SweetIM is owned and operated by SweetIM Technologies Ltd, which is owned by the parent company Perion/Conduit. SweetIM product downloaded from the web site contain the SweetPacks Toolbar, a potentially unwanted bundled browser toolbar. The domain cdn.download.sweetim.com registered by Perion Network LTD. was initially registered in February of 2005 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network. The domain is associated with the publisher SweetIM Technologies Ltd..
Registrar:
GODADDY.COM, LLC
Server location:
Massachusetts, United States (US)
Create date:
Sunday, February 27, 2005
Expires date:
Monday, February 27, 2017
Updated date:
Saturday, April 18, 2015
ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.SweetIM.M, PUP.Installer.SweetIM.z, PUP.Installer.SweetIM.V, PUP.Installer.SweetIM.P, PUP.Installer.SweetIM.O, PUP.Perion.Montera.Installer (M), PUP.Perion.Montera.Bundler (M), Win32.Generic
100.00%
Dr.Web
Adware.SweetIM.22, Adware.SweetIM.14, Adware.SweetIM.11, Adware.SweetIM.5, Adware.SweetIM.17, Adware.SweetIM.6, Trojan.Damaged.1
88.89%
VIPRE Antivirus
Sweetpacks/SweetIM, Trojan.Win32.Generic
88.89%
Trend Micro House Call
TROJ_GEN.F47V1228, TROJ_GEN.F47V0826, TROJ_GEN.R0CBOH0IC13, TROJ_GEN.F47V0611, TROJ_GEN.F47V1021, TROJ_GEN.F47V1102, TROJ_GEN.F47V0523, TROJ_GEN.F47V0828
84.44%
MicroWorld eScan
Trojan.Generic.9720627, Win32/SweetIM.C, HEUR:Trojan.Win32.StartPage, Win32/SweetIM.B, Trojan.Generic.7871224
80.00%
ESET NOD32
Win32/SweetIM (variant)
80.00%
McAfee
Artemis!999FE482443D, Artemis!4D19CF6F8250, GenericTRA-AC!8F8068189451
71.11%
avast!
Win32:Adware-gen [Adw], Win32:PUP-gen [PUP], Win32:Malware-gen
66.67%
Malwarebytes
PUP.Optional.SweetIM
64.44%
Bkav FE
W32.Clod768.Trojan, W32.Clod5f7.Trojan, W32.Clodc90.Trojan, W32.Clod2c0.Trojan, W32.Clod32e.Trojan
57.78%
Emsisoft Anti-Malware
Trojan.Generic.9720627, Trojan.Generic.9879479, Trojan.Win32.SweetIM.AMN, Trojan.Generic.7871224
55.56%
NANO AntiVirus
Trojan.Win32.SweetIM.bjqnjq, Trojan.Win32.SweetIM.bjnhuf
48.89%
Trend Micro
TROJ_GEN.FCBCBKN, ADW_SWEETIM
48.89%
Boost by Reason
Optional.SweetIM.M
46.67%
Fortinet FortiGate
Adware/SweetIM
46.67%
The domain cdn.download.sweetim.com has been seen to resolve to the following 26 IP addresses.
a104-96-221-146.deploy.static.akamaitechnologies.com
July 24, 2016
a104-96-221-114.deploy.static.akamaitechnologies.com
July 24, 2016
a104-96-220-129.deploy.static.akamaitechnologies.com
May 24, 2016
a104-96-220-184.deploy.static.akamaitechnologies.com
May 24, 2016
a23-3-13-65.deploy.static.akamaitechnologies.com
November 10, 2014
a23-3-13-10.deploy.static.akamaitechnologies.com
November 10, 2014
a23-3-13-202.deploy.static.akamaitechnologies.com
September 4, 2014
a23-3-13-217.deploy.static.akamaitechnologies.com
September 4, 2014
a23-62-6-216.deploy.static.akamaitechnologies.com
August 17, 2014
a23-62-6-203.deploy.static.akamaitechnologies.com
August 17, 2014
a23-67-250-121.deploy.static.akamaitechnologies.com
May 13, 2014
a23-67-250-97.deploy.static.akamaitechnologies.com
May 13, 2014
a23-66-230-105.deploy.static.akamaitechnologies.com
January 17, 2014
a23-66-230-155.deploy.static.akamaitechnologies.com
January 17, 2014
a23-67-242-73.deploy.static.akamaitechnologies.com
January 6, 2014
a23-67-242-48.deploy.static.akamaitechnologies.com
November 17, 2013
a23-67-242-18.deploy.static.akamaitechnologies.com
November 17, 2013
File downloads found at URLs served by cdn.download.sweetim.com.
The following 224 files have been seen to comunicate with cdn.download.sweetim.com in live environments.
URL:
http://cdn.download.sweetim.com/
Web server:
Microsoft-IIS/7.5 (ASP.NET)