Server location:
Virginia, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.Injekt
100.00%
VIPRE Antivirus
Threat.4784449
100.00%
ESET NOD32
Win32/ExFriendAlert.B potentially unwanted application
100.00%
Dr.Web
Threat.Undefined
100.00%
Sophos
PUA 'OpenCandy'
100.00%
Malwarebytes
PUP.Optional.OpenCandy
100.00%
K7 AntiVirus
Trojan
100.00%
avast!
Win32:BHO-AMO [PUP]
100.00%
NANO AntiVirus
Trojan.Win32.ExFriendAlert.deiobm
100.00%
G Data
Win32.Adware.OpenCandy
100.00%
Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
100.00%
Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
100.00%
IKARUS anti.virus
PUA.ExFriendAlert
100.00%
The domain dl.turnlightsoff.com has been seen to resolve to the following 8 IP addresses.
server-54-230-18-22.iad12.r.cloudfront.net
February 9, 2015
server-54-230-17-161.iad12.r.cloudfront.net
February 9, 2015
server-54-230-17-85.iad12.r.cloudfront.net
February 9, 2015
server-54-230-17-57.iad12.r.cloudfront.net
February 9, 2015
server-54-230-16-93.iad12.r.cloudfront.net
February 9, 2015
server-54-230-16-80.iad12.r.cloudfront.net
February 9, 2015
server-54-240-160-131.iad12.r.cloudfront.net
February 9, 2015
server-54-240-160-74.iad12.r.cloudfront.net
February 9, 2015
File downloads found at URLs served by dl.turnlightsoff.com.
The following file have been seen to comunicate with dl.turnlightsoff.com in live environments.