The domain install.version-upgrades.com registered by Corp New Ventures Services was initially registered in June of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redwood City, California within the United States which resides on the SKYE network.
California, United States (US)
Saturday, June 21, 2014
Tuesday, June 21, 2016
Tuesday, September 22, 2015
AS26008 NOMINUM-SKYE1 - SKYE
Detections (100% detected)
PUP.Installer.PaymentsInteractiveSL.F, PUP.Installer.WARPINSTALLER.G, DownloadManager.AirSoftware.G, PUP.Air Software.AirSoftware.Bundler (M), PUP.Amonitize.Installer (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.Air Software (M)
Adware Skodna.Bundle_r.Y, AdPlugin, Adware Generic_r.JG, Generic5
PUP-gen [PUP], Win32:IBryte-DB [PUP], Win32:Adware-CAH [PUP], Adware-gen [Adw]
AdWare.MSIL.r3 (Not a Virus), Adware.iBryte.DK4, Adware.AirAdInstaller.I5, Adware.AirAdInstaller.C5
Trojan.Win32.Generic, Threat.4778314, Threat.4782985, AirInstaller
Unwanted-Program , Adware
K7 Gateway Antivirus
Unwanted-Program , Adware
Trojan.Win32.DomaIQ.ctadmg, Trojan.Win32.Agent.cxjjsz, Riskware.Win32.Downware.cwfgel, Riskware.Win32.AirAdInstaller.cwscxy
W32/DomaIQ.D3.gen, W32/DomaIQ.G2.gen, W32/AirInstall.A.gen
Application.Win32.DomaIQ.URT, Application.Win32.iBryte.WRP, Application.Win32.AirAdInstaller.A, Application.Win32.Agent.AJ
Trojan.DownLoader9.21779, Trojan.Packed.26508, Adware.Downware.1116, Adware.Downware.10718, Adware.Downware.1167, Adware.Downware.897
APPL/DomaIQ.Gen, ADWARE/Adware.Gen7, Adware/AirInst.2556, Adware/Airinstall.J
AdWare/MSIL.aij, Adware/iBryte.gtzh, AdWare/AirAdInstaller.g, AdWare/AirAdInstaller.fz, AdWare/AirAdInstaller.w
Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/MSIL.DomaIQ, Trojan[:HEUR]/Win32.AGeneric, GrayWare[AdWare:not-a-virus]/Win32.AirAdInstaller
Gen:Variant.Application.Bundler.DomaIQ, Win32.Adware.Ibryte, Win32.Adware.Airadinstaller
The domain install.version-upgrades.com has been seen to resolve to the following 5 IP addresses.
May 21, 2014
File downloads found at URLs served by install.version-upgrades.com.
Latest 30 of 30 download URLs
The following 49 files have been seen to comunicate with install.version-upgrades.com in live environments.
“Find Cash Advance, Debt Consolidation and more at Version-Upgrades.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Version-Upgrades.com is the site for Cash Advance.”
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)
30 of 685 related domains