www.first-download.net

ClickAdSys Co

Domain Information

The domain www.first-download.net registered by ClickAdSys Co was initially registered in January of 2014 through DOMAIN.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Greenwich, Connecticut within the United States which resides on the Choopa, LLC network.
Registrar:
DOMAIN.COM, LLC

Server location:
Connecticut, United States (US)

Create date:
Friday, January 31, 2014

Expires date:
Saturday, January 31, 2015

Updated date:
Friday, January 31, 2014

ASN:
AS20473 AS-CHOOPA - Choopa, LLC,US

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MaxSetup.K, PUP.MaxSetup.G, PUP.MaxSetup.M, PUP.installCore (M)
100.00%

Dr.Web
Trojan.Packed.24524
80.00%

VIPRE Antivirus
InstallCore.b, Threat.4837543, Threat.4788237
80.00%

Malwarebytes
PUP.Optional.MaxSetup, PUP.Optional.InstallCore.A
60.00%

K7 AntiVirus
Unwanted-Program
60.00%

Sophos
Install Core Click run software, PUA 'Install Core Click run software'
60.00%

Comodo Security
Application.Win32.Installcore.MXT, Application.Win32.InstallCore.BWAM
60.00%

Avira AntiVirus
Adware/InstallCore.A.120, ADWARE/InstallCore.Gen7
60.00%

G Data
Win32.Application.InstallCore
60.00%

AVG
MalSign.InstallC, Adware Generic5.AOQM, InstallCore
60.00%

ESET NOD32
Win32/InstallCore.JE.gen potentially unwanted application, Win32/InstallCore.MJ potentially unwanted application, Win32/InstallCore.BY potentially unwanted application
60.00%

Agnitum Outpost
Trojan.Kryptik, PUA.InstallCore
40.00%

Vba32 AntiVirus
Downware.InstallCore
40.00%

ESET NOD32
Win32/InstallCore.LB (variant)
20.00%

herdProtect (fuzzy)
a variant of 9c1c5268833fddcd4bf786e56b9248ca6a314dfd
20.00%

The domain www.first-download.net has been seen to resolve to the following IP address.

108.61.140.13.choopa.net
April 20, 2014

File downloads found at URLs served by www.first-download.net.

1 / 68      (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (142f7c424726721d20471b8177a8a8a6)

14 / 68    (Adware)

0 / 68
http://www.first-download.net/en/downloads/.../Chrome.exe  (chromestandalonesetup_33.0.1750.146.exe)

4 / 68      (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (692c46342bcc6ea264c8d113f848a0f8)

13 / 68    (Adware)
http://www.first-download.net/en/downloads/.../Chrome.exe  (bf431571b50f164b751cfb59726cb4d8)

12 / 68    (Adware)

URL:
http://www.first-download.net/

Google Analytics:
UA-40230645

Title:
“downloadclick.net - The latest software for free”

Description:
“Get the latest versions of famous software products for free.”

Web server:
Apache (Phusion Passenger 4.0.25)