www.down1oads.com

Somoto Ltd.  (via a Proxy Registrant)

Domain Information

The domain www.down1oads.com is registered by proxy through GODADDY.COM, LLC and was originally registered in April of 2012. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Dusseldorf, Nordrhein-Westfalen within Germany which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Somoto Ltd. who is located in Tel Aviv, Israel.
Registrar:
GODADDY.COM, LLC

Server location:
Nordrhein-Westfalen, Germany (DE)

Create date:
Monday, April 16, 2012

Expires date:
Sunday, April 16, 2017

Updated date:
Tuesday, May 05, 2015

ASN:
AS25074 INETBONE-AS MESH GmbH

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BetterInstaller.Somoto.BB, PUP.BetterInstaller.Somoto.W, PUP.BetterInstaller.Somoto.S, PUP.Somoto.Bundler (M), PUP.Downloader.Installer (M), PUP.Somoto (M), PUP.Downloader (M), PUP.Somoto.BetterInstaller (M), Win32.Generic
100.00%

Malwarebytes
PUP.Optional.Somoto
16.28%

K7 AntiVirus
Unwanted-Program
16.28%

K7 Gateway Antivirus
Unwanted-Program
16.28%

Clam AntiVirus
Adware.Somoto-1
16.28%

SUPERAntiSpyware
Adware.Somoto/Variant
16.28%

Sophos
Somoto BetterInstaller
16.28%

Comodo Security
Application.Win32.Somoto.A
16.28%

VIPRE Antivirus
BetterInstaller
16.28%

Avira AntiVirus
APPL/Somoto.Gen2
16.28%

G Data
Win32.Application.Somoto, Trojan.Generic.11029045, Application.Bundler.Somoto
16.28%

Vba32 AntiVirus
Downloader.Agent
16.28%

AVG
AdInstaller.Somoto
16.28%

F-Prot
W32/SomotoBetterInstaller.A
13.95%

Trend Micro House Call
TROJ_GEN.R0CBH0ALI13, TROJ_GEN.R0CBH07KO13, TROJ_GEN.F0C2C00A614, TROJ_GEN.R0CBB01AQ14, TROJ_GEN.R04AB01AM14, ADW_SOMOTO
13.95%

The domain www.down1oads.com has been seen to resolve to the following IP address.

January 6, 2014

File downloads found at URLs served by www.down1oads.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.down1oads.com/.../FreeZipSetup-7Zyozi4Z.exe  (7f2fcd6891fbfa358d0d59ccdf63c504)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-N4UcrxEW6.exe  (e38748eff63fa184c2444bd0eae095e7)

1 / 68      (Adware)
http://www.down1oads.com/.../FreeZipSetup-6LsQh8cB.exe  (29b1ac5bb85e382fd730ff008b1006e7)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-0Mlckkiv.exe  (6801c8daf3943bc501af6d3a20f98503)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-Ne0nQRqKK.exe  (c18d339f9739954954ecf0a538f5cca9)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-N5939Iaj0.exe  (582b0450b0de5cacee6bb31fb369e2da)

1 / 68      (Adware)

1 / 68      (Adware)

0 / 68
http://www.down1oads.com/.../FLVPlayerSetup-N5OqcFLmR.exe  (4aee69dedf187ce7920b3194b8d4bdb5)

0 / 68
http://www.down1oads.com/.../FLVPlayerSetup-N1TbAuB8n.exe  (9e0e88f5bd0060e052d3e819db14a0b0)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-N39j6kufU.exe  (b4b644a01e4960ea0f6c49df5e8b24b9)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-NdiGyIFnL.exe  (37818540614b63de0c900062e92adddc)

1 / 68      (Malware)
http://www.down1oads.com/.../FreeZipSetup-4Titc9rR.exe  (vlcmediaplayersetup-fbib9wa.exe)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-N5cgPGCic.exe  (dba5bf0e5676a1b60bea0d3d7972f325)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-N01gQSSJ5.exe  (6ee6db6bb12b2652fadae0e53f3d8d08)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-c8L4YfB.exe  (cfca5c033c1ecf7f3db6563eb6c06a18)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-NfovmYons.exe  (497e46c562dbf84c93b92e87ecc890b9)

26 / 68    (Adware)

30 / 68    (Adware)

26 / 68    (Adware)

22 / 68    (Adware)
http://www.down1oads.com/.../FLVPlayerSetup-cwO7aUv.exe  (flvvideoplayersetup-9wiovpu.exe)

 
Latest 30 of 1,817 download URLs

URL:
http://www.down1oads.com/

Web server:
nginx

Facebook:
Shares:  1

Statistics are for the previous month.