www.typicaldownload.com

Corp New Ventures Services

Domain Information

The domain www.typicaldownload.com registered by Corp New Ventures Services was initially registered in June of 2014 through Moniker Online Services. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redwood City, California within the United States which resides on the SKYE network.
Remove Malware from www.typicaldownload.com - Powered by Reason Core Security
Registrar:
INLANDDOMAINS, LLC

Server location:
California, United States (US)

Create date:
Saturday, June 28, 2014

Expires date:
Tuesday, June 28, 2016

Updated date:
Tuesday, September 22, 2015

ASN:
AS26008 NOMINUM-SKYE1 - SKYE

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Amonetizeltd.F, PUP.Installer.ShetefSolutionsConsulting1998.f, PUP.Installer.ShetefSolutionsConsulting1998.b
100.00%

ESET NOD32
Win32/Amonetize.AJ (variant), Win32/Amonetize (variant)
100.00%

Malwarebytes
PUP.Optional.Amonetize.A
80.00%

Dr.Web
Adware.Downware.2467, Adware.Downware.1528, Adware.Downware.1549
60.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
60.00%

avast!
Win32:Amonetize-AO [PUP], Win32:Amonetize-Q [PUP]
40.00%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize
40.00%

VIPRE Antivirus
Amonetize
40.00%

Avira AntiVirus
ADWARE/Adware.Gen2
40.00%

Sophos
Amonetize
40.00%

AhnLab V3 Security
PUP/Win32.Amonetiz
40.00%

Trend Micro House Call
TROJ_GEN.F47V1013
40.00%

AVG
MalSign.Generic
20.00%

McAfee
Artemis!57AE42F23664
20.00%

McAfee Web Gateway
Artemis!57AE42F23664
20.00%

The domain www.typicaldownload.com has been seen to resolve to the following 7 IP addresses.

July 1, 2015

May 4, 2015

March 4, 2015

August 13, 2014

search.dnsassist.verizon.net
June 26, 2014

ec2-107-21-115-114.compute-1.amazonaws.com
April 11, 2014

ec2-54-235-68-127.compute-1.amazonaws.com
April 11, 2014

File downloads found at URLs served by www.typicaldownload.com.

The following 48 files have been seen to comunicate with www.typicaldownload.com in live environments.

 
Latest 20 of 48 files

URL:
http://www.typicaldownload.com/

Title:
“typicaldownload.com”

Web server:
nginx (PHP/5.3.3-7+squeeze28)

Remove Malware from www.typicaldownload.com - Powered by Reason Core Security