google-earth.free-downloads.us.com

CentralNic Ltd

Domain Information

The domain google-earth.free-downloads.us.com registered by CentralNic Ltd was initially registered in January of 1993 through Moniker Online Services. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
DEMYS LIMITED

Server location:
Virginia, United States (US)

Create date:
Tuesday, January 05, 1993

Expires date:
Saturday, January 04, 2025

Updated date:
Monday, December 14, 2015

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.WeDownload.S, PUP.Bundler.WeDownload, Threat.WeDownload.Bundler, PUP.WeDownload.Bundler, PUP.WeDownload.Bundler (M), PUP.WeDownoad.WeDownload.Installer (M)
98.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic, Threat.4783370
28.00%

Kaspersky
not-a-virus:Downloader.Win32.Agent
28.00%

AVG
Wedownload, Generic
28.00%

avast!
Downloader-TOV [PUP], Win32:Downloader-TOV [PUP]
26.00%

ESET NOD32
MSIL/Soft32Downloader.A potentially unwanted application, MSIL/Soft32Downloader.C potentially unwanted application
26.00%

G Data
Application.Bundler.Soft32Downloader, Win32.Application.Soft32Downloader, Dropped:Application.Generic.817045, Dropped:Application.Generic.1062692
26.00%

NANO AntiVirus
Trojan.Win32.KillFiles.ddsvpt, Trojan.Win32.Soft32Downloader.dgyrwy, Trojan.Win32.Soft32Downloader.dgyrxf, Trojan.Win32.Soft32Downloader.dgyrww
24.00%

Zillya! Antivirus
Downloader.Agent.Win32.201288, Downloader.Agent.Win32.203388, Downloader.Agent.Win32.222338, Downloader.Agent.Win32.201287
24.00%

McAfee Web Gateway
BehavesLike.Win32.Downloader.hc, BehavesLike.Win32.Downloader.bc, BehavesLike.Win32.Downloader.cc, BehavesLike.Win32.Downloader.jc
24.00%

Avira AntiVirus
APPL/Downloader.Gen, APPL/Soft32Down.diq
24.00%

Vba32 AntiVirus
Signed-AdWare.WeDownload, Downloader.Agent
24.00%

Qihoo 360 Security
Trojan.Generic, Win32/Trojan.Adware.37e
24.00%

Dr.Web
Adware.Downware.2498, Adware.Downware.8933, Adware.Downware.10564, Adware.Downware.8933
22.00%

K7 AntiVirus
Unwanted-Program
20.00%

The domain google-earth.free-downloads.us.com has been seen to resolve to the following 22 IP addresses.

ec2-50-17-197-66.compute-1.amazonaws.com
February 3, 2016

ec2-50-19-214-118.compute-1.amazonaws.com
February 3, 2016

ec2-54-235-131-224.compute-1.amazonaws.com
January 27, 2016

ec2-50-16-236-171.compute-1.amazonaws.com
January 27, 2016

ec2-184-73-238-150.compute-1.amazonaws.com
May 2, 2015

ec2-23-23-167-169.compute-1.amazonaws.com
May 2, 2015

ec2-54-225-254-181.compute-1.amazonaws.com
May 2, 2015

ec2-184-73-169-156.compute-1.amazonaws.com
September 4, 2014

ec2-54-197-248-47.compute-1.amazonaws.com
September 4, 2014

ec2-23-23-197-103.compute-1.amazonaws.com
September 4, 2014

ec2-23-21-91-127.compute-1.amazonaws.com
August 17, 2014

ec2-54-225-140-142.compute-1.amazonaws.com
August 17, 2014

ec2-54-225-132-115.compute-1.amazonaws.com
August 17, 2014

ec2-54-225-188-3.compute-1.amazonaws.com
August 12, 2014

ec2-54-225-93-89.compute-1.amazonaws.com
August 12, 2014

ec2-54-243-68-30.compute-1.amazonaws.com
August 12, 2014

ec2-23-23-134-155.compute-1.amazonaws.com
July 23, 2014

ec2-54-221-217-32.compute-1.amazonaws.com
July 23, 2014

ec2-23-23-135-90.compute-1.amazonaws.com
July 23, 2014

ec2-107-21-127-194.compute-1.amazonaws.com
April 11, 2014

ec2-50-16-187-48.compute-1.amazonaws.com
April 11, 2014

ec2-50-16-228-70.compute-1.amazonaws.com
April 11, 2014

File downloads found at URLs served by google-earth.free-downloads.us.com.

 
Latest 30 of 80 download URLs

The following file have been seen to comunicate with google-earth.free-downloads.us.com in live environments.

URL:
http://google-earth.free-downloads.us.com/

Google Analytics:
UA-50400111

Title:
“Download Google Earth Free”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx

Facebook:
Likes:  5
Shares:  1
Comments:  3

Statistics are for the previous month.