d2ugaifelwk06r.cloudfront.net

Amazon.com, Inc

Domain Information

The domain d2ugaifelwk06r.cloudfront.net registered by Amazon.com, Inc was initially registered in April of 2008 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software.
Registrar:
MARKMONITOR INC.

Create date:
Friday, April 25, 2008

Expires date:
Tuesday, April 25, 2017

Updated date:
Tuesday, February 25, 2014

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Conduit.R, PUP.DealPly.C, PUP.Conduit.X, PUP.InstallX.U, PUP.Installer.Buzzdock.J, PUP.Optional.VisualSoftwareSystems.P, PUP.VisualTools.O, PUP.ReSoft.J, PUP.KimahriSoftwareinc.L, PUP.Conduit.Q, Win32.Generic
100.00%

Dr.Web
Adware.Conduit.3, Adware.Shopper.348, Adware.Conduit.9, Adware.W3i.39, Adware.Plugin.8, Adware.Plugin.73, Adware.Toolbar.146
80.00%

Malwarebytes
PUP.Optional.Conduit.A, PUP.Optional.DealPly.A, PUP.Optional.InstallIQ, PUP.Optional.CrossRider, PUP.Optional.Delta.A, PUP.Optional.Linkury.A, PUP.DealPly, Adware.Packed.Ranver
75.00%

VIPRE Antivirus
Conduit, Adware.DealPly, InstallIQ Installer, Yontoo, Babylon, Adware.Linkury
60.00%

ESET NOD32
Win32/Toolbar.Conduit, Win32/InstallIQ, Win32/Adware.Yontoo (variant), Win32/Packed.ScrambleWrapper, Win32/DealPly, Win32/Packed.VMDetector (variant)
50.00%

Trend Micro House Call
TROJ_GEN.F47V1011, ADW_DEALPLY, TROJ_GEN.F47V0715, TROJ_GEN.R0CBH07IE13, TROJ_GEN.F47V1009, TROJ_GEN.F47V0916
40.00%

Bkav FE
W32.Clod3e1.Trojan, W32.Clod69d.Trojan, W32.Clod8a1.Trojan, W32.Clod4dd.Trojan, W32.Clod26f.Trojan
35.00%

Boost by Reason
Optional.DealPly.C, Adware.Conduit.R, PUP.Conduit.X, Optional.Conduit.Q
30.00%

Sophos
Generic PUA BI, InstallQ, Browser Helper Object, AppRider
30.00%

Comodo Security
Application.Win32.DealPly.~BHU, UnclassifiedMalware, Application.Win32.Agent.~LKMK, Heur.Suspicious
30.00%

herdProtect (fuzzy)
a variant of 69256247835c97e33e5e3c4d78bcdc0e51c95b59, a variant of 3afb53ddfc81a47e4335b232481f8d3a7469b1e5, a variant of 332e49e857dc4452554e938b0335f9265a2d9e5d
25.00%

McAfee
Artemis!F9CD7F14B752, Artemis!8E006AD14C31, Artemis!FAA077F40294, Artemis!A3B427789C24
25.00%

K7 AntiVirus
Unwanted-Program , Trojan
25.00%

ESET NOD32
Win32/DealPly, Win32/Toolbar.Babylon (variant)
20.00%

Agnitum Outpost
Riskware.Agent, Adware.Generic, Trojan.Agent, PUA.Toolbar.Linkury
20.00%

File downloads found at URLs served by d2ugaifelwk06r.cloudfront.net.

1 / 68      (PUP)
http://d2ugaifelwk06r.cloudfront.net/VisualBeeWebext1.exe  (4399e6374a47f17a90a1009875f0dd12)

5 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/plus-hd-2-5-br.exe  (a2a750edaa6fb7973c0cb864ec2f6811)

17 / 68    (Adware)

0 / 68
http://d2ugaifelwk06r.cloudfront.net/VisualBeeWebext.exe  (5f9bdaa6d37ccb33322e31c7eadc1c22)

5 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/plus-hd-2-5-br.exe  (5332ff351b797f64fdbb40a42c46181f)

9 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/VisualBeeTB_yh.exe  (8044483ff55d746d12cb3d513c862b96)

23 / 68    (Adware)
http://d2ugaifelwk06r.cloudfront.net/dp.exe  (3bb12f100f4ca64d8fcfcb6eaec22767)

3 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/plus-hd-2-5.exe  (c75900f96bfd7a1fa1d6380dfa456d2c)

8 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/Snapdo_v1.exe  (88365be00ea2ef15767b1a7d95f61358)

5 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/plus-hd-2-5.exe  (faa077f402943528dce07e757b8810d2)

7 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/plus-hd-2-5.exe  (a3b427789c24ed59ffa28ddca15b0a11)

9 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/VisualBeeTB_yh.exe  (02764a733c6f506c59f300929f3299c5)

4 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/Snapdo_v2.exe  (483a0f9f450ac8b2582eb1aa9295394f)

23 / 68    (Adware)
http://d2ugaifelwk06r.cloudfront.net/dp.exe  (64beef543196ac66513dbb30f2dfa8e1)

10 / 68    (PUP)
http://d2ugaifelwk06r.cloudfront.net/VisualBeeWebext.exe  (e93d456a74a43dcb034b5ebf37c3e40d)

7 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/dp.exe  (61bfebb2404916e0ae439b6aca9ab522)

9 / 68      (Adware)
http://d2ugaifelwk06r.cloudfront.net/Yontoo-C2.exe  (af4e5038c0dadee5e1b5bd064344f6b0)

2 / 68      (PUP)
http://d2ugaifelwk06r.cloudfront.net/conduitinstaller.exe  (36b6faa2d8e00ae98f510046d3213426)

4 / 68      (PUP)

7 / 68      (PUP)

11 / 68    (PUP)