downloads.downloadster.org

Downloadster

Domain Information

downloadster distributes apps with its download manager which bundles adware toolbars such as Babylon and Rally as well as other potentially unwanted software. "We're able to offer free software because we are advertiser supported. When you download software, it gives our advertisers a chance to speak to you. ALL OFFERS ARE OPTIONAL. Users may be offered to change their browser homepage during install." This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Downloadster who is located in SAN FRANCISCO, California in the United States.
Registrar:
Ulysses S. Grant, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Savvy.J, PUP.Installer.Downloadster.U, PUP.Installer.Adlogica, PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Adlogica.QuickDow.Bundler (M), PUP.Adlogica.Download.Bundler (M), PUP.Adlogica.FastDown.Bundler (M), PUP.BulletMe.Installer (M), PUP.Outbrowse.Bundler (M), PUP (M), PUP.Adlogica (M), PUP.Outbrowse (M)
81.40%

ESET NOD32
Win32/OutBrowse.M potentially unwanted application, Win32/InstallCore.FP potentially unwanted application, Win32/InstallCore.BY potentially unwanted application, Win32/InstallCore.DF potentially unwanted application
27.91%

Dr.Web
Adware.Downware.2220, Detection.Undefined, Adware.InstallCore.133
20.93%

avast!
Win32:Evo-gen [Susp], Win32:OutBrowse-CH [PUP]
18.60%

VIPRE Antivirus
MyWebSearch Toolbar (not malicious), DownloadAdmin, Threat.4823950, Threat.4786018
16.28%

ESET NOD32
Win32/Toolbar.MyWebSearch (variant), Win32/DownloadAdmin
6.98%

Microsoft Security Essentials
Threat.Undefined
6.98%

IKARUS anti.virus
Win32.SuspectCrc
4.65%

AVG
Skodna.Generic
4.65%

McAfee
Artemis!09A931BD7916, Program.Adware-OutBrowse
4.65%

AegisLab AV Signature
W32.Xorala
4.65%

NANO AntiVirus
Trojan.Win32.Downware.crgjbr
4.65%

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader
4.65%

Rising Antivirus
PE:Trojan.Zbot!6.103C
2.33%

Malwarebytes
PUP.Optional.Downloadster
2.33%

The domain downloads.downloadster.org has been seen to resolve to the following 9 IP addresses.

lb-182-244.above.com
February 11, 2016

ip-184-168-221-37.ip.secureserver.net
December 19, 2015

unallocated.barefruit.co.uk
August 1, 2014

search.dnsassist.verizon.net
May 1, 2014

January 16, 2014

January 16, 2014

(CloudFlare)
January 16, 2014

January 16, 2014

January 16, 2014

File downloads found at URLs served by downloads.downloadster.org.

 
Latest 30 of 134 download URLs

The following 291 files have been seen to comunicate with downloads.downloadster.org in live environments.

 
Latest 20 of 292 files

URL:
http://downloads.downloadster.org/

Title:
“downloadster.org”

Web server:
Apache