 2014

File downloads found at URLs served by download.downloadinfo103.com.

The following 63 files have been seen to comunicate with download.downloadinfo103.com in live environments.

 
Latest 20 of 63 files

URL:
http://download.downloadinfo103.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 36 related domains