downloads.pcsoftupdate.com

Whois Privacy Corp.

Domain Information

The domain downloads.pcsoftupdate.com registered by Whois Privacy Corp. was initially registered in December of 2013 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
New York, United States (US)

Create date:
Wednesday, December 18, 2013

Expires date:
Friday, December 18, 2015

Updated date:
Monday, January 25, 2016

ASN:
AS46652 SERVERSTACK-ASN - ServerStack, Inc.

Root domain:

Scanner detections:
Detections  (86% detected)

Scan engine
Details
Detections

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Rootkit-gen [Rtk]
100.00%

VIPRE Antivirus
Iminent, Threat.4150696, Threat.4798837
100.00%

Avira AntiVirus
ADWARE/Adware.Gen, Adware/AgentCV.A.6255, ADWARE/AdGazelle.Gen7, PUA/InstallCore.A.10
100.00%

ESET NOD32
Win32/AirAdInstaller.A potentially unwanted application, Win32/AdGazelle.E potentially unwanted application, Win32/InstallCore.YL potentially unwanted application
100.00%

Reason Heuristics
DownloadManager.AirSoftware.F, Threat.Installer.CompilerIdea, PUP.Air Software.AirSoftware.Bundler (M)
83.33%

Malwarebytes
PUP.Optional.AirAdInstaller, PUP.Optional.InstallCore.SID.C
83.33%

Agnitum Outpost
PUA.AirAdInstaller, Riskware.Agent
83.33%

Comodo Security
Application.Win32.AirAdInstaller.B, Application.Win32.InstallCore.DJS
83.33%

Dr.Web
Trojan.SMSSend.5157, Trojan.SMSSend.5095, Trojan.iBryte.507, Trojan.SMSSend.4953
83.33%

AVG
BundleApp, Potentially harmful program Skodna.Downloader.CX, Adware InstallCore
83.33%

Qihoo 360 Security
Malware.QVM18.Gen, Malware.QVM01.Gen, HEUR/QVM30.1.Malware.Gen
83.33%

K7 AntiVirus
Adware , Unwanted-Program
83.33%

IKARUS anti.virus
AdWare.Airinstall, Win32.SuspectCrc, PUA.AdGazelle
83.33%

nProtect
Trojan-Clicker/W32.AirAdInstaller.824744, Trojan.GenericKD.2237685
83.33%

G Data
Win32.Adware.Airadinstaller, Trojan.GenericKD.2237685
83.33%

The domain downloads.pcsoftupdate.com has been seen to resolve to the following 4 IP addresses.

108.168.218.35-static.reverse.softlayer.com
May 5, 2015

173.192.195.226-static.reverse.softlayer.com
September 6, 2014

empire.airinstaller.com
September 5, 2014

justice.airinstaller.com
September 3, 2014

File downloads found at URLs served by downloads.pcsoftupdate.com.

30 of 40 related domains