download.filewin.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain download.filewin.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in January of 2008. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Madrid, Spain (ES)

Create date:
Tuesday, January 29, 2008

Expires date:
Sunday, January 29, 2017

Updated date:
Friday, March 11, 2016

ASN:
AS45037 HISPAWEB-NETWORK Propelin Consulting S.L.U.,ES

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.VittaliaInternetSL.X, PUP.VittaliaInternetSL.g, PUP.Installer.DownloadAssistant.W, PUP.Vittalia.Bundler, PUP.Vittalia.VittaliaInternet.Bundler (M), PUP.installCore.ISfreemium (M), PUP.Vittalia.Bundler (M), PUP.installCore.ISfreemi (M), PUP.installCore.MaxSetup (M), PUP.Vittalia (M)
100.00%

VIPRE Antivirus
InfoAtoms, Threat.4782551, Threat.4782985, Vittalia Installer
29.41%

Dr.Web
Adware.Downware.355, Adware.Downware.1051, Trojan.Vittalia.38
23.53%

Trend Micro House Call
TROJ_GEN.RCBH1KE, TROJ_GEN.RCBH1K5, TROJ_GEN.R026C0EAO15
17.65%

ESET NOD32
Win32/Toolbar.Babylon, Win32/Toolbar.Babylon potentially unwanted
17.65%

Fortinet FortiGate
W32/Toolbar.BABYLON
17.65%

K7 AntiVirus
Unwanted-Program
17.65%

K7 Gateway Antivirus
Unwanted-Program
17.65%

NANO AntiVirus
Trojan.Win32.Downware.zexrm, Trojan.Win32.Downware.xovuc, Trojan.Win32.Downware.bjltca
17.65%

Kingsoft AntiVirus
VIRUS_UNKNOWN, Win32.Troj.Generic.a.(kcloud)
17.65%

AVG
Skodna.Bundle.d71, Generic
17.65%

Malwarebytes
PUP.BundleInstaller.VIT, PUP.Optional.DownloadAssistant
11.76%

ESET NOD32
Win32/Toolbar.Babylon potentially unwanted application, Win32/DownloadAssistant.A potentially unwanted application
11.76%

SUPERAntiSpyware
Adware.Lollipop/Variant
11.76%

McAfee Web Gateway
BehavesLike.Win32.AdwareSweet.dc, BehavesLike.Win32.Suspicious.gc
11.76%

The domain download.filewin.com has been seen to resolve to the following 5 IP addresses.

June 18, 2016

January 3, 2016

May 4, 2015

rack1u29.hispaweb.net
January 20, 2015

manufacturescib.com
July 23, 2014

File downloads found at URLs served by download.filewin.com.

URL:
http://download.filewin.com/

Web server:
nginx/1.4.6 (Ubuntu)