The domain downprov10.downloadfasteasy.com registered by Whois Privacy Corp. was initially registered in November of 2014 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
Whois Privacy Corp.
Registrar:
TLD REGISTRAR SOLUTIONS LTD
Server location:
Northern Ireland, United Kingdom (GB)
Create date:
Monday, November 10, 2014
Expires date:
Thursday, November 10, 2016
Updated date:
Wednesday, November 4, 2015
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Dr.Web
Trojan.Amonetize.353, infected with Trojan.Amonetize.353, Detection.Undefined
73.33%
VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
73.33%
Reason Heuristics
PUP.Amonetize (M), Adware.Amonetize.ET (M), Adware.Amonetize.DB (M)
73.33%
Trend Micro House Call
TROJ_SPNR.08LS14, TROJ_GEN.R047H07LQ14, Suspici.1CC0D1BF, TROJ_GEN.R047H07LP14, TROJ_GEN.R047H07LS14, TROJ_GEN.R08NH07A615
60.00%
Clam AntiVirus
Win.Adware.Amonetize-511
60.00%
Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize
60.00%
G Data
NSIS.Application.Crypted, Trojan.Generic.12505922
60.00%
Baidu Antivirus
Adware.Win32.Amonetize, PUA.Win32.Amonetize
60.00%
Panda Antivirus
Generic Suspicious
60.00%
avast!
Win32:PUP-gen [PUP]
53.33%
ESET NOD32
Win32/Amonetize.CN potentially unwanted application, Win32/Amonetize.CT potentially unwanted application
53.33%
Rising Antivirus
PE:AdWare.Win32.Adpeak.c!1075356117, PE:Trojan.Win32.Generic.17E1DC57!400677975
46.67%
McAfee
Artemis!447D097B20A7, Artemis!8F00B3F9F161, RDN/Generic PUP.x!cs3, Artemis!E5EBBCE3FAAA, Trojan.Artemis!BDC5B31F7027, Artemis!48DDC0BBCC55
46.67%
Malwarebytes
PUP.Optional.Amonetize
40.00%
The domain downprov10.downloadfasteasy.com has been seen to resolve to the following IP address.
unallocated.barefruit.co.uk
May 5, 2015
File downloads found at URLs served by downprov10.downloadfasteasy.com.
The following 230 files have been seen to comunicate with downprov10.downloadfasteasy.com in live environments.