downprov.dyna2download.com

Whois Privacy Corp.

Domain Information

The domain downprov.dyna2download.com registered by Whois Privacy Corp. was initially registered in January of 2015 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Dublin City, Ireland (IE)

Create date:
Saturday, January 10, 2015

Expires date:
Tuesday, January 10, 2017

Updated date:
Monday, January 11, 2016

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonetize, PUP.Bundler.Amonetize, PUP.Amonetize.Ukra2006.Bundler (M), PUP.Amonetize (M)
84.21%

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra, Threat.4657539
47.37%

Clam AntiVirus
Win.Adware.Amonetize-511
47.37%

Avira AntiVirus
Adware/Amonetize.kpa, Adware/Amonetize.289069
36.84%

K7 AntiVirus
Unwanted-Program
31.58%

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
31.58%

NANO AntiVirus
Trojan.Win32.Amonetize.dmnxbx, Trojan.Nsis.Amonetize.dnxabb
31.58%

Sophos
Amonetize, PUA 'Amonetize'
31.58%

Dr.Web
Trojan.Amonetize.12
31.58%

AVG
nbsp;
31.58%

avast!
Win32:PUP-gen [PUP], Win32:Malware-gen, Win32:Trojan-gen
26.32%

ESET NOD32
Win32/Amonetize.DG, Win32/Amonetize.DJ potentially unwanted
15.79%

Trend Micro House Call
Suspicious_GEN.F47V0128, Suspicious_GEN.F47V0127, Suspicious_GEN.F47V0129
15.79%

Comodo Security
Application.Win32.LoadMoney.IARS
15.79%

McAfee
Artemis!085E52E743A9, Artemis!B32827EEAE1D
10.53%

The domain downprov.dyna2download.com has been seen to resolve to the following 3 IP addresses.

ns1.ibspark.com
January 30, 2016

May 4, 2015

May 4, 2015

File downloads found at URLs served by downprov.dyna2download.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

11 / 68    (Adware)
http://downprov.dyna2download.com/p/.../sonic youth dirty zip_10924_i20242120_il345.exe  (the count of monte cristo bluray 1080p dts hd x264 grym.rar_10924_i20239473_il345.exe)

9 / 68      (PUP)

9 / 68      (PUP)

10 / 68    (Adware)
http://downprov.dyna2download.com/p/.../Dokmee Professional v2.0.0.1 keygen by AGGRESSiON_10924_i20536841_il345.exe  (dokmee professional v2.0.0.1 keygen by aggression_10924_i20536868_il345.exe)

10 / 68    (Adware)
http://downprov.dyna2download.com/p/.../Dokmee Professional v2.0.0.1 keygen by AGGRESSiON_10924_i20536718_il345.exe  (dokmee professional v2.0.0.1 keygen by aggression_10924_i20536868_il345.exe)

5 / 68      (PUP)

5 / 68      (PUP)

5 / 68      (PUP)

5 / 68      (inconclusive)

11 / 68    (Adware)

The following 142 files have been seen to comunicate with downprov.dyna2download.com in live environments.

 
Latest 20 of 154 files

URL:
http://downprov.dyna2download.com/

Google Analytics:
UA-48689684

Title:
“dyna2download.com”

Web server:
nginx

30 of 618 related domains