dw5.cn.uptodown.com

SL, Media Ingea

Domain Information

The domain dw5.cn.uptodown.com registered by SL, Media Ingea was initially registered in December of 2002 through Network Solutions, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
Network Solutions, LLC

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Thursday, December 19, 2002

Expires date:
Tuesday, December 19, 2023

Updated date:
Friday, December 20, 2013

ASN:
AS16276 OVH OVH SAS

Root domain:

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.MediaIngeaSL.W, PUP.installCore.MediaIng.Installer (M)
100.00%

Malwarebytes
PUP.Optional.InstallCore.A
50.00%

K7 Gateway Antivirus
Unwanted-Program
50.00%

F-Prot
W32/InstallCore.R3.gen
50.00%

Sophos
InstallCore ToDownload
50.00%

Comodo Security
Application.Win32.Installcore.A
50.00%

Dr.Web
Trojan.Packed.24524
50.00%

VIPRE Antivirus
InstallCore.b
50.00%

Avira AntiVirus
ADWARE/InstallCore.Gen7
50.00%

Vba32 AntiVirus
Downware.InstallCore
50.00%

ESET NOD32
Win32/InstallCore.BK.Gen
50.00%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
50.00%

AVG
MalSign.InstallC
50.00%

Baidu Antivirus
Adware.Win32.InstallCore
50.00%

Qihoo 360 Security
Win32/Virus.Adware.94c
50.00%

The domain dw5.cn.uptodown.com has been seen to resolve to the following 2 IP addresses.

June 4, 2016

ns26065.ip-91-121-24.eu
April 4, 2014

File downloads found at URLs served by dw5.cn.uptodown.com.

1 / 68      (Adware)

15 / 68    (Adware)

The following file have been seen to comunicate with dw5.cn.uptodown.com in live environments.

URL:
http://dw5.cn.uptodown.com/

Google Analytics:
UA-313498

Title:
“Uptodown Descargas de Software - Descarga, descubre, comparte”

Description:
“Descargar aTube Catcher, Ares, CCleaner, Hamachi, Cheat Engine”

Web server:
nginx