files4.downloadnet1002.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain files4.downloadnet1002.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Washington, United States (US)

Create date:
Friday, May 22, 2015

Expires date:
Sunday, May 22, 2016

Updated date:
Friday, May 22, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DownloadAdmin.SAFEINSTALLSOFTWARE.Installer (M), PUP.DownloadAdmin.SuperCli.Installer (M), PUP.TomorrowSoftware.TRUSTEDI.Bundler (M)
83.33%

VIPRE Antivirus
Threat.4150696, DownloadAdmin
33.33%

avast!
Win32:Malware-gen
16.67%

ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted application
16.67%

Emsisoft Anti-Malware
Gen:Variant.Graftor.274815
16.67%

The domain files4.downloadnet1002.com has been seen to resolve to the following 12 IP addresses.

a104-96-221-98.deploy.static.akamaitechnologies.com
June 5, 2016

a104-96-221-91.deploy.static.akamaitechnologies.com
June 5, 2016

June 5, 2016

June 5, 2016

a23-220-148-19.deploy.static.akamaitechnologies.com
June 5, 2016

a23-220-148-8.deploy.static.akamaitechnologies.com
June 5, 2016

a104-96-220-233.deploy.static.akamaitechnologies.com
May 23, 2016

a104-96-220-227.deploy.static.akamaitechnologies.com
May 23, 2016

a104-96-220-216.deploy.static.akamaitechnologies.com
May 23, 2016

a104-96-220-192.deploy.static.akamaitechnologies.com
May 23, 2016

a23-0-160-98.deploy.static.akamaitechnologies.com
March 1, 2016

a23-0-160-88.deploy.static.akamaitechnologies.com
March 1, 2016

File downloads found at URLs served by files4.downloadnet1002.com.

The following 29 files have been seen to comunicate with files4.downloadnet1002.com in live environments.

 
Latest 20 of 29 files