dl.turnlightsoff.com

Domain Information

Server location:
Virginia, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Injekt
100.00%

VIPRE Antivirus
Threat.4784449
100.00%

ESET NOD32
Win32/ExFriendAlert.B potentially unwanted application
100.00%

Dr.Web
Threat.Undefined
100.00%

Sophos
PUA 'OpenCandy'
100.00%

Malwarebytes
PUP.Optional.OpenCandy
100.00%

K7 AntiVirus
Trojan
100.00%

avast!
Win32:BHO-AMO [PUP]
100.00%

NANO AntiVirus
Trojan.Win32.ExFriendAlert.deiobm
100.00%

G Data
Win32.Adware.OpenCandy
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
100.00%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
100.00%

IKARUS anti.virus
PUA.ExFriendAlert
100.00%

AVG
OpenCandy
100.00%

The domain dl.turnlightsoff.com has been seen to resolve to the following 8 IP addresses.

server-54-230-18-22.iad12.r.cloudfront.net
February 9, 2015

server-54-230-17-161.iad12.r.cloudfront.net
February 9, 2015

server-54-230-17-85.iad12.r.cloudfront.net
February 9, 2015

server-54-230-17-57.iad12.r.cloudfront.net
February 9, 2015

server-54-230-16-93.iad12.r.cloudfront.net
February 9, 2015

server-54-230-16-80.iad12.r.cloudfront.net
February 9, 2015

server-54-240-160-131.iad12.r.cloudfront.net
February 9, 2015

server-54-240-160-74.iad12.r.cloudfront.net
February 9, 2015

File downloads found at URLs served by dl.turnlightsoff.com.

14 / 68    (Adware)
http://dl.turnlightsoff.com/LightsOff/863/.../Setup.exe  (555ac620c6fbb053c43cb2d91681f0f9)

The following file have been seen to comunicate with dl.turnlightsoff.com in live environments.