The domain fabulous-wealth2d3fd5.com registered by Whois Privacy Corp. was initially registered in October of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
Whois Privacy Corp.
Registrar:
INTERNET.BS CORP.
Server location:
Virginia, United States (US)
Create date:
Tuesday, October 14, 2014
Expires date:
Wednesday, October 14, 2015
Updated date:
Tuesday, October 14, 2014
ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
avast!
Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:PUP-gen [PUP]
100.00%
Dr.Web
Trojan.DownLoader11.40661, Trojan.DownLoader11.49526, Trojan.iBryte.80, Trojan.DownLoader11.38636
100.00%
VIPRE Antivirus
Threat.4778314, Optimum Installer
100.00%
Malwarebytes
PUP.Optional.Fusion.A, PUP.Optional.Ibryte
100.00%
F-Prot
W32/A-a0e3427e, W32/A-2b3be3da, W32/A-c255719d
100.00%
Kaspersky
Trojan-Downloader.Win32.Genome, not-a-virus:AdWare.Win32.iBryte
100.00%
NANO AntiVirus
Trojan.Win32.Genome.diihrk, Trojan.Win32.Badur.dhhunu, Trojan.Win32.DownLoad3.dfwgta
100.00%
Comodo Security
Application.Win32.IBryte.BM, Application.Win32.AgentCV.HWYE
100.00%
Avira AntiVirus
ADWARE/Adware.Gen7, ADWARE/iBryte.Gen7, TR/Kazy.439479.2
100.00%
G Data
Win32.Adware.IBryte, Gen:Variant.Kazy.439479
100.00%
AhnLab V3 Security
PUP/Win32.Eorezo, Adware/Win32.IBryte, PUP/Win32.IBryte
100.00%
Panda Antivirus
Trj/Genetic.gen
100.00%
AVG
AdPlugin, Found Win32/DH{gRKBEyAlflCBB3lUTxVRgQkcU04}, Adware AdPlugin
100.00%
Reason Heuristics
PUP.Installer.OverallMedia.U, PUP.Installer.TigerDownload.U, PUP.Bundler.Adknowledge
100.00%
K7 AntiVirus
Unwanted-Program
100.00%
The domain fabulous-wealth2d3fd5.com has been seen to resolve to the following 4 IP addresses.
ec2-54-243-56-153.compute-1.amazonaws.com
May 3, 2015
ec2-23-21-251-147.compute-1.amazonaws.com
May 3, 2015
ec2-54-243-226-39.compute-1.amazonaws.com
December 25, 2014
ec2-50-19-213-188.compute-1.amazonaws.com
December 25, 2014
File downloads found at URLs served by fabulous-wealth2d3fd5.com.
URL:
http://fabulous-wealth2d3fd5.com/
Network:
Amazon Web Services (AWS), running an EC2 instance
Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 2.0.50727)