www.updownloadup.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain www.updownloadup.com is registered by proxy through ENOM, INC. and was originally registered in April of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Miami Beach, Florida within the United States which resides on the Krypt Technologies network.
Registrar:
ENOM, INC.

Server location:
Florida, United States (US)

Create date:
Wednesday, April 16, 2014

Expires date:
Thursday, April 16, 2015

Updated date:
Wednesday, April 16, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.E, PUP.ClovermediaSL.E, PUP.Tuguu.PaymentsInteractive.Bundler (M), PUP.Tuguu.Payments.Bundler (M)
100.00%

MicroWorld eScan
Adware.DomaIQ.AN, Gen:Variant.Application.Bundler.DomaIQ.3, Gen:Variant.Adware.Kazy.374465
26.67%

McAfee
Artemis!3DABD305A85C, Adware-DomaIQ!E050FF77D67E, Adware-DomaIQ!87EAB94F6E66, PUP-FJP!62C17A287E12
26.67%

Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.DomaIQ
26.67%

Agnitum Outpost
PUA.Lollipop, PUA.DomaIQ
26.67%

Kaspersky
not-a-virus:AdWare.Win32.Lollipop, not-a-virus:AdWare.MSIL.DomaIQ
26.67%

Bitdefender
Adware.DomaIQ.AN, Gen:Variant.Application.Bundler.DomaIQ.3, Gen:Variant.Adware.Kazy.374465
26.67%

F-Secure
Adware.DomaIQ.AN, Gen:Variant.Application.Bundler, Adware:W32/DomaIQ, Gen:Variant.Adware.Kazy.374465
26.67%

VIPRE Antivirus
Trojan.Win32.Generic, DomaIQ
26.67%

Avira AntiVirus
APPL/DomaIQ.Gen
26.67%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious.H
26.67%

Sophos
DomainIQ pay-per install, Generic PUA PN, Generic PUA MI
26.67%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/Win32.Lollipop, GrayWare[AdWare:not-a-virus]/MSIL.DomaIQ
26.67%

G Data
Adware.DomaIQ.AN, Gen:Variant.Application.Bundler.DomaIQ, Gen:Variant.Adware.Kazy.374465
26.67%

AVG
DomaIQ_r.J, Skodna.Bundle_r.Y, DomaIQ_r.K
26.67%

The domain www.updownloadup.com has been seen to resolve to the following IP address.

www.krypt.com
May 1, 2014

File downloads found at URLs served by www.updownloadup.com.

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (dc22e7597a028813e333f4ba6d3996f4)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (9eb3a78f2cbd9a6c21c42d7f277a6231)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (f06be7d68b7a4a76e915a34f5a9adddb)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (907340d5b9cd329a1ce6729b411ca695)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (34374b46a61901779cde7a87ab521f75)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (d234e8448e31b7793eddad4604ebd1bc)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (a2efca2287d0bf6b307a286f9abb50c9)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (0b5e2e3dc25ce6c093ad03a925b4ab84)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (096b31ec5d4f9eac9d0bc4f4b47cb1ba)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (34ca829c0276f84410a2b02700dba5c9)

1 / 68      (Adware)
http://www.updownloadup.com/.../Java.exe  (26bab77e1ab7087d553301f8547170c9)

22 / 68    (Adware)
http://www.updownloadup.com/.../Java.exe  (8719fd48d62ea5371aed2a95ca98454e)

28 / 68    (Adware)
http://www.updownloadup.com/.../Java.exe  (314581b837252bb76f4a871ecccd6c04)

25 / 68    (Adware)
http://www.updownloadup.com/.../Java.exe  (e050ff77d67edddd94ab67838f0e5e31)

27 / 68    (Adware)
http://www.updownloadup.com/.../Java.exe  (f5b15517a0876b9b237ee67112821caf)

URL:
http://www.updownloadup.com/

Web server:
nginx

Facebook:
Shares:  1

Statistics are for the previous month.