download.updatenowpro.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain download.updatenowpro.com is registered by proxy through ENOM, INC. and was originally registered in February of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Remove Malware from download.updatenowpro.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Tuesday, February 04, 2014

Expires date:
Saturday, February 04, 2017

Updated date:
Friday, February 05, 2016

ASN:
AS14061 DIGITALOCEAN-ASN - Digital Ocean, Inc.

Root domain:

Google Safe Browsing:
malware

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Avira AntiVirus
ADWARE/Adware.Gen
100.00%

Sophos
AirInstaller, PUA 'AirInstaller'
100.00%

Vba32 AntiVirus
AdWare.AirAdInstaller.ajov
100.00%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
100.00%

AVG
Generic_r, Adware Generic_r.JF
100.00%

IKARUS anti.virus
Win32.Malware
100.00%

AhnLab V3 Security
PUP/Win32.AirAdInstaller
100.00%

NANO AntiVirus
Riskware.Win32.AirAdInstaller.cwanhi, Riskware.Win32.AirAdInstaller.cwbkcs
100.00%

Jiangmin
AdWare/AirAdInstaller.jz, AdWare/AirAdInstaller.ji
100.00%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/Win32.AirAdInstaller, Trojan[:HEUR]/Win32.AGeneric
100.00%

CMC Antivirus
AdWare.Win32.AirAdInstaller!O
100.00%

Qihoo 360 Security
Malware.QVM18.Gen, HEUR/Malware.QVM01.Gen
100.00%

nProtect
Trojan-Clicker/W32.AirAdInstaller.824744, Trojan-Clicker/W32.AirAdInstaller.862632
100.00%

F-Prot
W32/AirInstall.A8.gen, W32/A-8c0ea402
100.00%

G Data
Win32.Adware.Airadinstaller
100.00%

The domain download.updatenowpro.com has been seen to resolve to the following 7 IP addresses.

February 8, 2016

static-ip-62-75-207-166.inaddr.ip-pool.com
January 31, 2016

108.168.218.35-static.reverse.softlayer.com
January 5, 2015

empire.airinstaller.com
August 10, 2014

173.192.195.228-static.reverse.softlayer.com
May 31, 2014

chicago.airinstaller.com
April 4, 2014

uswestmeganode1.airinstaller.com
March 18, 2014

File downloads found at URLs served by download.updatenowpro.com.

The following file have been seen to comunicate with download.updatenowpro.com in live environments.

URL:
http://download.updatenowpro.com/

Google Analytics:
UA-2249740

Title:
“Updatenowpro.com”

Description:
“Find Cash Advance, Debt Consolidation and more at Updatenowpro.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Updatenowpro.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 298 related domains

Remove Malware from download.updatenowpro.com - Powered by Reason Core Security