initiatedownload.com

PERFECT PRIVACY, LLC  (Proxy Registrant)

Domain Information

The domain initiatedownload.com is registered by proxy through WILLAMETTENAMES.COM LLC and was originally registered in December of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
WILLAMETTENAMES.COM LLC

Server location:
Quebec, Canada (CA)

Create date:
Wednesday, December 9, 2015

Expires date:
Friday, December 9, 2016

Updated date:
Wednesday, December 9, 2015

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Adknowledge, PUP.Bundler.Adknowledge, PUP.Installer.HudsonExchangeGroup, Threat.Adknowledge.Bundler, PUP.Adknowledge.InstallBeta.Installer (M), PUP.Adknowledge.Seekinstall.Installer (M), PUP.Softpulse.PLUGINUP.Bundler (M), PUP.Adknowledge.Forwardd.Bundler (M)
100.00%

VIPRE Antivirus
Threat.4798837
65.00%

Vba32 AntiVirus
AdWare.iBryte, suspected of Trojan.Downloader.gen.h
65.00%

AhnLab V3 Security
PUP/Win32.IBryte
60.00%

ESET NOD32
Win32/Adware.iBryte.BY application, Win32/Adware.iBryte.BR application
55.00%

IKARUS anti.virus
not-a-virus:AdWare.iBryte, AdWare.AdPlugin
55.00%

avast!
Adware-gen [Adw], PUP-gen [PUP], Win32:Adware-gen [Adw]
50.00%

Avira AntiVirus
Adware/iBryte.A.410, ADWARE/iBryte.Gen7, APPL/OpenInst.pepri
50.00%

AVG
AdPlugin, Adware AdPlugin
50.00%

F-Secure
Gen:Variant.Adware.Jatif.112, Adware.iBryte.BR, Gen:Variant.Adware.Strictor.71370
50.00%

Zillya! Antivirus
Adware.iBryte.Win32.7081, Adware.iBryte.Win32.7561, Adware.iBryte.Win32.6485
45.00%

Dr.Web
Trojan.DownLoader12.24638, Trojan.DownLoader11.49473
45.00%

NANO AntiVirus
Riskware.Win32.IBryte.docfvq, Riskware.Win32.IBryte.dorjnx, Trojan.Win32.Buzus.djvkxq
45.00%

Clam AntiVirus
Win.Adware.Ibryte-7917, Win.Adware.Ibryte-8186, Win.Adware.71370
45.00%

Malwarebytes
PUP.Optional.Forward, PUP.Optional.IBryte
40.00%

The domain initiatedownload.com has been seen to resolve to the following 6 IP addresses.

June 21, 2016

ns513839.ip-167-114-156.net
April 19, 2016

April 14, 2016

April 1, 2016

ec2-50-19-244-90.compute-1.amazonaws.com
February 23, 2015

ec2-107-21-120-240.compute-1.amazonaws.com
February 23, 2015

File downloads found at URLs served by initiatedownload.com.

The following 36 files have been seen to comunicate with initiatedownload.com in live environments.

 
Latest 20 of 41 files

URL:
http://initiatedownload.com/

Google Analytics:
UA-19309218

Title:
“initiatedownload.com - This website is for sale! - initiatedownload Resources and Information.”

Description:
“This website is for sale! initiatedownload.com is your first and best source for information about initiatedownload . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
Apache/2.2.22 (Debian)

30 of 93 related domains