a.bestpricedgadgets.net

Pending Renewal or Deletion

Domain Information

The domain a.bestpricedgadgets.net registered by Pending Renewal or Deletion was initially registered in April of 2014 through DYNADOT, LLC. Currently this domain has been known to host various forms of malware. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrar:
DYNADOT, LLC

Server location:
Oregon, United States (US)

Create date:
Monday, April 7, 2014

Expires date:
Friday, April 7, 2017

Updated date:
Friday, April 8, 2016

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Optional.PCUtilities.Task.Meta (M), PUP.Optional.PCUtilities (M)
100.00%

ESET NOD32
Win32/Adware.MultiPlug.LX application, Win32/Adware.MultiPlug.LW application
9.76%

Emsisoft Anti-Malware
Gen:Variant.Adware.Mplug.46, Gen:Variant.Adware.Kazy.622347
9.76%

Avira AntiVirus
TR/Crypt.XPACK.Gen
9.76%

McAfee
Program.MultiPlug-FXP, Program.MultiPlug-FXN, MultiPlug-FYT
9.76%

MicroWorld eScan
Gen:Variant.Adware.Mplug.46, Gen:Variant.Adware.Kazy.622347
9.76%

K7 AntiVirus
Trojan
9.76%

Arcabit
Trojan.Adware.Mplug.46, Trojan.Adware.Kazy.D97F0B
9.76%

Bitdefender
Gen:Variant.Adware.Mplug.46, Gen:Variant.Adware.Kazy.622347
9.76%

AhnLab V3 Security
Win-PUP/MultiPlug, PUP/Win32.MultiPlug
9.76%

G Data
Gen:Variant.Adware.Mplug.46, Gen:Variant.Adware.Kazy.622347
9.76%

Lavasoft Ad-Aware
Gen:Variant.Adware.Mplug.46
7.32%

F-Secure
Gen:Variant.Adware.Mplug
7.32%

Norman
Gen:Variant.Adware.Mplug.46
7.32%

Vba32 AntiVirus
Heur.Malware-Cryptor.Multiplug, suspected of Heur.Malware-Cryptor.Multiplug
7.32%

The domain a.bestpricedgadgets.net has been seen to resolve to the following 10 IP addresses.

192.230.92.93.ip.incapdns.net
August 7, 2016

199.83.132.93.ip.incapdns.net
July 8, 2016

April 10, 2016

ec2-52-27-128-56.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-62.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-59.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-26-142-209.us-west-2.compute.amazonaws.com
July 1, 2015

ec2-52-11-167-137.us-west-2.compute.amazonaws.com
July 1, 2015

ec2-54-149-241-47.us-west-2.compute.amazonaws.com
June 19, 2015

ec2-54-69-228-231.us-west-2.compute.amazonaws.com
June 19, 2015

File downloads found at URLs served by a.bestpricedgadgets.net.

 
Latest 30 of 41 download URLs

The following 6 files have been seen to comunicate with a.bestpricedgadgets.net in live environments.

URL:
http://a.bestpricedgadgets.net/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Microsoft-IIS/7.5 (ASP.NET)