get.fluff234.info

OutBrowse

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
GoDaddy.com, LLC

Server location:
Virginia, United States (US)

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.StartNow.M, PUP.Outbrowse, PUP.Bundler.Outbrowse, PUP.Outbrowse.StartNow.Bundler (M)
100.00%

Dr.Web
Trojan.OutBrowse.6
91.67%

VIPRE Antivirus
Threat.4823950, Threat.4150696
83.33%

McAfee
Adware-OutBrowse.c, Program.Adware-OutBrowse.c
83.33%

Malwarebytes
PUP.Optional.OutBrowse, PUP.Optional.Outbrowse
83.33%

AVG
Generic, Potentially harmful program Downloader.CGY, Potentially harmful program Downloader.CHJ, Potentially harmful program Downloader.CIC
83.33%

ESET NOD32
Win32/OutBrowse.BJ potentially unwanted application, Win32/OutBrowse.BK potentially unwanted application
75.00%

avast!
Malware-gen, Adware-gen [Adw], PUP-gen [PUP], OutBrowse-AI [PUP], OutBrowse-AX [PUP]
66.67%

AhnLab V3 Security
PUP/Win32.OutBrowse
66.67%

Fortinet FortiGate
Riskware/OutBrowse
66.67%

Emsisoft Anti-Malware
MemScan:Application.Bundler.Outbrowse.S, Gen:Variant.Application.Bundler.Outbrowse
58.33%

Lavasoft Ad-Aware
MemScan:Application.Bundler.Outbrowse.S, Gen:Variant.Application.Bundler.Outbrowse.1
58.33%

MicroWorld eScan
MemScan:Application.Bundler.Outbrowse.S, Gen:Variant.Application.Bundler.Outbrowse.1
58.33%

Bitdefender
MemScan:Application.Bundler.Outbrowse.S, Gen:Variant.Application.Bundler.Outbrowse.1
58.33%

G Data
MemScan:Application.Bundler.Outbrowse, Gen:Variant.Application.Bundler.Outbrowse
58.33%

The domain get.fluff234.info has been seen to resolve to the following 4 IP addresses.

ec2-54-235-199-208.compute-1.amazonaws.com
May 5, 2015

ec2-50-19-218-184.compute-1.amazonaws.com
May 3, 2015

ec2-184-73-249-134.compute-1.amazonaws.com
May 3, 2015

ec2-50-16-223-151.compute-1.amazonaws.com
November 29, 2014

File downloads found at URLs served by get.fluff234.info.

The following file have been seen to comunicate with get.fluff234.info in live environments.