Domains By Proxy, LLC (Proxy Registrant)
The domain download.theappsrvr.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2016. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Arizona, United States (US)
Monday, January 04, 2016
Wednesday, January 04, 2017
Saturday, January 23, 2016
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC
Detections (100% detected)
PUP.Installer.SavingsApps.F, PUP.Installer.50OnRed, PUP.50OnRed.SavingsApps.Installer (M), PUP.Air Software.AirSoftware.Bundler (M)
Trojan.Agent/Gen-FakeAV, Trojan.Agent/Gen-StartPage, Adware.AirAdInstaller
suspected of Trojan.Downloader.gen.h, AdWare.AirAdInstaller
Trend Micro House Call
HV_ZYX_.5CACB583, HV_ZYX_.97F06626, Suspici.DC06088C
Qihoo 360 Security
(Suspicious) - DNAScan
K7 Gateway Antivirus
The domain download.theappsrvr.com has been seen to resolve to the following 4 IP addresses.
January 28, 2016
October 26, 2015
File downloads found at URLs served by download.theappsrvr.com.
The following 7 files have been seen to comunicate with download.theappsrvr.com in live environments.