download.downloadsetup.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.downloadsetup.net is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Remove Malware from download.downloadsetup.net - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Tuesday, October 08, 2013

Expires date:
Sunday, October 08, 2017

Updated date:
Wednesday, September 09, 2015

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.BandooMedia.V, PUP.Optional.Installer.BandooMedia.X, PUP.Optional.Installer.V, PUP.Optional.Installer.W, PUP.Installer.BandooMedia.V, Threat.Bandoo.Installer, PUP.Bandoo.Installer, PUP.Bandoo.BandooMedia.Installer (M)
95.92%

Malwarebytes
PUP.Optional.Bandoo
91.84%

Avira AntiVirus
TR/Trash.Gen, APPL/Downloader.Gen, Adware/SeaSuite.inze, PUA/SeaSuite.inze, Adware/SeaSuite.inzb, PUA/iLivid.Gen
87.76%

VIPRE Antivirus
iLivid, Threat.5059975, Trojan.Win32.Generic, Threat.4150696
87.76%

Baidu Antivirus
Adware.Win32.iLivid, Adware.Win64.SearchSuite
83.67%

Dr.Web
Adware.Bandoo.13, Trojan.Damaged.1, Adware.Bandoo.19, Adware.Bandoo.179, Adware.Bandoo.194
81.63%

McAfee
Artemis!430BA1894F53, Artemis!F461DB6FE8FE, Artemis!D0475DE2AB77, Artemis!7EFD1599C665, Trojan.Artemis!D7E69954DB3C, Artemis!E3B0CE0B97FA, Artemis!3A64B7034213, Artemis!7454A13642D4, Artemis!47364449E77A
79.59%

McAfee Web Gateway
Artemis, Artemis!Trojan, BehavesLike.Win32.Downloader.tc, BehavesLike.Win32.BadFile.tc
77.55%

AVG
Generic, Win.Threat.Medium, Adware Generic_r
77.55%

Agnitum Outpost
PUA.Toolbar.SearchSuite
75.51%

Fortinet FortiGate
Riskware/Agent, Riskware/ILivid, Riskware/Win64_SearchSuite
71.43%

Qihoo 360 Security
Win32/Virus.WebToolbar.49b, Win32/Virus.Adware.0ca, HEUR/QVM42.0.Malware.Gen, Win32/Virus.Adware.ab3, Win32/Virus.WebToolbar.b87
71.43%

Clam AntiVirus
Win.Adware.Searchsuite-3
71.43%

F-Prot
W32/A-b5444562, W32/S-d6eb7b12, W32/SearchSuite.B, W32/SearchSuite.B.gen, W32/S-c8942c0c
71.43%

AhnLab V3 Security
Adware/Win32.Bandoo, PUP/Win32.Downloader, Win-PUP/SearchSuite, PUP/Win32.SearchSuite
69.39%

The domain download.downloadsetup.net has been seen to resolve to the following IP address.

94.31.0.27.IPYX-076665-ZYO.above.net
December 22, 2013

File downloads found at URLs served by download.downloadsetup.net.

33 / 68    (PUP)

8 / 68      (PUP)

6 / 68      (PUP)

The following 3 files have been seen to comunicate with download.downloadsetup.net in live environments.

Remove Malware from download.downloadsetup.net - Powered by Reason Core Security