yourinstaller.com

Adknowledge

Domain Information

The domain yourinstaller.com registered by Whois Privacy Corp. was initially registered in March of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform. The domain is associated with the publisher Adknowledge.
Remove Malware from yourinstaller.com - Powered by Reason Core Security
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Virginia, United States (US)

Create date:
Friday, March 21, 2014

Expires date:
Monday, March 21, 2016

Updated date:
Saturday, December 12, 2015

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Adknowledge.INSTALLTHIS.Installer (M), PUP.Adknowledge.Bundler (M), PUP.Adknowledge.WARPINSTALLER.Installer (M), PUP.Adknowledge.FusionInstall.Installer (M), PUP.Adknowledge.FUSIONINSTALLER.Installer (M), PUP.Adknowledge.WARPINSTALL.Installer (M), PUP.Adknowledge.FileFalcon.Bundler (M), PUP.iBryte.Bundler
100.00%

Malwarebytes
PUP.Optional.OptimumInstaller.A
98.00%

Agnitum Outpost
PUA.Agent, PUA.iBryte, PUA.Downloader
98.00%

Sophos
iBryte Optimum Installer, PUA 'iBryte Optimum Installer', PUA.iBryte Optimum Installer
98.00%

Dr.Web
Trojan.Packed.27999, Trojan.DownLoader11.25708, Trojan.Packed.26508, Trojan.Packed.27146, Trojan.Packed.26807, Trojan.Packed.27034
98.00%

VIPRE Antivirus
Threat.4778314, Threat.4150696, Threat.4733199, Optimum Installer, Trojan.Win32.Generic
98.00%

Avira AntiVirus
ADWARE/Adware.Gen7, APPL/OptInstall.zaxz, APPL/OptInstal.opwb, Adware/iBryte.bxjq, Adware/iBryte.Z, Adware/iBryte.bxlo
98.00%

Rising Antivirus
PE:Malware.iBryte!6.192B, PE:Malware.Agent!6.175E, PE:Malware.iBryte!6.197B, PE:Malware.iBryte!6.14B5
98.00%

AVG
Adware AdPlugin, Generic_s
98.00%

Panda Antivirus
Trj/Genetic.gen, PUP/iBryte
98.00%

Qihoo 360 Security
Malware.QVM10.Gen, Win32/Virus.Downloader.dbe
98.00%

Kaspersky
not-a-virus:AdWare.Win32.iBryte, Trojan.Win32.Badur, not-a-virus:Downloader.Win32.Agent, HEUR:Trojan.Win32.Generic
98.00%

Kingsoft AntiVirus
Win32.Troj.Badur.hr.(kcloud), Win32.Troj.iBryte.j.(kcloud), Win32.Troj.Generic.a.(kcloud), Win32.Troj.DownAgent.bk.(kcloud)
98.00%

K7 AntiVirus
Unwanted-Program
98.00%

K7 Gateway Antivirus
Unwanted-Program
98.00%

The domain yourinstaller.com has been seen to resolve to the following 4 IP addresses.

ec2-54-208-71-111.compute-1.amazonaws.com
July 10, 2014

ec2-54-208-92-161.compute-1.amazonaws.com
July 10, 2014

ec2-23-21-100-173.compute-1.amazonaws.com
May 1, 2014

ec2-50-17-234-52.compute-1.amazonaws.com
April 14, 2014

File downloads found at URLs served by yourinstaller.com.

43 / 68    (Adware)
http://yourinstaller.com/o/.../Player-Chrome.exe  (7fb02d12817be98c068b2160aa4c886d)

46 / 68    (Adware)
http://yourinstaller.com/o/.../Setup.exe  (5afd5d74fae300612a494000d6d4e2d7)

40 / 68    (Adware)
http://yourinstaller.com/o/.../Setup.exe  (7a090e0fb23d91bcc92b740f9f369b39)

43 / 68    (Adware)
http://yourinstaller.com/o/.../Setup.exe  (5dc6cda84912caba4832c62eda7c0835)

42 / 68    (Adware)
http://yourinstaller.com/o/.../Drivers.exe  (7ed2342532d2014c1d8f6708522d3d19)

The following file have been seen to comunicate with yourinstaller.com in live environments.

30 of 33 related domains

Remove Malware from yourinstaller.com - Powered by Reason Core Security