www.startsdownload.com

Kim Watson

Domain Information

The domain www.startsdownload.com registered by Kim Watson was initially registered in October of 2012 through DOMAIN.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Burlington, Massachusetts within the United States which resides on the The Endurance International Group, Inc. network.
Registrar:
DOMAIN.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Monday, October 15, 2012

Expires date:
Saturday, October 15, 2016

Updated date:
Wednesday, September 30, 2015

Root domain:

Scanner detections:
Detections  (70% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Bundler (M), PUP.Win.Reputation, PUP.Installer.DownloadShield, PUP.DownloadShield.Installer (M), Adware.DownloadShield.Bundle.Installer.Meta (M), PUP.installCore.DownloadJet.Installer (M)
77.27%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, Worm.Koobface.rtz
68.18%

McAfee Web Gateway
Artemis!782BAEE48B9C, Artemis!3188C050DF0E, BehavesLike.Win32.AdwareMonetizer.dc, BehavesLike.Win32.AdwareSweet.dc, BehavesLike.Win32.Downloader.dc
54.55%

VIPRE Antivirus
Conduit, No Threat: Solimba, Trojan.Win32.Generic, DownloadShield, Threat.4786018
45.45%

McAfee
Artemis!782BAEE48B9C, Artemis!3188C050DF0E, Artemis!3495F84668DA, Artemis!824534B45B24, Artemis!5D1EE232CB3E, Artemis!D5D63E620531, Artemis!4CF599E48944, Artemis!DF664BAA27D8
40.91%

AVG
MultiBundle, Could be an adware MultiBundle
40.91%

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader
31.82%

Trend Micro House Call
TROJ_GEN.R0CBH07DK14, TROJ_GEN.F47V0308, HV_ZYX_CA083374.TOMC, TROJ_GEN.R047H05CG15, TROJ_GEN.F47V0802, Suspicious_GEN.F47V0413
27.27%

Qihoo 360 Security
Win32/Trojan.dc4, HEUR/QVM42.1.Malware.Gen, QVM42.0.Malware.Gen, Win32/Trojan.dd1
27.27%

Antiy Labs AVL
Trojan/Win32.SGeneric, Trojan[:HEUR]/Win32.Unknown, Trojan/Win32.Generic.gen
22.73%

Kingsoft AntiVirus
VIRUS_UNKNOWN
18.18%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF
13.64%

Kaspersky
Trojan.Win32.StartPage
9.09%

K7 Gateway Antivirus
Trojan , Riskware
9.09%

K7 AntiVirus
Trojan , Riskware
9.09%

The domain www.startsdownload.com has been seen to resolve to the following 2 IP addresses.

16.149.96.66.static.eigbox.net
February 7, 2016

132.162.96.66.static.eigbox.net
May 1, 2014

File downloads found at URLs served by www.startsdownload.com.

4 / 68      (PUP)
http://www.startsdownload.com/winrar/.../WinRAR_Setup.exe  (bc9bdee37de2332978763d4828cac595)

1 / 68
http://www.startsdownload.com/avg/.../AVG.exe  (avg_free_stb_all_2013_3272_cnet.exe)

16 / 68    (PUP)
http://www.startsdownload.com/picasa/.../Picasa_Setup.exe  (3b18d763a0e6f2e631437a2eedb4c576)

4 / 68      (PUP)

0 / 68

12 / 68    (PUP)

The following file have been seen to comunicate with www.startsdownload.com in live environments.

URL:
http://www.startsdownload.com/

Title:
“Use StartsDownload to find completely free software. | StartsDownload”

Description:
“StartsDownload lets you find awesome software that is 100% free.”

Web server:
Apache/2