files.trustydownloads.com

Air Software

Domain Information

The domain files.trustydownloads.com registered by China Capital Investment Limited was initially registered in January of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network. The domain is associated with the publisher Air Software who is located in Victoria, British Columbia in Canada.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Wednesday, January 30, 2013

Expires date:
Monday, January 30, 2017

Updated date:
Monday, March 14, 2016

ASN:
AS46652 SERVERSTACK-ASN - ServerStack, Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
DownloadManager.AirSoftware.N, PUP.Air Software.AirSoftware.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.Air Software (M)
100.00%

avast!
PUP-gen [PUP], Win32:Installer-L [PUP], Win32:PUP-gen [PUP], Win32:Adware-CAH [PUP]
62.50%

VIPRE Antivirus
AirInstaller, Threat.4782985
62.50%

Dr.Web
Trojan.SMSSend.4160, Trojan.SMSSend.4204, Trojan.SMSSend.4643, Trojan.SMSSend.4232, Adware.Downware.10718
62.50%

F-Prot
W32/AirInstall.A.gen, W32/AirInstall.A8.gen
62.50%

Kaspersky
not-a-virus:WebToolbar.Win32.Agent, not-a-virus:AdWare.Win32.AirAdInstaller, not-a-virus:HEUR:AdWare.Win32.Generic
62.50%

Quick Heal
Adware.AirAdInstaller.C5, Adware.AirAdInstaller.I5
62.50%

K7 AntiVirus
Adware , Unwanted-Program
62.50%

NANO AntiVirus
Riskware.Win32.Downware.cwfgel, Trojan.Win32.SMSSend.cwbmjp, Riskware.Win32.AirAdInstaller.cxsehk
62.50%

Sophos
AirInstaller, PUA 'AirInstaller'
62.50%

Comodo Security
Application.Win32.AirAdInstaller.A, Application.Win32.Agent.AJ
62.50%

Avira AntiVirus
ADWARE/Adware.Gen7, Adware/Airinstall.J
62.50%

G Data
Win32.Adware.Airadinstaller, Gen:Variant.Application.Bundler.AirInstaller
62.50%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
62.50%

IKARUS anti.virus
not-a-virus:WebToolbar.Win32.Agent, not-a-virus:AdWare.AirAdInstaller, AdWare.AirInst, PUA.AirAdInstaller
62.50%

The domain files.trustydownloads.com has been seen to resolve to the following 4 IP addresses.

192.230.92.93.ip.incapdns.net
September 4, 2016

April 3, 2016

justice.airinstaller.com
September 5, 2014

173.192.195.226-static.reverse.softlayer.com
September 5, 2014

File downloads found at URLs served by files.trustydownloads.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

25 / 68    (Adware)

25 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

The following 4 files have been seen to comunicate with files.trustydownloads.com in live environments.

URL:
http://files.trustydownloads.com/

Web server:
nginx/1.8.1