suredownloadz.com

Whois Privacy Shield Services

Domain Information

The domain suredownloadz.com registered by Whois Privacy Shield Services was initially registered in February of 2016 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
CONFUCIUS, LLC

Server location:
Virginia, United States (US)

Create date:
Friday, February 12, 2016

Expires date:
Sunday, February 12, 2017

Updated date:
Friday, February 12, 2016

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

AhnLab V3 Security
PUP/Win32.Amonetiz
100.00%

Reason Heuristics
PUP.Installer.SVANTRANS.d, PUP.Installer.AMGRUP.r, PUP.Installer.AMGRUP.?, PUP.Installer.AMGRUP.X, PUP.Installer.AMGRUP.AA
100.00%

Avira AntiVirus
ADWARE/Adware.Gen4, Adware/Amonetize.314368.1, Adware/Amonetize.576200.16, ADWARE/Adware.Gen2
90.91%

ESET NOD32
Win32/Amonetize.CH (variant), Win32/Amonetize.CK (variant), Win32/Amonetize.BP (variant)
90.91%

Sophos
Generic PUA JF, Generic PUA EE, Generic PUA FO, Generic PUA GD, Generic PUA NF, Generic PUA GJ, Generic PUA HM, Amonetize
81.82%

McAfee
Artemis!EA6EC4D9429A, Artemis!37CCF14B6356, Artemis!FEC98D512BE4, Artemis!0AA4A9D3F32E, Artemis!02A8E09A32D8, Artemis!AC73B93843AA, Artemis!F23EBE58EE48
72.73%

NANO AntiVirus
Riskware.Win32.Amonetize.djsswg, Riskware.Win32.Amonetize.dkinix, Riskware.Win32.Amonetize.dlgsuu, Riskware.Win32.Amonetize.djmfqq
72.73%

Trend Micro House Call
PE_VIRUX.R, Suspicious_GEN.F47V1213, Suspicious_GEN.F47V1203, TROJ_GEN.R08NH09LM14, Suspicious_GEN.F47V1228, Suspicious_GEN.F47V1231
63.64%

K7 AntiVirus
Unwanted-Program
45.45%

avast!
Win32:Vitro, Win32:Amonetize-GR [PUP], Win32:Adware-gen [Adw], Win32:Amonetize-GL [PUP]
45.45%

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
45.45%

AVG
Generic
36.36%

Fortinet FortiGate
W32/Virut.CE, Riskware/Amonetize
36.36%

Malwarebytes
Trojan.Downloader.Agent, PUP.Optional.Amonetize
27.27%

VIPRE Antivirus
Threat.4739697, Trojan.Win32.Generic
27.27%

The domain suredownloadz.com has been seen to resolve to the following 2 IP addresses.

125.34.148.146.bc.googleusercontent.com
April 5, 2016

ec2-54-210-47-225.compute-1.amazonaws.com
April 5, 2016

File downloads found at URLs served by suredownloadz.com.

14 / 68    (Adware)

8 / 68      (Adware)

The following 5 files have been seen to comunicate with suredownloadz.com in live environments.

URL:
http://suredownloadz.com/

Google Analytics:
UA-48689684

Title:
“suredownloadz.com”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx

30 of 618 related domains