download.my-apps-repository.com

Crossrider Advanced Technologies Ltd.  (via a Proxy Registrant)

Domain Information

The domain download.my-apps-repository.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Morgan, Utah within the United States. The domain is associated with the publisher Crossrider Advanced Technologies Ltd..
Registrar:
GODADDY.COM, LLC

Server location:
Utah, United States (US)

Create date:
Thursday, May 30, 2013

Expires date:
Monday, May 30, 2016

Updated date:
Sunday, May 3, 2015

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.EngagingApps.N, PUP.EngagingApps.M, PUP.EngagingApps.H, PUP.Downloader.Jykqj.L, PUP.Downloader.Lddytxlftiqapo.L, PUP.Downloader.Installer.U, PUP.50OnRed.EngagingApps.Installer (M), Win32.Generic
96.00%

VIPRE Antivirus
GamePlayLabs, Adware.Agent, Threat.4789396
80.00%

McAfee
Artemis!E15193BA81E5, Artemis!7760955E4255, Artemis!87643A52B930, Artemis!193F3EEEC7AB, Artemis!6F4897E3EED6, Artemis!821AC99AEB36, Artemis!B08FA574C1C5, Artemis!C24B65A91B63, Artemis!86CB3CB74D4A, Artemis!4FF6412B636D
70.00%

Bkav FE
W32.Cloda74.Trojan, W32.Clodc1e.Trojan, W32.Clod698.Trojan, W32.Clodd7c.Trojan, W32.Clode53.Trojan, W32.Cloddd9.Trojan, W32.Clod6e7.Trojan, W32.Clod82a.Trojan, W32.Clod44f.Trojan, W32.HfsAdware
58.00%

Malwarebytes
PUP.Optional.GiantSavings.A, PUP.Optional.CrossRider.A, PUP.Optional.GiganticSavings.A, PUP.Optional.VidSaver.A
44.00%

Trend Micro House Call
TROJ_GEN.F47V1018, TROJ_GEN.F47V1017, TROJ_GEN.F47V1103, TROJ_GEN.F47V1016, TROJ_GEN.R047H07CE14, TROJ_GEN.R047H07CJ14, TROJ_GEN.R08NH07CU14
42.00%

ESET NOD32
Win32/Packed.ScrambleWrapper, Win32/Packed.ScrambleWrapper (variant), Win32/Packed.ScrambleWrapper.E potentially unwanted
42.00%

ESET NOD32
Win32/Packed.ScrambleWrapper.I potentially unwanted application
38.00%

Fortinet FortiGate
W32/Generic, Adware/Agent
34.00%

Sophos
AppRider, Generic PUA BJ
32.00%

Dr.Web
Trojan.Crossrider.10, Trojan.Crossrider1.27002
32.00%

K7 AntiVirus
Unwanted-Program , Trojan
28.00%

Agnitum Outpost
PUA.Agent, Riskware.ScrambleWrapper
12.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent
8.00%

AhnLab V3 Security
PUP/Win32.MulDrop
4.00%

The domain download.my-apps-repository.com has been seen to resolve to the following 3 IP addresses.

ip-50-63-202-63.ip.secureserver.net
June 5, 2016

tlb.hwcdn.net
May 10, 2014

hwcdn.net
May 10, 2014

File downloads found at URLs served by download.my-apps-repository.com.

10 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

10 / 68    (Adware)

10 / 68    (Adware)

8 / 68      (Adware)

10 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (inconclusive)

5 / 68      (Adware)

6 / 68      (Adware)

6 / 68      (Adware)

6 / 68      (Adware)

6 / 68      (Adware)

 
Latest 30 of 11,255 download URLs

URL:
http://download.my-apps-repository.com/

Web server:
nginx/1.4.1 + Phusion Passenger 4.0.5 (Phusion Passenger 4.0.5)