www.download-boosters.com

Download Boosters

Domain Information

The domain www.download-boosters.com registered by Download Boosters was initially registered in June of 2005 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kihei, Hawaii within the United States which resides on the ThePlanet.com Internet Services, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Hawaii, United States (US)

Create date:
Monday, June 06, 2005

Expires date:
Monday, June 06, 2016

Updated date:
Thursday, March 03, 2016

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Scanner detections:
Detections  (53% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ProsperaSoftware.d, PUP.ProsperaSoftware.EE, PUP.HipgnosisVision.EE, PUP.HipgnosisVision.p, PUP.HipgnosisVision.d, PUP.HipgnosisVision.Installer (M), PUP.Hipgnosi.Installer (M)
55.56%

ESET NOD32
Win32/DownWare, MSIL/HipgnosisBrains.A potentially unwanted (variant)
38.89%

Zillya! Antivirus
Downloader.Agent.Win32.228288, Downloader.Agent.Win32.207153, Downloader.Agent.Win32.275962, Downloader.Agent.Win32.276327, Downloader.Agent.Win32.276339, Downloader.Agent.Win32.280108
38.89%

ESET NOD32
MSIL/HipgnosisBrains.A potentially unwanted application
33.33%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], Trojan.Win32.Generic.19C6DE57 (Cloud)
16.67%

Trend Micro House Call
TROJ_GEN.F47V1219, Suspicious_GEN.F47V1106
11.11%

Kaspersky
not-a-virus:Downloader.Win32.AdLoad
11.11%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
11.11%

Vba32 AntiVirus
Downloader.AdLoad
5.56%

Malwarebytes
PUP.Optional.Conduit.A
5.56%

Dr.Web
Adware.Conduit.3
5.56%

Antiy Labs AVL
RiskWare[Downloader:not-a-virus]/Win32.AdLoad
5.56%

Baidu Antivirus
Multi.Threats.InArchive
5.56%

The domain www.download-boosters.com has been seen to resolve to the following 4 IP addresses.

184.173.253.242-static.reverse.softlayer.com
April 15, 2016

February 8, 2016

September 5, 2014

December 28, 2013

File downloads found at URLs served by www.download-boosters.com.

2 / 68      (inconclusive)

0 / 68
http://www.download-boosters.com/.../vcredist_x86.exe  (5c82be7ad1775b67916ee19c15b99331)

3 / 68      (inconclusive)

3 / 68      (inconclusive)

2 / 68      (inconclusive)

3 / 68      (inconclusive)

3 / 68      (inconclusive)

2 / 68      (inconclusive)

2 / 68      (inconclusive)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

2 / 68      (PUP)
http://www.download-boosters.com/.../uTorrentTurboBooster_installer.exe  (utorrentturbobooster_installer from filecluster.exe)

5 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

The following 87 files have been seen to comunicate with www.download-boosters.com in live environments.

 
Latest 20 of 87 files

URL:
http://www.download-boosters.com/

Title:
“Download Boosters | P2P and File Sharing”

Web server:
Apache/2.4.7 (Ubuntu) (PHP/5.5.9-1ubuntu4.14)

Facebook:
Shares:  15
Comments:  10

Statistics are for the previous month.