fabulous-wealth2d3fd5.com

Whois Privacy Corp.

Domain Information

The domain fabulous-wealth2d3fd5.com registered by Whois Privacy Corp. was initially registered in October of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
INTERNET.BS CORP.

Server location:
Virginia, United States (US)

Create date:
Tuesday, October 14, 2014

Expires date:
Wednesday, October 14, 2015

Updated date:
Tuesday, October 14, 2014

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

avast!
Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:PUP-gen [PUP]
100.00%

Dr.Web
Trojan.DownLoader11.40661, Trojan.DownLoader11.49526, Trojan.iBryte.80, Trojan.DownLoader11.38636
100.00%

VIPRE Antivirus
Threat.4778314, Optimum Installer
100.00%

Malwarebytes
PUP.Optional.Fusion.A, PUP.Optional.Ibryte
100.00%

F-Prot
W32/A-a0e3427e, W32/A-2b3be3da, W32/A-c255719d
100.00%

Kaspersky
Trojan-Downloader.Win32.Genome, not-a-virus:AdWare.Win32.iBryte
100.00%

NANO AntiVirus
Trojan.Win32.Genome.diihrk, Trojan.Win32.Badur.dhhunu, Trojan.Win32.DownLoad3.dfwgta
100.00%

Comodo Security
Application.Win32.IBryte.BM, Application.Win32.AgentCV.HWYE
100.00%

Avira AntiVirus
ADWARE/Adware.Gen7, ADWARE/iBryte.Gen7, TR/Kazy.439479.2
100.00%

G Data
Win32.Adware.IBryte, Gen:Variant.Kazy.439479
100.00%

AhnLab V3 Security
PUP/Win32.Eorezo, Adware/Win32.IBryte, PUP/Win32.IBryte
100.00%

Panda Antivirus
Trj/Genetic.gen
100.00%

AVG
AdPlugin, Found Win32/DH{gRKBEyAlflCBB3lUTxVRgQkcU04}, Adware AdPlugin
100.00%

Reason Heuristics
PUP.Installer.OverallMedia.U, PUP.Installer.TigerDownload.U, PUP.Bundler.Adknowledge
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

The domain fabulous-wealth2d3fd5.com has been seen to resolve to the following 4 IP addresses.

ec2-54-243-56-153.compute-1.amazonaws.com
May 3, 2015

ec2-23-21-251-147.compute-1.amazonaws.com
May 3, 2015

ec2-54-243-226-39.compute-1.amazonaws.com
December 25, 2014

ec2-50-19-213-188.compute-1.amazonaws.com
December 25, 2014

File downloads found at URLs served by fabulous-wealth2d3fd5.com.

URL:
http://fabulous-wealth2d3fd5.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 2.0.50727)