Server location:
Berlin, Germany (DE)
Scanner detections:
Detections (75% detected)
Scan engine
Details
Detections
Malwarebytes
PUP.Optional.OpenCandy, PUP.Optional.OpenCandy.A
94.12%
ESET NOD32
Win32/OpenCandy, Win32/OpenCandy (variant), Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
94.12%
Fortinet FortiGate
Adware/OpenCandy, Riskware/OpenCandy
70.59%
Dr.Web
Adware.OpenCandy.4, Adware.OpenCandy.7, Adware.OpenCandy.39, Adware.OpenCandy.55, Adware.OpenCandy.147, Adware.OpenCandy.183
70.59%
Trend Micro House Call
ADW_OPENCANDY, TROJ_GEN.F47V0106, TROJ_GEN.F47V0401, TROJ_GEN.F47V0609, Suspicious_GEN.F47V0722, Suspici.1E48FE7A, Suspicious_GEN.F47V0611
58.82%
Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
52.94%
Agnitum Outpost
Riskware.OpenCandy, Riskware.Agent
52.94%
McAfee
Adware-OpenCandy!8A85F5AD22C6, Adware-OpenCandy!2FF7EB50E7B6, Artemis!5DA7E98522BC, Artemis!C9709047D4A4, Artemis!DC7C296825B5
35.29%
G Data
NSIS.Application.OpenCandy, Win32.Adware.OpenCandy, Win32.Application.OpenCandy
23.53%
Baidu Antivirus
Trojan.Win32.Agent, Adware.Win32.OpenCandy
23.53%
Trend Micro
ADW_OPENCANDY
17.65%
IKARUS anti.virus
PUA.OpenCandy
17.65%
avast!
Win32:Adware-gen [Adw]
17.65%
Bkav FE
W32.Clod3ad.Trojan, W32.Clodef1.Trojan
11.76%
Reason Heuristics
PUP.OpenCandy.Installer (L)
11.76%
The domain dexpot.de has been seen to resolve to the following 3 IP addresses.
w0d.rzone.de
April 6, 2016
54.115.226.46.in-addr.arpa
February 2, 2016
srv17.sysproserver.de
December 28, 2013
File downloads found at URLs served by dexpot.de.
13 / 68 (false positives)
The following 8 files have been seen to comunicate with dexpot.de in live environments.
Subdomains
Related Domains