secure.trustydownloads.com

Air Software

Domain Information

The domain secure.trustydownloads.com registered by China Capital Investment Limited was initially registered in January of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network. The domain is associated with the publisher Air Software who is located in Victoria, British Columbia in Canada.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Wednesday, January 30, 2013

Expires date:
Monday, January 30, 2017

Updated date:
Monday, March 14, 2016

ASN:
AS393406 DIGITALOCEAN-ASN-NY3 - Digital Ocean, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadAssistant.P, PUP.Installer.Air Software, PUP.Bundler.Air Software, PUP.Air Software.DownloadAssistant.Bundler (M), PUP.Vittalia.InstallHelper.Installer (M), PUP.Air Software.Download.Bundler (M), PUP.Vittalia.InstallH.Installer (M)
100.00%

VIPRE Antivirus
Threat.4782985
15.00%

ESET NOD32
Win32/DownloadAssistant.A potentially unwanted application
15.00%

AVG
Generic, DownloadAssistant.A
15.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.32
10.00%

F-Secure
Riskware.Gen:Variant.Application.Bundler
10.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.32
10.00%

Norman
Gen:Variant.Application.Bundler.32
10.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.32
10.00%

Malwarebytes
PUP.Optional.DownloadAssistant
10.00%

Bitdefender
Gen:Variant.Application.Bundler.32
10.00%

G Data
Gen:Variant.Application.Bundler.32
10.00%

NANO AntiVirus
Trojan.Win32.ZPACK.dlnoxx, Trojan.Win32.DownloadHelper.dpgylc
10.00%

Avira AntiVirus
APPL/Downloader.Gen, TR/Crypt.XPACK.Gen
10.00%

AhnLab V3 Security
PUP/Win32.Bundler
10.00%

The domain secure.trustydownloads.com has been seen to resolve to the following 6 IP addresses.

192.230.92.93.ip.incapdns.net
August 6, 2016

199.83.132.93.ip.incapdns.net
July 29, 2016

April 1, 2016

ip-50-63-202-44.ip.secureserver.net
February 12, 2016

fd-03-do-e-ny-3.gtdlrfwd.com
December 15, 2015

useast.gtdlrfwd.com
January 16, 2015

File downloads found at URLs served by secure.trustydownloads.com.

The following 24 files have been seen to comunicate with secure.trustydownloads.com in live environments.

 
Latest 20 of 24 files

URL:
http://secure.trustydownloads.com/

Web server:
nginx/1.8.1