link.wdownloadmanager.com

Starline Alliance LTD.

Domain Information

The domain link.wdownloadmanager.com registered by Starline Alliance LTD. was initially registered in November of 2013 through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Austin, Texas within the United States which resides on the YHC Corporation network.
Remove Malware from link.wdownloadmanager.com - Powered by Reason Core Security
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Texas, United States (US)

Create date:
Friday, November 22, 2013

Expires date:
Tuesday, November 22, 2016

Updated date:
Monday, November 23, 2015

ASN:
AS40034 CONFLUENCE-NETWORK-INC - Confluence Networks Inc,VG

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.WinnerSolutions.DD, PUP.Optional.Installer.P, Win32.Generic.WinnerSolutions.Installer.Meta
95.24%

Dr.Web
Adware.Downware.2232, Adware.Downware.2095
38.10%

ESET NOD32
Win32/bmMedia
23.81%

Malwarebytes
PUP.Optional.WinSolution
19.05%

Kaspersky
not-a-virus:Downloader.Win32.Widoman
19.05%

SUPERAntiSpyware
Trojan.Agent/Gen-bmMedia
14.29%

Kingsoft AntiVirus
Win32.Troj.DownWidoman.a.(kcloud)
14.29%

AVG
Skodna.Bundle_c, Adware Skodna.Bundle_c.BP
14.29%

ESET NOD32
Win32/bmMedia.C potentially unwanted application
14.29%

K7 Gateway Antivirus
Adware , Trojan , Unwanted-Program
14.29%

K7 AntiVirus
Adware , Unwanted-Program
9.52%

VIPRE Antivirus
Threat.5064464
4.76%

NANO AntiVirus
Trojan.Win32.BmMedia.dghkcg
4.76%

Vba32 AntiVirus
Downloader.Widoman
4.76%

Qihoo 360 Security
Malware.QVM31.Gen
4.76%

The domain link.wdownloadmanager.com has been seen to resolve to the following 5 IP addresses.

209-99-40-222.fwd.datafoundry.com
December 4, 2015

January 24, 2014

January 24, 2014

January 24, 2014

January 24, 2014

File downloads found at URLs served by link.wdownloadmanager.com.

The following 3 files have been seen to comunicate with link.wdownloadmanager.com in live environments.

URL:
http://link.wdownloadmanager.com/

Web server:
Apache

Remove Malware from link.wdownloadmanager.com - Powered by Reason Core Security