download.ftalk.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.ftalk.com is registered by proxy through GODADDY.COM, LLC and was originally registered in April of 1997. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Tuesday, April 22, 1997

Expires date:
Sunday, April 23, 2017

Updated date:
Sunday, February 28, 2016

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.KoyoteLab.T, PUP.Installer.KoyoteLab.S, PUP.Installer.KoyoteLab.H, PUP.Installer.KoyoteLab.U, PUP.Installer.Amonetizeltd.X, PUP.KoyoteLab.Installer.Meta (M), PUP.Bandoo.KoyoteLa.Installer (M)
100.00%

Dr.Web
Adware.Downware.942, Adware.Downware.964, Adware.Searcher.2497, Adware.Downware.1655
72.22%

Trend Micro House Call
TROJ_GEN.F47V0717, TROJ_GEN.F47V0925, TROJ_GEN.F47V1026, Suspicious_GEN.F47V0727, TROJ_GEN.F47V1203, TROJ_GEN.F47V0509, TROJ_GEN.F47V0513
44.44%

ESET NOD32
Win32/Toolbar.SearchSuite, Win32/KoyoteLab.A potentially unwanted (variant), Win32/Amonetize (variant)
38.89%

Emsisoft Anti-Malware
Riskware.Win32.Toolbar.SearchSuite.AMN
22.22%

Sophos
Generic PUA FJ, Amonetize
22.22%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
22.22%

G Data
Win32.Application.KoyoteLab, Win32.Application.Searchsuite
16.67%

MicroWorld eScan
Win32/Toolbar.SearchSuite
16.67%

Boost by Reason
Adware.Installer.KoyoteLab.T, Optional.KoyoteLab
11.11%

Malwarebytes
PUP.Optional.Bandoo.A, PUP.Optional.InstallMonetizer
11.11%

NANO AntiVirus
Trojan.Win32.Downware.crewao
11.11%

AVG
Koyote, SearchSuite
11.11%

XVirus List
Win32.Detected, Win.Detected
11.11%

McAfee
Artemis!7E34E86F2782, Artemis!F439408AAB8C
11.11%

The domain download.ftalk.com has been seen to resolve to the following 2 IP addresses.

94.31.0.55.IPYX-076665-ZYO.above.net
September 5, 2014

94.31.0.25.IPYX-076665-ZYO.above.net
December 28, 2013

File downloads found at URLs served by download.ftalk.com.

1 / 68      (PUP)

8 / 68      (PUP)
http://download.ftalk.com/o/1/r/.../fTalkV4.exe  (f5ee7180f969bea8b72a00a4a2c883bb)

1 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r171-n-bc.exe)

0 / 68
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r292-n-bc.exe)

13 / 68    (PUP)
http://download.ftalk.com/o/1/r/.../fTalkV4.exe  (96d4656d91f6f6adbb3aab9dbee74c98)

1 / 68      (PUP)

1 / 68      (PUP)
http://download.ftalk.com/o/1/r/.../fTalkV4.exe  (2fb84922d52b7f0d42af96ff398454bf)

7 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (5c6e678e000b823b20a734f8ca6d94613a6f07139582829fd2a033df14686f7b)

8 / 68      (PUP)
http://download.ftalk.com/o/1/r/.../fTalkV4.exe  (d6aceef543fdabd9181b7457b1f1f9df)

1 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r192-n-bc.exe)

4 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r135-n-bc.exe)

3 / 68      (PUP)
http://download.ftalk.com/fTalkSetup.exe  (ftalksetup-r135-n-bc.exe)

3 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r135-n-bc.exe)

8 / 68      (Adware)
http://download.ftalk.com/.../fTalkV3.exe  (ftalkv3__2594_il6731266.exe)

6 / 68      (PUP)
http://download.ftalk.com/FtalkSetup.exe  (ftalksetup-r20-n-bc.exe)

2 / 68      (PUP)
http://download.ftalk.com/fTalkSetup.exe  (ftalksetup-r135-n-bf.exe)

3 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r0-n-bf.exe)

2 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (ftalksetup-r135-n-bf.exe)

11 / 68    (Adware)
http://download.ftalk.com/fTalkSetup.exe  (setupdatamngr_searchqu.exe)

7 / 68      (PUP)
http://download.ftalk.com/fTalkSetup.exe  (fTalkSetup-r20-n-bc.exe)

7 / 68      (PUP)
http://download.ftalk.com/.../fTalkV3.exe  (fTalkSetup-r20-n-bc.exe)

3 / 68      (PUP)
http://download.ftalk.com/fTalkSetup.exe  (ftalksetup-r0-n-bf.exe)

11 / 68    (Adware)
http://download.ftalk.com/.../fTalkV3.exe  (setupdatamngr_searchqu.exe)

4 / 68      (PUP)

The following 22 files have been seen to comunicate with download.ftalk.com in live environments.

 
Latest 20 of 28 files

URL:
http://download.ftalk.com/

Google Analytics:
UA-30208384

Title:
“Torch Web Browser - Your All in One Internet Browser”

Description:
“Get more from the web with Torch Browser. Learn more about this unique browser here.”