The domain download.downloadsetup.net is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Tel Aviv, Israel (IL)
Tuesday, October 08, 2013
Sunday, October 08, 2017
Wednesday, September 09, 2015
AS6461 MFNX MFN - Metromedia Fiber Network
Detections (98% detected)
PUP.Optional.Installer.BandooMedia.V, PUP.Optional.Installer.BandooMedia.X, PUP.Optional.Installer.V, PUP.Optional.Installer.W, PUP.Installer.BandooMedia.V, Threat.Bandoo.Installer, PUP.Bandoo.Installer, PUP.Bandoo.BandooMedia.Installer (M)
TR/Trash.Gen, APPL/Downloader.Gen, Adware/SeaSuite.inze, PUA/SeaSuite.inze, Adware/SeaSuite.inzb, PUA/iLivid.Gen
iLivid, Threat.5059975, Trojan.Win32.Generic, Threat.4150696
Adware.Bandoo.13, Trojan.Damaged.1, Adware.Bandoo.19, Adware.Bandoo.179, Adware.Bandoo.194
Artemis!430BA1894F53, Artemis!F461DB6FE8FE, Artemis!D0475DE2AB77, Artemis!7EFD1599C665, Trojan.Artemis!D7E69954DB3C, Artemis!E3B0CE0B97FA, Artemis!3A64B7034213, Artemis!7454A13642D4, Artemis!47364449E77A
McAfee Web Gateway
Artemis, Artemis!Trojan, BehavesLike.Win32.Downloader.tc, BehavesLike.Win32.BadFile.tc
Generic, Win.Threat.Medium, Adware Generic_r
Riskware/Agent, Riskware/ILivid, Riskware/Win64_SearchSuite
Qihoo 360 Security
Win32/Virus.WebToolbar.49b, Win32/Virus.Adware.0ca, HEUR/QVM42.0.Malware.Gen, Win32/Virus.Adware.ab3, Win32/Virus.WebToolbar.b87
W32/A-b5444562, W32/S-d6eb7b12, W32/SearchSuite.B, W32/SearchSuite.B.gen, W32/S-c8942c0c
AhnLab V3 Security
Adware/Win32.Bandoo, PUP/Win32.Downloader, Win-PUP/SearchSuite, PUP/Win32.SearchSuite
The domain download.downloadsetup.net has been seen to resolve to the following IP address.
December 22, 2013
File downloads found at URLs served by download.downloadsetup.net.
The following 3 files have been seen to comunicate with download.downloadsetup.net in live environments.