i1.moodclock.xyz

Domain Information

Server location:
Dublin City, Ireland (IE)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.EZDownloader.Installer.M, PUP.Bundled, Adware.SInstaller.I, PUP.Optional.PCBackupSoftwareLimited.K
100.00%

Trend Micro House Call
TROJ_GEN.F47V0611, TROJ_GEN.F47V0114
50.00%

Dr.Web
Trojan.Searcher.1197, riskware program Program.Unwanted.75
50.00%

ESET NOD32
Win32/SProtector.M potentially unwanted application, MSIL/MyPCBackup.B potentially unwanted application
50.00%

Malwarebytes
PUP.Optional.EZDownloader.A
25.00%

Bkav FE
HW32.Stranacty
25.00%

Vba32 AntiVirus
SScope.Malware-Cryptor.SProtector
25.00%

XVirus List
Win.Detected
25.00%

Emsisoft Anti-Malware
Application.MPlug
25.00%

F-Prot
W32/Multiplug.C
25.00%

VIPRE Antivirus
Threat.4150696
25.00%

AVG
Generic
25.00%

The domain i1.moodclock.xyz has been seen to resolve to the following 2 IP addresses.

ns1.ibspark.com
April 14, 2016

ec2-54-191-15-203.us-west-2.compute.amazonaws.com
February 4, 2016

File downloads found at URLs served by i1.moodclock.xyz.

2 / 68      (PUP)
http://i1.moodclock.xyz/.../trnt_egg.exe  (down.2436.fastdownload.exe)

5 / 68      (PUP)

3 / 68      (Adware)
http://i1.moodclock.xyz/.../ezdownloader.exe  (71f784969d24240764d5e5d752d55a41)

8 / 68      (Adware)
http://i1.moodclock.xyz/.../sinstall.exe  (71c2ea2b936ba80f4bad80937b369adf)

The following 145 files have been seen to comunicate with i1.moodclock.xyz in live environments.

 
Latest 20 of 157 files