install.express-downloader.com

Whois Privacy Corp.

Domain Information

The domain install.express-downloader.com registered by Whois Privacy Corp. was initially registered in September of 2012 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Saint Helens, Oregon within the United States which resides on the Hosting Services, Inc. network.
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Oregon, United States (US)

Create date:
Monday, September 03, 2012

Expires date:
Saturday, September 03, 2016

Updated date:
Friday, December 11, 2015

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.FaglaroEnterprisesLimited.R, PUP.Installer.FaglaroEnterprises, PUP.Blisbury.Bundler, PUP.Blisbury.FaglaroEnterprises.Bundler (M), PUP.Blisbury.FaglaroE.Bundler (M), PUP.Blisbury (M)
100.00%

avast!
Win32:Downloader-TSH [PUP]
12.00%

VIPRE Antivirus
ExpressFiles Installer
12.00%

Sophos
Express Files
12.00%

ESET NOD32
Win32/ExpressFiles (variant)
12.00%

Malwarebytes
PUP.Optional.ExpressFiles.A
10.00%

McAfee
Artemis!3DF8716A2273, Artemis!062BDA96A95E, Artemis!84B99F4F1E1E, Artemis!E3344E4E478D
8.00%

Trend Micro House Call
TROJ_GEN.F47V1108, TROJ_GEN.F47V1118, TROJ_GEN.F47V1028, TROJ_GEN.F47V1026
8.00%

Avira AntiVirus
ADWARE/Adware.Gen2
8.00%

McAfee Web Gateway
Artemis!3DF8716A2273, Artemis!062BDA96A95E, Artemis!84B99F4F1E1E, Artemis!E3344E4E478D
8.00%

Bkav FE
W32.Clod217.Trojan, W32.Clod58d.Trojan, W32.Clod935.Trojan
6.00%

K7 Gateway Antivirus
Unwanted-Program
6.00%

K7 AntiVirus
Unwanted-Program
6.00%

AhnLab V3 Security
PUP/Win32.ExpressFiles
6.00%

herdProtect (fuzzy)
a variant of 2b80df6571c45c48ae793fb3a8aca31af677b1e8, a variant of 7a268514cfc9b35c7492a03c6bcc4e6b3d70ec7f, a variant of 6bf8612eb5817e09739f1b9fcfa9d8c21c979f93
6.00%

The domain install.express-downloader.com has been seen to resolve to the following 3 IP addresses.

January 12, 2014

December 22, 2013

199.195.196.172.static.midphase.com
December 22, 2013

File downloads found at URLs served by install.express-downloader.com.

1 / 68      (Adware)
http://install.express-downloader.com/j5G1RWfAu1Jl1bteZNK0aGLZvjN7srxgebaxIGyhyiF/.../  (prepricavanje_lektire_orlovi_rano_lete_downloader_ba_167.exe)

1 / 68      (Adware)
http://install.express-downloader.com/.../jJymQ8yxc4rg4FbufMg==  (download_dizzee_rascal_torrents_-_kickasstorrents_downloader.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://install.express-downloader.com/.../ZplUth MPJIn6Im3IvDFztLAkeO IH6txydt8dRkGuTbYxXs2W8Mr5wKSuHAVwbGih5Uk5AGXtU4Sg3cMFEkgmYWe8M9Sw==  (441068-download-foundations-sport-and-exercise-psychology-web-study-guide-5th-edition-robert_downloa)

1 / 68      (Adware)

 
Latest 30 of 211 download URLs

Facebook:
Likes:  6,626
Shares:  3,445
Comments:  2,246

Statistics are for the previous month.