download.pcfilehelp.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain download.pcfilehelp.com is registered by proxy through ENOM, INC. and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Remove Malware from download.pcfilehelp.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Tuesday, January 21, 2014

Expires date:
Saturday, January 21, 2017

Updated date:
Tuesday, December 22, 2015

ASN:
AS46652 SERVERSTACK-ASN - ServerStack, Inc.

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Dr.Web
Win32.Sector.21, Trojan.SMSSend.4785, Trojan.SMSSend.5041, Trojan.SMSSend.4904, Trojan.SMSSend.5404, Trojan.SMSSend.5514
96.00%

Reason Heuristics
PUP.Installer.DownloadManagerCert.M, PUP.Installer.DownloadManager.M, PUP.Installer.InstallManager.O, PUP.Installer.InstallManager.F, DownloadManager.AirSoftware.O, DownloadManager.Bundler.Air Software, DownloadManager.AirSoftware.L, PUP.Installer.Adknowledge, Threat.Air Software.Bundler, PUP.Adknowledge.InstallManager.Installer (M), PUP.Air Software.AirSoftware.Bundler (M)
94.00%

Avira AntiVirus
W32/Sality.AT, ADWARE/Adware.Gen, TR/Trash.Gen, Adware/AirInstaller.938392, TR/Rogue.11848176, Adware/AgentCV.A.3144
92.00%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Adware-BZI [PUP], Win32:Adware-CAH [PUP], Malware-gen
92.00%

VIPRE Antivirus
Iminent, Threat.4784938, AirAdInstaller, Threat.4150696
92.00%

K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
92.00%

IKARUS anti.virus
Win32.Malware, not-a-virus:AdWare.AirAdInstaller, PUA.AirAdInstaller
90.00%

G Data
Win32.Adware.Airadinstaller, Gen:Variant.Adware.Graftor.153852
90.00%

F-Prot
W32/Sality.gen2, W32/AirInstall.A8.gen, W32/A-6bcf410b, W32/A-e6066d27, W32/A-ad198980, W32/A-a607985a
88.00%

AhnLab V3 Security
PUP/Win32.AirAdInstaller, PUP/Win32.Installer
88.00%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
88.00%

AVG
Generic_r, Adware BundleApp_r.D, Adware InstallCore.QH, Adware InstallCore.RG, Airsoftware, Adware BundleApp_r.J
88.00%

NANO AntiVirus
Riskware.Win32.AirAdInstaller.cwbkcs, Trojan.Win32.SMSSend.ddvfxt, Riskware.Win32.AirAdInstaller.dgvfcx, Riskware.Win32.AirAdInstaller.demeoc
88.00%

Sophos
AirInstaller, PUA 'AirInstaller'
88.00%

ESET NOD32
Win32/AirAdInstaller.A potentially unwanted application
88.00%

The domain download.pcfilehelp.com has been seen to resolve to the following 6 IP addresses.

108.168.218.35-static.reverse.softlayer.com
November 3, 2014

chicago.airinstaller.com
October 19, 2014

173.192.195.228-static.reverse.softlayer.com
September 30, 2014

173.192.195.226-static.reverse.softlayer.com
May 23, 2014

empire.airinstaller.com
April 23, 2014

justice.airinstaller.com
April 13, 2014

File downloads found at URLs served by download.pcfilehelp.com.

1 / 68      (Adware)

43 / 68    (Adware)

40 / 68    (Adware)

 
Latest 30 of 56 download URLs

The following file have been seen to comunicate with download.pcfilehelp.com in live environments.

30 of 46 related domains

Remove Malware from download.pcfilehelp.com - Powered by Reason Core Security