software.trustydownloads.com

Air Software  (via a Proxy Registrant)

Domain Information

The domain software.trustydownloads.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2013. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Air Software who is located in Victoria, British Columbia in Canada.
Remove Malware from software.trustydownloads.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Wednesday, January 30, 2013

Expires date:
Monday, January 30, 2017

Updated date:
Thursday, February 04, 2016

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadManager.F, DownloadManager.AirSoftware.P, PUP.Air Software.DownloadManager.Bundler (M), PUP.Air Software.AirSoftware.Bundler (M)
100.00%

K7 Gateway Antivirus
Unwanted-Program
58.33%

K7 AntiVirus
Unwanted-Program , Adware
58.33%

avast!
Win32:Malware-gen, PUP-gen [PUP], Win32:Installer-L [PUP], Win32:Adware-CAH [PUP]
58.33%

Dr.Web
Trojan.SMSSend.4902, Trojan.SMSSend.4317, Adware.Downware.2035, Trojan.SMSSend.4543
58.33%

VIPRE Antivirus
Iminent, Threat.4782985, AirInstaller
58.33%

Avira AntiVirus
ADWARE/Adware.Gen, Adware/AirInst.1174, Adware/AgentCV.A.3144, ADWARE/Adware.Gen7
58.33%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
58.33%

AVG
BundleApp_r.D, Adware Generic_r.JA, Adware BundleApp_r.D
58.33%

F-Prot
W32/AirInstall.A.gen, W32/A-8c0ea402
50.00%

NANO AntiVirus
Riskware.Win32.AirAdInstaller.cxhlvu, Riskware.Win32.AirAdInstaller.daxzhz, Riskware.Win32.AirAdInstaller.dmnhwl, Riskware.Win32.Downware.cwfgel
50.00%

Comodo Security
Application.Win32.AirAdInstaller.B, Application.Win32.AirAdInstaller.A
50.00%

Sophos
AirInstaller, PUA 'AirInstaller'
50.00%

Antiy Labs AVL
Spyware[AdWare:not-a-virus]/Win32.AirAdInstaller, Trojan[:HEUR]/Win32.AGeneric
50.00%

G Data
Win32.Adware.Airadinstaller, Gen:Variant.Application.Bundler.AirInstaller
50.00%

The domain software.trustydownloads.com has been seen to resolve to the following 3 IP addresses.

ip-50-63-202-44.ip.secureserver.net
February 10, 2016

unallocated.barefruit.co.uk
August 1, 2014

April 13, 2014

File downloads found at URLs served by software.trustydownloads.com.

33 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

0 / 68
http://software.trustydownloads.com/.../VirtualDJ.exe  (install_virtualdj_home_v7.3.exe)

1 / 68      (Adware)

1 / 68      (Adware)

30 / 68    (Adware)

28 / 68    (Adware)

21 / 68    (Adware)

20 / 68    (Adware)

20 / 68    (Adware)

11 / 68    (Adware)

The following 137 files have been seen to comunicate with software.trustydownloads.com in live environments.

 
Latest 20 of 137 files

URL:
http://software.trustydownloads.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

Remove Malware from software.trustydownloads.com - Powered by Reason Core Security