The domain www1.installsfiles.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Studio City, California within the United States which resides on the netDNA network.
California, United States (US)
Tuesday, February 12, 2013
Sunday, February 12, 2017
Saturday, February 13, 2016
AS4436 AS-NLAYER - nLayer Communications, Inc.
Detections (100% detected)
PUP.CoolMirage.V, PUP.CoolMirage.M, PUP.CoolMirage.Q, PUP.CoolMirage.N, PUP.CoolMirage.J, PUP.CoolMirageltd.J, PUP.CoolMirage.R, PUP.CoolMirageltd.Q, PUP.CoolMirage.T, PUP.CoolMirageltd.T, PUP.CoolMirage (M), PUP.CoolMirage.VASSANAK (M)
Adware.Downware.1263, Adware.Yontoo.25, Adware.Downware.1403, Adware.Downware.625, Adware.Downware.902, Adware.Downware.2031
Win32:Downloader-TPG [PUP], Win32:PUP-gen [PUP], Win32:Downloader-UHI [PUP], Win32:Oneclick-I [PUP]
Trend Micro House Call
TROJ_GEN.F47V0801, Suspicious_GEN.F47V1210, TROJ_GEN.F47V0409, TROJ_GEN.F47V0605, TROJ_GEN.F47V0830, TROJ_GEN.F47V1226, TROJ_GEN.F47V0327
Adware/1ClickDownload.AC.22, Adware/1ClickDownload.K, Adware/1ClickDownload.AA.19, APPL/CoolMirage.bti, Adware/1ClickDownload.AA.56
PUP.Optional.CoolMirage.A, PUP.Optional.DealPly.A, PUP.Optional.Downware
ApplicUnwnt, Application.Win32.MCool.B, UnclassifiedMalware, Application.Win32.MCool.A
McAfee Web Gateway
Generic Suspicious, Adware/MultiToolbar, PUP/MultiToolbar.A
Qihoo 360 Security
The domain www1.installsfiles.com has been seen to resolve to the following IP address.
File downloads found at URLs served by www1.installsfiles.com.