www.1clickdownloader.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.1clickdownloader.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Remove Malware from www.1clickdownloader.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Wednesday, November 16, 2011

Expires date:
Wednesday, November 16, 2016

Updated date:
Saturday, November 21, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (88% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Downware.167, Trojan.FakeAV.13598, Threat.Undefined, Trojan.DownLoader6.43711, Trojan.DownLoader6.4986, Adware.Downware.480
68.18%

VIPRE Antivirus
Trojan.Win32.Generic, Iminent, Threat.4784938, Threat.4150696
63.64%

ESET NOD32
multiple threats, Win32/Adware.1ClickDownload application, Win32/Adware.1ClickDownload.C application
59.09%

F-Prot
W32/SmallTrojan.AQ.gen
45.45%

avast!
NSIS:Oneclick-D [PUP], Adware-CQ [Adw], Adware-CT [PUP]
36.36%

Avira AntiVirus
ADWARE/Adware.Gen2, TR/Small.EB.1, W32/Sality.AT
36.36%

Reason Heuristics
PUP.Downloadnow.e, PUP.Win.Reputation, PUP.Downloadnow.FF, PUP.Downloadnow.l, PUP.OneClickDownload.Downloadnow.Bundler (M), PUP.TerraFirmaInternetConsulting.Installer (M)
31.82%

NANO AntiVirus
Trojan.Nsis.Downware.qyzlh, Trojan.Nsis.1Clickdownload.qwfit, Riskware.Nsis.1ClickDownload.vjxfa
31.82%

Trend Micro House Call
TROJ_GEN.RCEH1GC, HV_1CLICKDOWNLOAD_CA2334F7.TOMC, HV_DOWNLOADER_CI052863.RDXN, HV_1CLICKDOWNLOAD_CI053625.RDXN
22.73%

SUPERAntiSpyware
Trojan.Agent/Gen-ClickDownload
22.73%

McAfee Web Gateway
BehavesLike.Win32.AdwareSweet.cc, BehavesLike.Win32.Downloader.cc
22.73%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), Win32.Troj.Agent.ac.(kcloud)
18.18%

Kaspersky
not-a-virus:HEUR:Downloader.Win32.Generic
13.64%

ESET NOD32
Win32/Adware.1ClickDownload
9.09%

Antiy Labs AVL
GrayWare[:not-a-virus]/Win32.Downloader.gen
9.09%

The domain www.1clickdownloader.com has been seen to resolve to the following 9 IP addresses.

February 12, 2016

ip-184-168-221-96.ip.secureserver.net
January 3, 2016

ip-184-168-221-44.ip.secureserver.net
November 23, 2015

ec2-184-169-157-32.us-west-1.compute.amazonaws.com
December 1, 2014

ec2-50-18-168-176.us-west-1.compute.amazonaws.com
November 12, 2014

ec2-50-18-172-232.us-west-1.compute.amazonaws.com
October 9, 2014

ec2-50-18-174-205.us-west-1.compute.amazonaws.com
March 27, 2014

ec2-204-236-130-106.us-west-1.compute.amazonaws.com
February 20, 2014

ec2-54-215-5-252.us-west-1.compute.amazonaws.com
February 1, 2014

File downloads found at URLs served by www.1clickdownloader.com.

The following 22 files have been seen to comunicate with www.1clickdownloader.com in live environments.

 
Latest 20 of 22 files

URL:
http://www.1clickdownloader.com/

Title:
“1clickdownloader.com - 1clickdownloader Resources and Information.”

Description:
“1clickdownloader.com is your first and best source for information about 1clickdownloader . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

Remove Malware from www.1clickdownloader.com - Powered by Reason Core Security