reader.download-file.windownload.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain reader.download-file.windownload.net is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Strasbourg, Alsace within France which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Alsace, France (FR)

Create date:
Tuesday, February 4, 2014

Expires date:
Saturday, February 4, 2017

Updated date:
Tuesday, December 9, 2014

ASN:
AS8972 PLUSSERVER-AS PlusServer AG,DE

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OUTBROWSE.M, PUP.Adlogica.QuickDownloader.Bundler (M)
100.00%

VIPRE Antivirus
Threat.4150696
50.00%

Dr.Web
Adware.Downware.2081
50.00%

ESET NOD32
Win32/OutBrowse.Y potentially unwanted application
50.00%

Kaspersky
not-a-virus:AdWare.Win32.OutBrowse
50.00%

K7 AntiVirus
Unwanted-Program
50.00%

NANO AntiVirus
Trojan.Win32.OutBrowse.deinil
50.00%

F-Prot
W32/Outbrowse.B2.gen
50.00%

Sophos
OutBrowse Revenyou
50.00%

Avira AntiVirus
APPL/Downloader.Gen
50.00%

G Data
Win32.Application.Outbrowse
50.00%

IKARUS anti.virus
PUA.OutBrowse
50.00%

AVG
Generic
50.00%

The domain reader.download-file.windownload.net has been seen to resolve to the following 6 IP addresses.

static-ip-62-75-207-166.inaddr.ip-pool.com
February 9, 2016

September 7, 2014

September 7, 2014

September 7, 2014

September 7, 2014

(CloudFlare)
September 7, 2014

File downloads found at URLs served by reader.download-file.windownload.net.

1 / 68      (Adware)

13 / 68    (Adware)

URL:
http://reader.download-file.windownload.net/

Title:
“ ”

Description:
“F70 33:47 - After School 32:26 , Is Over 5:10 TB- SPCL 1 1:71:29 26:18 - 1:97:24 JK 2:36 ”

Web server:
nginx/1.0.15 (PHP/5.3.3)