www1clickdownloader.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www1clickdownloader.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Remove Malware from www1clickdownloader.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Dublin City, Ireland (IE)

Create date:
Sunday, March 25, 2012

Expires date:
Friday, March 25, 2016

Updated date:
Tuesday, April 14, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Downloadnow.l, PUP.Downloadnow.BB, PUP.Installer.Downloadnow.N, PUP.Downloadnow.Q, PUP.Downloadnow.T, PUP.Downloadnow.Installer (M), PUP.OneClickDownload.Downloadnow.Bundler (M), PUP.OneClickDownload.goldple.Bundler (M)
92.86%

NANO AntiVirus
Riskware.Nsis.1ClickDownload.vjxfa
35.71%

Dr.Web
Adware.Downware.277, Adware.Downware.861, Threat.Undefined, Trojan.DownLoader6.3089, Trojan.DownLoader6.9089
35.71%

VIPRE Antivirus
Iminent, Threat.4784938
35.71%

Avira AntiVirus
ADWARE/Adware.Gen2
35.71%

AVG
AdInstaller.OneClickDownload, Adware AdInstaller.OneClickDownload
35.71%

Trend Micro House Call
HV_1CLICKDOWNLOADER_CG0935DE.RDXN, HV_1CLICKDOWNLOAD_CG093823.RDXN, HV_ZYX_BG260325.TOMC
28.57%

avast!
NSIS:Oneclick-E [PUP], Downloader-UHO [PUP]
28.57%

Sophos
1 Click Downloader
28.57%

Qihoo 360 Security
Trojan.Generic
28.57%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
21.43%

ESET NOD32
Win32/Adware.1ClickDownload.C application, multiple threats
21.43%

ESET NOD32
Win32/Adware.1ClickDownload
14.29%

herdProtect (fuzzy)
a variant of 681e50b02dc339c188a1f26f0744f50229353dcc, a variant of 35841feed3be76ad8e58897cbac8c5b3419fb48f
14.29%

SUPERAntiSpyware
Adware.OneClickDownload, Trojan.Agent/Gen-ClickDownload
14.29%

The domain www1clickdownloader.com has been seen to resolve to the following 5 IP addresses.

ec2-54-246-120-161.eu-west-1.compute.amazonaws.com
July 1, 2015

ec2-50-18-104-209.us-west-1.compute.amazonaws.com
August 17, 2014

ec2-184-169-175-49.us-west-1.compute.amazonaws.com
August 1, 2014

ec2-50-18-174-205.us-west-1.compute.amazonaws.com
March 20, 2014

ec2-204-236-130-106.us-west-1.compute.amazonaws.com
March 6, 2014

File downloads found at URLs served by www1clickdownloader.com.

The following file have been seen to comunicate with www1clickdownloader.com in live environments.

Remove Malware from www1clickdownloader.com - Powered by Reason Core Security