www.idownloadplay.com

George Memphis

Domain Information

The domain www.idownloadplay.com registered by George Memphis was initially registered in January of 2014 through WILD WEST DOMAINS, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Terrebonne, Quebec within Canada which resides on the GloboTech Communications network.
Remove Malware from www.idownloadplay.com - Powered by Reason Core Security
Registrar:
WILD WEST DOMAINS, LLC

Server location:
Quebec, Canada (CA)

Create date:
Thursday, January 09, 2014

Expires date:
Friday, January 09, 2015

Updated date:
Tuesday, January 14, 2014

ASN:
AS36666 GTCOMM - GloboTech Communications,CA

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Dr.Web
Tool.InstallToolbar.129, Adware.Toolbar.272
100.00%

ESET NOD32
Win32/Toolbar.Visicom (variant)
100.00%

Reason Heuristics
PUP.ZGameToolbarInstaller.VisicomMedia.M, PUP.DLSecureToolbarInstaller.VisicomMedia.P
100.00%

McAfee
Artemis!00B6A8C35C6A, Artemis!B78A70A956AD, Artemis!407DF097C21F, Artemis!AB7A0A813215
66.67%

Trend Micro House Call
TROJ_GE.DAB0F271, TROJ_GEN.F47V1219, Suspicious_GEN.F47V1113, Suspicious_GEN.F47V1125
66.67%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-PKR.O, Artemis
66.67%

Malwarebytes
PUP.Optional.DLSecure.A
66.67%

Fortinet FortiGate
Riskware/Visicom
50.00%

Agnitum Outpost
PUA.Toolbar.Visicom
33.33%

K7 Gateway Antivirus
Trojan
16.67%

K7 AntiVirus
Trojan
16.67%

VIPRE Antivirus
Trojan.Win32.Generic!SB.0
16.67%

The domain www.idownloadplay.com has been seen to resolve to the following IP address.

April 29, 2014

File downloads found at URLs served by www.idownloadplay.com.

9 / 68      (PUP)
http://www.idownloadplay.com/.../dlsecureTb_1.0.1.5.exe  (ab7a0a813215575d287c738ac8cc8a84)

9 / 68      (PUP)
http://www.idownloadplay.com/.../dlsecureTb_1.0.1.3.exe  (407df097c21f4b6f2bb63858f8562cd2)

4 / 68      (PUP)
http://www.idownloadplay.com/.../dlsecureTb_1.0.1.2.exe  (8190a2b9da27b453f84789505d9f35f8)

7 / 68      (PUP)
http://www.idownloadplay.com/.../dlsecureTb_1.0.1.0.exe  (b78a70a956adb2d42dce026cc0f6f7bb)

4 / 68      (PUP)
http://www.idownloadplay.com/.../dlsecureTb_1.0.0.2.exe  (8fad8d914514025e79b99a7cc8e4bf60)

9 / 68      (PUP)
http://www.idownloadplay.com/.../z_downloader.exe  (00b6a8c35c6a868d53b29cfec94da42e)

URL:
http://www.idownloadplay.com/

Title:
“#1 Search Engine - idownloadplay”

Web server:
Apache/2.2.3 (CentOS)

Remove Malware from www.idownloadplay.com - Powered by Reason Core Security