download.programasplus.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain download.programasplus.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Madrid, Spain (ES)

Create date:
Monday, March 4, 2013

Expires date:
Saturday, March 4, 2017

Updated date:
Monday, April 18, 2016

ASN:
AS45037 HISPAWEB-NETWORK Propelin Consulting S.L.U.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.MaxSetup.b, PUP.Air Software.DownloadAssistant.Bundler (M), PUP.Vittalia.VittaliaInternet.Bundler (M), PUP.Vittalia.Bundler (M), PUP.installCore.ISfreemi (M)
100.00%

MicroWorld eScan
Gen:Trojan.Heur2.GZ.QGZ@bunJw4gi
16.67%

McAfee
Artemis!73343E813157
16.67%

Malwarebytes
PUP.Optional.InstallCore
16.67%

Agnitum Outpost
Trojan.Kryptik
16.67%

Norman
Kryptik.CDMO
16.67%

Trend Micro House Call
TROJ_GEN.F47V0327
16.67%

Bitdefender
Gen:Trojan.Heur2.GZ.QGZ@bunJw4gi
16.67%

Lavasoft Ad-Aware
Gen:Trojan.Heur2.GZ.QGZ@bunJw4gi
16.67%

Sophos
Install Core Click run software
16.67%

Comodo Security
Application.Win32.InstallCore.BWAM
16.67%

F-Secure
Gen:Trojan.Heur2.GZ.QGZ@bunJw4gi
16.67%

VIPRE Antivirus
InstallCore.b
16.67%

Avira AntiVirus
ADWARE/InstallCore.Gen7
16.67%

Emsisoft Anti-Malware
Gen:Trojan.Heur2.GZ.QGZ@bunJw4gi
16.67%

The domain download.programasplus.com has been seen to resolve to the following 3 IP addresses.

June 21, 2016

January 27, 2016

manufacturescib.com
April 4, 2014

File downloads found at URLs served by download.programasplus.com.

URL:
http://download.programasplus.com/

Web server:
nginx/1.4.6 (Ubuntu)