The domain install.express-downloader.com registered by Whois Privacy Corp. was initially registered in September of 2012 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Saint Helens, Oregon within the United States which resides on the Hosting Services, Inc. network.
INTERNET DOMAIN SERVICE BS CORP
Oregon, United States (US)
Monday, September 03, 2012
Saturday, September 03, 2016
Friday, December 11, 2015
Detections (100% detected)
PUP.FaglaroEnterprisesLimited.R, PUP.FaglaroEnterprisesLimited.P, PUP.FaglaroEnterprisesLimited.Q, PUP.FaglaroEnterprisesLimited.J, PUP.FaglaroEnterprisesLimited.FF, PUP.FaglaroEnterprisesLimited.BB, PUP.FaglaroEnterprisesLimited.?, Threat.Win.Reputation.IMP, PUP.FaglaroEnterprisesLimited.y, PUP.FaglaroEnterprisesLimited.b, Threat.FaglaroEnterprises, PUP.Blisbury.Bundler, PUP.Blisbury.FaglaroEnterprises.Bundler (M)
ExpressFiles Installer, Threat.4783941
Express Files, PUA 'Express Files'
ADWARE/Adware.Gen2, Adware/BrowseFox.apa, ADWARE/BrowseFox.apa, PUA/EDownloader.Gen
Artemis!BA6208CB5C33, Artemis!1FBDCF9C1254, Artemis!3DF8716A2273, Artemis!84B99F4F1E1E, Artemis!077C56205D58, Artemis!EC35E15F5FAE, Artemis!EED57610B3C9, Artemis!A04E88F9C9FC
K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
McAfee Web Gateway
Artemis!BA6208CB5C33, Artemis!1FBDCF9C1254, Artemis!3DF8716A2273, Artemis!84B99F4F1E1E, Artemis!077C56205D58, Artemis!EC35E15F5FAE
Win32/ExpressFiles (variant), Win32/ExpressFiles.B potentially unwanted (variant)
AhnLab V3 Security
MalSign.Faglaro Enterprises Limited
The domain install.express-downloader.com has been seen to resolve to the following 3 IP addresses.
December 22, 2013
File downloads found at URLs served by install.express-downloader.com.
Latest 30 of 154 download URLs
Statistics are for the previous month.