installers.toggle.com

Bibado Investments, SL

Domain Information

The domain installers.toggle.com registered by Bibado Investments, SL was initially registered in December of 1995 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Remove Malware from installers.toggle.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Quebec, Canada (CA)

Create date:
Tuesday, December 05, 1995

Expires date:
Sunday, December 04, 2016

Updated date:
Monday, October 26, 2015

ASN:
AS16276 OVH OVH Systems

Root domain:

Scanner detections:
Detections  (79% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SILICOMINTERNETSL.CC, PUP.SILICOMINTERNETSL.X, PUP.Installer.SoftInstall.AA, PUP.SILICOMINTERNETSL.O, PUP.Installer.SoftInstall.BB, PUP.DestinyDreamSA.N, PUP.DestinyDreamSA.m, PUP.DestinyDreamSA.S, PUP.installCore.SILICOMINTERNET (M), PUP.installCore.DestinyDreamSA (M)
81.25%

AVG
Generic
62.50%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
50.00%

ESET NOD32
Win32/InstallCore.NU potentially unwanted application, Win32/InstallCore.PZ potentially unwanted application, Win32/InstallCore.QH potentially unwanted application
43.75%

F-Prot
W32/InstallCore.AC.gen, W32/InstallCore.AG.gen
43.75%

McAfee Web Gateway
BehavesLike.Win32.Trojan.bc, BehavesLike.Win32.CryptInno.bc
37.50%

Dr.Web
Adware.OpenCandy.39, infected with Trojan.Packed.24524, Trojan.Packed.28498, Trojan.InstallCore.11, Trojan.InstallCore.41
31.25%

K7 Gateway Antivirus
Unwanted-Program , Trojan
31.25%

K7 AntiVirus
Unwanted-Program , Trojan
31.25%

Sophos
Install Core Click run software, PUA 'Install Core Click run software'
25.00%

Avira AntiVirus
ADWARE/InstallCore.Gen9, ADWARE/InstallCore.Gen7
25.00%

ESET NOD32
Win32/OpenCandy (variant), Win32/InstallCore.QH (variant), Win32/InstallCore.QL (variant)
18.75%

Antiy Labs AVL
Virus/Win32.Delf.gen, Trojan/Win32.Tgenic
12.50%

NANO AntiVirus
Trojan.Win32.CheatEngine.ddqnic, Riskware.Win32.InstallCore.dmfory
12.50%

SUPERAntiSpyware
PUP.InstallCore/Variant
6.25%

The domain installers.toggle.com has been seen to resolve to the following IP address.

toggle.com
June 5, 2014

File downloads found at URLs served by installers.toggle.com.

0 / 68

6 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

11 / 68    (Adware)
https://installers.toggle.com/?ic_user_id=327  (msn-messenger-7.5.0322.exe)

8 / 68      (Adware)
https://installers.toggle.com/?ic_user_id=327  (briefcase-plus-2.0.3.exe)

11 / 68    (Adware)
https://installers.toggle.com/?ic_user_id=327  (icreinstall_driver-samsung-ml-1510-laser-1.04.exe)

7 / 68      (Adware)

4 / 68      (Adware)

7 / 68      (Adware)

5 / 68      (Adware)
https://installers.toggle.com/?ic_user_id=327  (deepsea-obfuscator-4.4.1.79.exe)

10 / 68    (Adware)
https://installers.toggle.com/?ic_user_id=327  (magix-audio-cleaning-lab-14.exe)

0 / 68
https://installers.toggle.com/?ic_user_id=432  (driver-benq-5000-mirascan-6.3.5000.1.exe)

9 / 68      (Adware)

1 / 68      (Adware)
https://installers.toggle.com/?ic_user_id=327  (bubble-bobble-nostalgie-2.8.exe)

1 / 68      (Adware)
https://installers.toggle.com/?ic_user_id=432  (cyberlink-powercinema-6.exe)

1 / 68      (Adware)
https://installers.toggle.com/?ic_user_id=432  (cyberlink-youcam-5.0.2705.24349.exe)

URL:
http://installers.toggle.com/

Google Analytics:
UA-15728026

Title:
“Toggle Free Downloads (Shareware,freeware and demos)”

SSL certificate subject:
CN=*.toggle.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
nginx

Remove Malware from installers.toggle.com - Powered by Reason Core Security