The domain ids.sourceforgecdn.com is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM
Northern Ireland, United Kingdom (GB)
Thursday, July 25, 2013
Monday, July 25, 2016
Sunday, June 28, 2015
Detections (100% detected)
PUP.Bundler.ironSource, PUP.Optional.Installer, Win32.Generic.Installer, Threat.Installer.ICForge, Win32.Generic.Installer.Meta, PUP.installCore.Installer, Win32.Generic.ICForge.Installer.Meta, PUP.installCore.ExtendedSetup.Installer (M), PUP.installCore.MaxSetup.Installer (M), PUP.installCore.WorldSetup.Installer (M)
InstallCore.b, Threat.4788237, Threat.4150696, Threat.4786018
Install Core, Install Core Click run software, PUA 'Install Core Click run software', PUA 'Install Core', PUA.Install Core Click run software
Trojan.Packed.24524, Trojan.MulDrop5.10078, Trojan.InstallCore.37
Win32.Application.InstallCore, Win32.Application.InstallCore.CZ, Trojan.Dropper.RSA
K7 Gateway Antivirus
Unwanted-Program , Adware , Trojan
Unwanted-Program , Trojan
Win32/InstallCore.OY potentially unwanted application, Win32/InstallCore.BY potentially unwanted application, Win32/Injected.F trojan
W32/A-dbe1ec51, W32/A-2d45491d, W32/InstallCore.AG.gen
ADWARE/InstallCore.Gen7, PUA/InstallCore.Gen7, Adware/InstallCore.OK.1, Adware/InstallCore.A.114, ADWARE/InstallCore.Gen9
MalSign.Generic, Adware InstallCore.Gen, Win.Threat.Medium, Adware InstallCore.LA
Riskware.Win32.InstallCore.dcnbnm, Riskware.Win32.InstallCore.dfgori, Riskware.Win32.InstallCore.dmiyjv, Riskware.Win32.InstallCore.dfgovk
a variant of ce3260f2e73ea20e4db38bd52a331782fb7fdcea, a variant of 78a2c1122fa96673f91e7bf9f8172d0dae7228d9, a variant of 22940ecc0c590fbffdb53dc50dd49c7895fd8652
The domain ids.sourceforgecdn.com has been seen to resolve to the following 8 IP addresses.
May 5, 2015
June 26, 2014
June 26, 2014
March 14, 2014
February 14, 2014
February 8, 2014
January 26, 2014
December 26, 2013
File downloads found at URLs served by ids.sourceforgecdn.com.
The following 183 files have been seen to comunicate with ids.sourceforgecdn.com in live environments.
Statistics are for the previous month.