b.allstate-final.xyz

Domain Information

Server location:
Oregon, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP
100.00%

F-Secure
Adware.Mplug.JF, Gen:Variant.Adware.Mplug
27.27%

AVG
Adware Generic6.AKBT, Adware Generic6.AKCR
27.27%

Dr.Web
Trojan.DownLoader13.2509, Trojan.DownLoader13.2561
18.18%

Lavasoft Ad-Aware
Adware.Mplug.JF, Gen:Variant.Adware.Mplug.36
18.18%

Emsisoft Anti-Malware
Adware.Mplug.JF, Gen:Variant.Adware.Mplug.36
18.18%

ESET NOD32
Win32/Adware.MultiPlug.JI application, Win32/Adware.MultiPlug.JH application
18.18%

avast!
Win32:MultiPlug-ZC [PUP], Win32:MultiPlug-ZD [PUP]
18.18%

Sophos
PUA 'MultiPlug' (of type Adware)
18.18%

MicroWorld eScan
Adware.Mplug.JF, Gen:Variant.Adware.Mplug.36
18.18%

Malwarebytes
PUP.Optional.MultiPlug
18.18%

K7 AntiVirus
Unwanted-Program
18.18%

Bitdefender
Adware.Mplug.JF, Gen:Variant.Adware.Mplug.36
18.18%

NANO AntiVirus
Riskware.Win32.MultiPlug.dqzjrx, Trojan.Win32.XPACK.dqzmsc
18.18%

F-Prot
W32/S-6e476ff7, W32/S-2ece0b92
18.18%

The domain b.allstate-final.xyz has been seen to resolve to the following 4 IP addresses.

ec2-52-26-142-209.us-west-2.compute.amazonaws.com
June 30, 2015

ec2-52-11-167-137.us-west-2.compute.amazonaws.com
June 30, 2015

ec2-54-149-241-47.us-west-2.compute.amazonaws.com
May 21, 2015

ec2-54-69-228-231.us-west-2.compute.amazonaws.com
May 21, 2015

File downloads found at URLs served by b.allstate-final.xyz.

The following 4 files have been seen to comunicate with b.allstate-final.xyz in live environments.