The domain downprov11.downloadfasteasy.com registered by Whois Privacy Corp. was initially registered in November of 2014 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
Whois Privacy Corp.
Registrar:
TLD REGISTRAR SOLUTIONS LTD
Server location:
Northern Ireland, United Kingdom (GB)
Create date:
Monday, November 10, 2014
Expires date:
Thursday, November 10, 2016
Updated date:
Wednesday, November 4, 2015
Scanner detections:
Detections (89% detected)
Scan engine
Details
Detections
Dr.Web
Trojan.Amonetize.353, Trojan.Amonetize.329, infected with Trojan.Amonetize.2503, Detection.Undefined
87.50%
Clam AntiVirus
Win.Adware.Amonetize-511, Win.Adware.Amonetize-703
75.00%
Trend Micro House Call
TROJ_GEN.R047H07LM14, Suspici.1CC0D1BF, TROJ_GEN.R047H07LS14, TROJ_GEN.R047H07LN14, TROJ_GEN.R08NH07LQ14, TROJ_GEN.R08NH05LP14
68.75%
avast!
Win32:PUP-gen [PUP], Amonetize-KK [PUP]
68.75%
Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize
68.75%
VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
68.75%
G Data
NSIS.Application.Crypted
68.75%
McAfee
Artemis!8F00B3F9F161, Artemis!9FB1E3A38D19, RDN/Generic PUP.x!crf, RDN/Generic PUP.x!csj, Artemis!2F7F548058B1
68.75%
Panda Antivirus
Generic Suspicious
68.75%
Reason Heuristics
PUP.TECHNOINOX, PUP.Amonetize (M), Adware.Amonetize.ET (M), Adware.Amonetize.DB (M)
56.25%
Baidu Antivirus
Adware.Win32.Amonetize
50.00%
Rising Antivirus
PE:AdWare.Win32.Adpeak.c!1075356117
50.00%
ESET NOD32
Win32/Amonetize.CN potentially unwanted application
31.25%
Malwarebytes
PUP.Optional.Amonetize
25.00%
The domain downprov11.downloadfasteasy.com has been seen to resolve to the following IP address.
unallocated.barefruit.co.uk
May 28, 2015
File downloads found at URLs served by downprov11.downloadfasteasy.com.
The following 230 files have been seen to comunicate with downprov11.downloadfasteasy.com in live environments.