install-cdn.plurpush.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain install-cdn.plurpush.net is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Friday, August 30, 2013

Expires date:
Tuesday, August 30, 2016

Updated date:
Friday, January 22, 2016

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.PlurPush.F, PUP.Installer.PlurPush.O, PUP.Yontoo.PlurPush.Installer (M)
100.00%

Malwarebytes
PUP.Optional.PlurPush.A
50.00%

Trend Micro House Call
TROJ_GE.32BD883C, TROJ_GEN.F47V0405, TROJ_GEN.F47V0415, TROJ_GEN.F47V0403
50.00%

NANO AntiVirus
Riskware.Win32.Agent.cuenda
50.00%

Comodo Security
Application.Win32.Altbrowse.AK
50.00%

Dr.Web
Trojan.BPlug.22
50.00%

VIPRE Antivirus
Yontoo
50.00%

SUPERAntiSpyware
Adware.BrowseFox/Variant
50.00%

G Data
Win32.Application.BrowseFox, Win32.Trojan.Agent.9JU6KD
50.00%

ESET NOD32
Win32/BrowseFox (variant)
50.00%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF
50.00%

AVG
MalSign.Generic
50.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent
37.50%

AhnLab V3 Security
PUP/Win32.PlurPush
37.50%

K7 AntiVirus
Unwanted-Program
25.00%

The domain install-cdn.plurpush.net has been seen to resolve to the following 12 IP addresses.

a104-96-221-58.deploy.static.akamaitechnologies.com
July 2, 2016

a104-96-221-98.deploy.static.akamaitechnologies.com
July 2, 2016

a184-51-126-80.deploy.static.akamaitechnologies.com
June 28, 2016

a184-51-126-106.deploy.static.akamaitechnologies.com
June 28, 2016

a104-96-220-218.deploy.static.akamaitechnologies.com
June 6, 2016

a104-96-220-193.deploy.static.akamaitechnologies.com
June 6, 2016

April 14, 2016

April 14, 2016

February 29, 2016

February 29, 2016

a23-0-160-25.deploy.static.akamaitechnologies.com
February 23, 2016

a23-0-160-19.deploy.static.akamaitechnologies.com
February 23, 2016

File downloads found at URLs served by install-cdn.plurpush.net.

16 / 68    (Adware)
http://install-cdn.plurpush.net/setup.exe  (e8d7d581ebcd7e0f51f82f7a3245bbae)

22 / 68    (Adware)

1 / 68      (Adware)
http://install-cdn.plurpush.net/setup.exe  (733f9d45b747c2571f0fa7284054b2ef)

19 / 68    (Adware)
http://install-cdn.plurpush.net/setup.exe  (dfb6d16eb249acdcf3105b0d4c5d36af)

1 / 68      (Adware)
http://install-cdn.plurpush.net/setup.exe  (68b57246a6d3e6d0214c72a3014bc6af)

1 / 68      (Adware)
http://install-cdn.plurpush.net/setup.exe  (09821942d5d114bdb321bf2039691004)

13 / 68    (Adware)
http://install-cdn.plurpush.net/setup.exe  (222ec5f7b3937f2662ab89e976b01dac)

1 / 68      (Adware)
http://install-cdn.plurpush.net/setup.exe  (ebdf1b0fc78a244e59c8af61ecf41e14)

The following 122 files have been seen to comunicate with install-cdn.plurpush.net in live environments.

 
Latest 20 of 132 files

URL:
http://install-cdn.plurpush.net/

Web server:
Microsoft-IIS/7.5 (ASP.NET)