bs-self.s3.amazonaws.com

Amazon.com, Inc

Domain Information

The domain bs-self.s3.amazonaws.com registered by Amazon.com, Inc was initially registered in August of 2005 through MARKMONITOR INC.. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the RIPE Network Coordination Centre network. The domain uses the Amazon Web Services (AWS) cloud computing platform. It utilizes the Amazon Simple Storage Service (Amazon S3) a scalable storage web service for hosting content.
Registrar:
MARKMONITOR INC.

Server location:
Dublin City, Ireland (IE)

Create date:
Thursday, August 18, 2005

Expires date:
Tuesday, January 16, 2018

Updated date:
Thursday, May 1, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Amonetizeltd.J, PUP.Installer.Amonetizeltd.Y, PUP.Installer.Amonetizeltd.DD, PUP.Installer.Amonetizeltd.j, PUP.Installer.Amonetizeltd.h, PUP.WhiteSmoke.Amonetize.Installer (M), PUP.Amonetize.Bundler (M), PUP.Amonetize (M)
100.00%

Dr.Web
Adware.Downware.1339, Adware.Downware.987, Adware.Downware.1528, Adware.Downware.646, Adware.Downware.1216
77.78%

ESET NOD32
Win32/Amonetize (variant)
77.78%

Malwarebytes
PUP.Optional.Amonetize.AS
72.22%

VIPRE Antivirus
Amonetize
72.22%

Sophos
Amonetize
66.67%

Avira AntiVirus
ADWARE/Adware.Gen2, APPL/WhiteSmoke.E, Adware/Amonetize.AA
66.67%

K7 AntiVirus
Unwanted-Program
50.00%

Trend Micro House Call
TROJ_GEN.F47V0625, TROJ_GEN.F47V0702, TROJ_GEN.F47V0324, TROJ_GEN.F47V0610, TROJ_GEN.R0CCOH0LM13, TROJ_GEN.F47V0521, TROJ_GEN.R0CBH05G214
38.89%

avast!
Win32:Amonetize-I [PUP], Win32:WhiteSmoke-A [PUP], Win32:Amonetize-Q [PUP]
27.78%

Emsisoft Anti-Malware
Adware.Generic.595228, Trojan.Win32.Amonetize.AMN, Adware.Generic.509274, Gen:Heur.Conjar
22.22%

G Data
Adware.Generic.595228, Adware.Generic.509274, Win32.Application.Amonetize
22.22%

AhnLab V3 Security
PUP/Win32.Amonetize
22.22%

Fortinet FortiGate
Adware/DomaIQ.C, Adware/Fam.NB
16.67%

NANO AntiVirus
Trojan.Win32.Downware.cqppka, Trojan.Win32.Downware.brokal, Riskware.Win32.Amonetize.cvxlyl
16.67%

The domain bs-self.s3.amazonaws.com has been seen to resolve to the following 17 IP addresses.

s3-1-w.amazonaws.com
August 26, 2016

s3-1-w.amazonaws.com
August 17, 2016

s3-1-w.amazonaws.com
July 25, 2016

s3-1-w.amazonaws.com
May 16, 2016

s3-1-w.amazonaws.com
May 4, 2015

s3-1-w.amazonaws.com
May 4, 2015

s3-1-w.amazonaws.com
January 7, 2015

s3-1-w.amazonaws.com
September 4, 2014

s3-1-w.amazonaws.com
September 4, 2014

s3-1-w.amazonaws.com
September 2, 2014

June 5, 2014

May 30, 2014

s3-1-w.amazonaws.com
April 26, 2014

s3-1-w.amazonaws.com
April 26, 2014

s3-1-w.amazonaws.com
March 14, 2014

March 14, 2014

s3-1-w.amazonaws.com
February 6, 2014

File downloads found at URLs served by bs-self.s3.amazonaws.com.

1 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__962_i499426_il1196.exe)

1 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (InternetTurboSetup__958_i3489903_il1229.exe)

7 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__1967_i8838971_il18208.exe)

1 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (whitesmokeinstaller__1349_i1166852_il1240.exe)

10 / 68    (Adware)

6 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (surf anonymous free 2.1.4.2__2759_i26356367_il611276.exe)

2 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__1279_i21100381_il263433.exe)

16 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (jazz jackrabbit 2__2347_il316651.exe)

9 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (7zip__2766_i31678482_il604572.exe)

8 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayersetup__2340_i26279640.exe)

9 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (mediaupdater__2577_i26048055_il561301.exe)

25 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i19937420_il42840.exe)

7 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__962_i4684453_il1196.exe)

13 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbo__2298_il544821.exe)

16 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i18558057_il42840.exe)

10 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i21406253_il42840.exe)

8 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i33495880_il42840.exe)

12 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (skymonkam__2155_il405671.exe)

URL:
http://bs-self.s3.amazonaws.com/

Network:
Amazon Web Services (AWS)

SSL certificate subject:
CN=*.s3.amazonaws.com, OU=S3-A, O=Amazon.com Inc., L=Seattle, S=Washington, C=US

SSL certificate issuer:
CN=VeriSign Class 3 Secure Server CA - G3, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Web server:
AmazonS3