download.driverrestore.com

383 Media, Inc

Domain Information

The domain download.driverrestore.com registered by 383 Media, Inc was initially registered in November of 2009 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Remove Malware from download.driverrestore.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Saturday, November 07, 2009

Expires date:
Monday, November 07, 2016

Updated date:
Saturday, November 07, 2015

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.N, PUP.Optional.Installer.Q, Optional.DriverWhiz.383MEDIA.Installer.Meta (L), PUP.Air Software.SecureInstaller.Installer (M), PUP.Optional.1NSTALL383MEDIA.Installer, PUP.NewMedia.Installer.Installer (M), PUP.Optional.383Media.Installer
97.96%

Dr.Web
Program.Unwanted.90, Threat.Undefined, Program.Unwanted.448, Program.Unwanted.528, Program.Unwanted.854, Program.Unwanted.796, Program.Unwanted.855
73.47%

McAfee Web Gateway
BehavesLike.Win32.Suspicious.vc, BehavesLike.Win32.Suspicious.wc
69.39%

Clam AntiVirus
Win.Trojan.11518096, Win.Adware.Agent-59058
36.73%

avast!
Win32:Malware-gen
8.16%

Trend Micro House Call
Suspicious_GEN.F47V0327
6.12%

ESET NOD32
Detection.Undefined
4.08%

Qihoo 360 Security
HEUR/QVM42.1.Malware.Gen, HEUR/QVM20.1.Malware.Gen
4.08%

Antiy Labs AVL
Trojan[:HEUR]/Win32.AGeneric
2.04%

The domain download.driverrestore.com has been seen to resolve to the following 4 IP addresses.

cdn-208-111-160-6.iad.llnw.net
September 4, 2014

cdn-208-111-161-254.iad.llnw.net
September 4, 2014

February 2, 2014

February 2, 2014

File downloads found at URLs served by download.driverrestore.com.

4 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

4 / 68      (Adware)

3 / 68      (PUP)

4 / 68      (PUP)

3 / 68      (PUP)
http://download.driverrestore.com/DriverRestore.exe  (fe5d9482969891cf0930a56f7c80d79b)

4 / 68      (Adware)

4 / 68      (Adware)

3 / 68      (Adware)

4 / 68      (Adware)

4 / 68      (Adware)

4 / 68      (Adware)

5 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Adware)

5 / 68      (Adware)

3 / 68      (Adware)

1 / 68      (Adware)

3 / 68      (Adware)

3 / 68      (Adware)

2 / 68      (Adware)

3 / 68      (Adware)

 
Latest 30 of 116 download URLs

The following 29 files have been seen to comunicate with download.driverrestore.com in live environments.

 
Latest 20 of 44 files

URL:
http://download.driverrestore.com/

Web server:
Apache

Remove Malware from download.driverrestore.com - Powered by Reason Core Security