Server location:
Dublin City, Ireland (IE)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Malware distribution (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Threat.Win.Reputation.IMP
100.00%
Lavasoft Ad-Aware
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey.8516, Gen:Variant.Adware.MPLug.35
31.25%
AhnLab V3 Security
PUP/Win32.MultiPlug
31.25%
Vba32 AntiVirus
SScope.Adware.MultiPlug, suspected of Heur.Malware-Cryptor.Multiplug
31.25%
Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48, PE:AdWare.Win32.MultiPlug.s!1075356738
31.25%
Emsisoft Anti-Malware
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey.8516, Gen:Variant.Adware.MPLug.35
25.00%
avast!
Win32:Agent-AUVV [Trj], Win32:Dropper-gen [Drp], Win32:MultiPlug-WR [PUP], Win32:MultiPlug-ZC [PUP]
25.00%
F-Secure
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey, Gen:Variant.Adware.MPLug
25.00%
MicroWorld eScan
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey.8516, Gen:Variant.Adware.MPLug.35
25.00%
Bitdefender
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey.8516, Gen:Variant.Adware.MPLug.35
25.00%
G Data
Adware.MPLug.GH, Adware.MPLug.HA, Gen:Variant.Adware.Mikey.8516, Gen:Variant.Adware.MPLug.35
25.00%
AVG
Generic6, Adware Generic6.AAUU, PSW.Generic12, Adware Generic_r.AAD
25.00%
Panda Antivirus
Generic Suspicious
25.00%
ESET NOD32
Win32/Adware.MultiPlug.FO application, Win32/Adware.MultiPlug.FK application, Win32/Adware.MultiPlug.FC application
18.75%
Sophos
PUA 'MultiPlug' (of type Adware)
18.75%
The domain bar-best.xyz has been seen to resolve to the following 8 IP addresses.
192.193.28.185.gransy.com
June 23, 2016
ns1.ibspark.com
February 27, 2016
ec2-52-27-128-62.us-west-2.compute.amazonaws.com
February 10, 2016
ec2-52-27-128-59.us-west-2.compute.amazonaws.com
February 10, 2016
ec2-52-27-128-56.us-west-2.compute.amazonaws.com
February 10, 2016
ec2-54-149-241-47.us-west-2.compute.amazonaws.com
June 19, 2015
ec2-54-69-228-231.us-west-2.compute.amazonaws.com
June 19, 2015
File downloads found at URLs served by bar-best.xyz.
The following 166 files have been seen to comunicate with bar-best.xyz in live environments.