b.position-title.xyz

Domain Information

Server location:
Dublin City, Ireland (IE)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Malware distribution  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Win.Reputation, PUP.IgorMeny (M), Adware.Generic.AT (M)
89.13%

avast!
Win32:MultiPlug-ZC [PUP], Win32:MultiPlug-ZD [PUP], Win32:FakeDownload-E [PUP], Win32:FakeDownload-F [PUP], Win32:FakeDownload-G [PUP]
28.26%

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.605162, Gen:Variant.Adware.Mplug.41, Gen:Variant.Adware.Mplug.44, Gen:Variant.Razy.6292, Gen:Variant.Razy.6219
26.09%

AVG
Generic6, Adware Generic6.ARPN, Adware Generic6.ARQJ, Adware Generic6.ARQE, Adware Generic6.ARKN, Adware Generic6.ARHO, Adware Generic6.AQSM
23.91%

F-Secure
Gen:Variant.Adware.Kazy, Gen:Variant.Adware.Mplug, Variant.Razy.6292
19.57%

McAfee
MultiPlug-FXP, Program.MultiPlug-FXP, MultiPlug-FYT, Program.MultiPlug-FXN
19.57%

Vba32 AntiVirus
suspected of Heur.Malware-Cryptor.Multiplug
17.39%

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.605162, Gen:Variant.Adware.Mplug.44
15.22%

MicroWorld eScan
Gen:Variant.Adware.Kazy.605162, Gen:Variant.Adware.Mplug.41, Gen:Variant.Adware.Mplug.44
15.22%

K7 AntiVirus
Unwanted-Program , Adware
15.22%

Bitdefender
Gen:Variant.Adware.Kazy.605162, Gen:Variant.Adware.Mplug.41, Gen:Variant.Adware.Mplug.44
15.22%

Sophos
PUA 'MultiPlug' (of type Adware)
15.22%

AhnLab V3 Security
PUP/Win32.MultiPlug
15.22%

ESET NOD32
Win32/Adware.MultiPlug.JS application, Win32/Adware.MultiPlug.JZ application, Win32/Adware.MultiPlug.KP application
15.22%

G Data
Gen:Variant.Adware.Kazy.605162, Gen:Variant.Adware.Mplug.44
13.04%

The domain b.position-title.xyz has been seen to resolve to the following 11 IP addresses.

June 6, 2016

192.193.28.185.gransy.com
June 6, 2016

June 2, 2016

ns1.ibspark.com
April 8, 2016

ec2-52-27-128-56.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-62.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-59.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-11-167-137.us-west-2.compute.amazonaws.com
July 1, 2015

ec2-52-26-142-209.us-west-2.compute.amazonaws.com
July 1, 2015

ec2-54-149-241-47.us-west-2.compute.amazonaws.com
May 7, 2015

ec2-54-69-228-231.us-west-2.compute.amazonaws.com
May 7, 2015

File downloads found at URLs served by b.position-title.xyz.

1 / 68      (Adware)

 
Latest 30 of 46 download URLs

The following 166 files have been seen to comunicate with b.position-title.xyz in live environments.

 
Latest 20 of 182 files