download.savevid.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.savevid.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2006. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Remove Malware from download.savevid.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Monday, May 22, 2006

Expires date:
Sunday, May 22, 2016

Updated date:
Monday, May 05, 2014

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.BandooMedia.U, PUP.Optional.Installer.U, Win32.Generic.Installer.Bandoo.Meta, Win32.Generic.Bandoo.Installer.Meta
100.00%

Dr.Web
Adware.Bandoo.12, Adware.Bandoo.13, Adware.Bandoo.241, Adware.Bandoo.340
86.67%

Trend Micro House Call
TROJ_GEN.F47V1226, TROJ_GEN.F47V0923, Suspicious_GEN.F47V0619, Suspicious_GEN.F47V0817, Suspicious_GEN.F47V0731, Suspicious_GEN.F47V0909
73.33%

Antiy Labs AVL
AdWare/Win32.Bandoo, Spyware[AdWare:not-a-virus]/Win32.Bandoo
53.33%

AVG
MalSign.Generic, Adware Generic_r.VQ
46.67%

Comodo Security
Application.Win32.Saveid.~BOO, Application.Win32.Bandoo.D
40.00%

McAfee
Artemis!037F14B217AE, Artemis!194240C7C8FA, Artemis!7D6B85CA2E44, Artemis!51A6BE6D31C5, Trojan.Artemis!2D3C9D9FF30B, Artemis!C060CB6B6AAC
40.00%

Baidu Antivirus
Adware.Win32.SearchSuite, Adware.Win64.SearchSuite, PUA.Win32.SearchSuite
40.00%

Panda Antivirus
Trj/Chgt.A, Trj/Chgt.B, Trj/Chgt.C, Trj/Chgt.F, PUP/iLivid
33.33%

K7 Gateway Antivirus
Adware , Unwanted-Program
33.33%

Kaspersky
not-a-virus:WebToolbar.Win64.SearchSuite
26.67%

McAfee Web Gateway
Artemis!037F14B217AE, Artemis!7D6B85CA2E44, Artemis!PUP
26.67%

IKARUS anti.virus
PUA.Bandoo
26.67%

Fortinet FortiGate
Riskware/Win64_SearchSuite, Riskware/SearchSuite
26.67%

Qihoo 360 Security
Win32/Virus.WebToolbar.49b
26.67%

The domain download.savevid.com has been seen to resolve to the following 2 IP addresses.

94.31.0.25.IPYX-076665-ZYO.above.net
February 27, 2014

August 5, 2013

File downloads found at URLs served by download.savevid.com.

9 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

18 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

15 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

3 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

14 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

16 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

5 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

20 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

5 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

5 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

2 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bf.exe)

15 / 68    (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

3 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

3 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (savevidsetup-r0-n-bc.exe)

4 / 68      (PUP)
http://download.savevid.com/SavevidSetup.exe  (SavevidSetup-r0-n-bc.exe)

The following 2 files have been seen to comunicate with download.savevid.com in live environments.

URL:
http://download.savevid.com/

Web server:
Apache

30 of 47 related domains

Remove Malware from download.savevid.com - Powered by Reason Core Security