down.daemon-tools.kr

Domain Information

Server location:
Seoul-T'Ukpyolsi, Korea (KR)

ASN:
AS9848 GNGAS Enterprise Networks,KR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.EbizNetWorks, PUP.Installer.EbizNetWorks, PUP.EbizNetWorks.Installer (M), PUP.EbizNetW.Installer (M), PUP (M)
100.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
25.00%

Bkav FE
W32.HfsAdware
12.50%

Dr.Web
Trojan.Adkor.194
12.50%

The domain down.daemon-tools.kr has been seen to resolve to the following IP address.

November 7, 2015

File downloads found at URLs served by down.daemon-tools.kr.

2 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite5004-0503_home.exe  (ebab097146cba0ddeacb927eb883e0d5)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite5004-0503_home.exe  (b0aa362677cf19a72201261df427920c)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite5004-0503_home.exe  (ea09a7801ad24c7ff29020a316ec55c2)

1 / 68      (Adware)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0352_home.exe  (43eabfe65fc4bf0f3cc57790ea29a24f)

1 / 68      (Adware)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0352_home.exe  (e390a071fef68f85bca3a3ee62f2a8e4)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0352_home.exe  (16557094858abbd1b41413ad40b831f4)

4 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0352_home.exe  (2330bb39c752372a2cc9b4fa490b9fab)

1 / 68      (Adware)
http://down.daemon-tools.kr/.../dtlite_update_150803.exe  (55d79927c7c0f81ff8a1458685b873c2)

4 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0352_home.exe  (309640d10e38655e289910b736e45939)

2 / 68      (Adware)
http://down.daemon-tools.kr/.../DTLite4491-0351_home.exe  (9d8121e149e79042cf64ff30cbc142dc)