downloadster distributes apps with its download manager which bundles adware toolbars such as Babylon and Rally as well as other potentially unwanted software. "We're able to offer free software because we are advertiser supported. When you download software, it gives our advertisers a chance to speak to you. ALL OFFERS ARE OPTIONAL. Users may be offered to change their browser homepage during install." This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Downloadster who is located in SAN FRANCISCO, California in the United States.
Ulysses S. Grant, LLC
Northern Ireland, United Kingdom (GB)
Detections (96% detected)
PUP.Installer.Downloadster.J, PUP.Installer.Downloadster.U, PUP.Installer.BulletMedia.U, PUP.Installer.INSTALLTHIS.F, PUP.Installer.QuickDownloader.J, PUP.Installer.DigitalPluginSL.F, PUP.OutBrowse.U, PUP.Installer.FastDownloads.J, PUP.Installer.OutBrowse.F, PUP.Outbrowse, PUP.Installer.Adlogica, Threat.Installer.BulletMedia, PUP.Adlogica.FastDownloads.Bundler (M), PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Outbrowse.Bundler (M), PUP.BulletMedia.Installer (M), PUP.DownloadAdmin.Bundler.Installer.Meta (M), PUP.Adlogica.Downloadster.Bundler (M)
Threat.4783369, Threat.4778314, Threat.4786018, Threat.4150696, MyWebSearch Toolbar (not malicious), Threat.4784459, Adware.InstallCore
Adware.Downware.2220, Trojan.Packed.28298, Adware.InstallCore.133, Trojan.Packed.28257, Adware.Downware.2081, Trojan.Packed.24524, Threat.Undefined
Win32/DownloadAdmin.G potentially unwanted application, Win32/AdWare.iBryte.AN application, Win32/InstallCore.BY potentially unwanted application, Win32/OutBrowse.Q potentially unwanted application
Download Admin, iBryte Optimum Installer, DomainIQ pay-per install, OutBrowse, Install Core Click run software, PUA 'Install Core Click run software'
Riskware.Win32.Downware.crgjbr, Trojan.Win32.Agent.cxjjsz, Trojan.Win32.Generic.cthmwf, Riskware.Win32.InstallCore.dfgmkc
ADWARE/Adware.Gen7, ADWARE/InstallCore.Gen7, TR/Dropper.Gen, APPL/Downloader.Gen, Adware/InstallCore.ILD, Adware/InstallCore.AU.23
Adware AdPlugin, Generic, Skodna.Generic, OutBrowse, Trojan horse Ransomer.DBB, Adware Skodna.Bundle.AU, Adware InstallCore.A
K7 Gateway Antivirus
Unwanted-Program , Dialer
Application.Win32.iBryte.WRP, Application.Win32.InstallCore.KAU, UnclassifiedMalware, Application.Win32.Outbrowse.G, TrojWare.Win32.Installcore.FST
PUP-gen [PUP], Win32:IBryte-DJ [PUP], Win32:Trojan-gen, Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:OutBrowse-AR [PUP]
PUP.Optional.BMi, PUP.Optional.BundleInstaller.A, PUP.Optional.OptimumInstaller.A, PUP.Optional.InstallCore.A, PUP.Optional.Downloadster
W32/A-c255719d, W32/Outbrowse.B.gen, W32/InstallCore.R3.gen, W32/InstallCore.AG.gen
The domain downloads.downloadster.org has been seen to resolve to the following 9 IP addresses.
February 11, 2016
December 19, 2015
August 1, 2014
May 1, 2014
January 16, 2014
File downloads found at URLs served by downloads.downloadster.org.
Latest 30 of 69 download URLs
The following 184 files have been seen to comunicate with downloads.downloadster.org in live environments.
30 of 248 related domains