www.first-download.net

ClickAdSys Co

Domain Information

The domain www.first-download.net registered by ClickAdSys Co was initially registered in January of 2014 through DOMAIN.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Greenwich, Connecticut within the United States which resides on the Choopa, LLC network.
Registrar:
DOMAIN.COM, LLC

Server location:
Connecticut, United States (US)

Create date:
Friday, January 31, 2014

Expires date:
Saturday, January 31, 2015

Updated date:
Friday, January 31, 2014

ASN:
AS20473 AS-CHOOPA - Choopa, LLC,US

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MaxSetup.K, PUP.MaxSetup.G, PUP.MaxSetup.M, PUP.installCore (M)
100.00%

Dr.Web
Trojan.Packed.24524
80.00%

VIPRE Antivirus
InstallCore.b, Threat.4837543, Threat.4788237
80.00%

Malwarebytes
PUP.Optional.MaxSetup, PUP.Optional.InstallCore.A
60.00%

K7 Gateway Antivirus
Unwanted-Program
60.00%

K7 AntiVirus
Unwanted-Program
60.00%

Sophos
Install Core Click run software, PUA 'Install Core Click run software'
60.00%

Comodo Security
Application.Win32.Installcore.MXT, Application.Win32.InstallCore.BWAM
60.00%

Avira AntiVirus
Adware/InstallCore.A.120, ADWARE/InstallCore.Gen7
60.00%

G Data
Win32.Application.InstallCore
60.00%

AVG
MalSign.InstallC, Adware Generic5.AOQM, InstallCore
60.00%

ESET NOD32
Win32/InstallCore.JE.gen potentially unwanted application, Win32/InstallCore.MJ potentially unwanted application, Win32/InstallCore.BY potentially unwanted application
60.00%

Agnitum Outpost
Trojan.Kryptik, PUA.InstallCore
40.00%

Antiy Labs AVL
Trojan/Win32.TSGeneric
40.00%

Vba32 AntiVirus
Downware.InstallCore
40.00%

The domain www.first-download.net has been seen to resolve to the following IP address.

108.61.140.13.choopa.net
April 20, 2014

File downloads found at URLs served by www.first-download.net.

1 / 68      (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (142f7c424726721d20471b8177a8a8a6)

17 / 68    (Adware)

0 / 68
http://www.first-download.net/en/downloads/.../Chrome.exe  (chromestandalonesetup_33.0.1750.146.exe)

4 / 68      (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (692c46342bcc6ea264c8d113f848a0f8)

16 / 68    (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (bf431571b50f164b751cfb59726cb4d8)

14 / 68    (Adware)

URL:
http://www.first-download.net/

Google Analytics:
UA-40230645

Title:
“downloadclick.net - The latest software for free”

Description:
“Get the latest versions of famous software products for free.”

Web server:
Apache (Phusion Passenger 4.0.25)