Download
Community
knowledgeBase
» www.appstowerfarm.com
Overview
Analysis
IPs Addresses (16)
Downloads (21)
Network (23)
www.appstowerfarm.com
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Root domain:
appstowerfarm.com
Analysis
Scanner detections:
Detections (95% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Bibado.BibadoInvestments.Bundler (M), PUP.Bibado.BibadoIn.Bundler (M)
100.00%
IPs Addresses
The domain www.appstowerfarm.com has been seen to resolve to the following 16 IP addresses.
54.191.246.249
ec2-54-191-246-249.us-west-2.compute.amazonaws.com
June 22, 2016
52.38.209.219
ec2-52-38-209-219.us-west-2.compute.amazonaws.com
June 22, 2016
52.33.165.25
ec2-52-33-165-25.us-west-2.compute.amazonaws.com
June 22, 2016
52.33.46.229
ec2-52-33-46-229.us-west-2.compute.amazonaws.com
June 22, 2016
52.32.12.104
ec2-52-32-12-104.us-west-2.compute.amazonaws.com
June 22, 2016
52.25.41.73
ec2-52-25-41-73.us-west-2.compute.amazonaws.com
May 20, 2016
52.24.26.116
ec2-52-24-26-116.us-west-2.compute.amazonaws.com
May 20, 2016
52.26.95.11
ec2-52-26-95-11.us-west-2.compute.amazonaws.com
April 17, 2016
54.148.57.212
ec2-54-148-57-212.us-west-2.compute.amazonaws.com
April 17, 2016
54.69.198.37
ec2-54-69-198-37.us-west-2.compute.amazonaws.com
April 17, 2016
52.35.10.15
ec2-52-35-10-15.us-west-2.compute.amazonaws.com
April 3, 2016
52.34.170.106
ec2-52-34-170-106.us-west-2.compute.amazonaws.com
April 3, 2016
52.25.23.136
ec2-52-25-23-136.us-west-2.compute.amazonaws.com
April 3, 2016
54.191.37.5
ec2-54-191-37-5.us-west-2.compute.amazonaws.com
April 3, 2016
54.69.11.66
ec2-54-69-11-66.us-west-2.compute.amazonaws.com
April 3, 2016
52.88.159.85
ec2-52-88-159-85.us-west-2.compute.amazonaws.com
April 3, 2016
Downloads
File downloads found at URLs served by www.appstowerfarm.com.
0 / 68
http://www.appstowerfarm.com/c?x=45zR/YaMQagQrnqtJwsigMLntjPNYdOxToKtoTnER8w=&c=bCGVlviYEzTcOb4fOUQQxLxSOdKiRrcF3uWXB50zwbYmSBwz3Xa HZ syItiDC32KI1WDxew1o8IVKyr6si4NvE1FNogR9oEqq48hV4XgSP9CuGXuWF7dQWQBO4qN29I&downloadAs=pro-evolution-soccer-2012.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455633408/en/.../2/227951-661169-pro-evolution-soccer-2012.zip
(1ae4790bd7aa507c9a088f2ebc8a1e1f)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=rcinSChssmajr1hj1FnQ/PSnELjbWBdtZOLNdKPWdmM=&c=p0lMofLvEzZ4RwRVLhaHDBXNwBM9YgzGbNjkf9lsi/5fJA8 B6rAVMJFC9yEnn5iYG5ZUEjFblpAiBE0b0eLRtroxRCe5 WEAuypzBSlCZzvjrdt9mHMMEgLRPMhtVtH&downloadAs=microsoft-photo-story-3.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455631393/en/3/.../35901-1797218-microsoft-photo-story-3.msi
(c.exe)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=OXcauPq/x95itq/B/c/w/3FJSVBcUukExCBX7YEfRi8=&c=sQBpc9Gfu0xVnkkJQ3ISbw3e34w/edfsRDKFzm8fU4T4RjrI5026Y1sMamXpn9saTaRAqPkrg3atKLDrACc9pP2VUu1JEzJb0SsCNpZBpW PNihNbv11eCqMKfDWPGr &downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455634673/en/8/.../83929-92631-microsoft-office-2010.exe
(5aa256549e3845c71ff4c8580e67e3ee)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=49G0V9DfQPfOrS0xS9v89Uj7u8CYnPOUxA9pJoDWFSs=&c= hcrA1NRd/pZB8s7DoqFSrewwcozupkqej86WRoqEq6XxCmJRuxJ31Vo09izAAkpRLgbv1CVABK/wce6Wj17LXVcKXzBRuFKC/pAP7ICxVvTF9UIjHY15kiOGGY1uh2n&downloadAs=ytd-video-downloader-5.1.1.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455614945/en/9/.../961374-1808908-ytd-video-downloader.exe
(c.exe)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=NLJJlmk3IcQ4dST6xsr81w LDTbD8BF kIVXmfZAfdE=&c= 7PtRUakawqOIQwdph2a5MXWcg/bS9n7Ajd2iqxidvUNeoqZnVXZADsdybxD5RXxOCY3iiLpwOzwhEkGgBOmFqXYIxT7Jh1QITNanrXJVNon5wKlnvA9jwD9PGJ/akP3&downloadAs=hotspot-shield-5.1.7.exe&fallback_url=http://mydati.com//download/.../HSS-773.exe
(79aafa2f3bffc6ecd19e05897927d61f)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=qBlHssQgvZWzksxe pvr ahDcTLrUI5M41jKVImaIw=&c=HFY u2cx9I8 miHBvJvGN0CcgAVpivaUl8wqgupGmW919267wGCdfQ25y9KFHar5eOvkOT quW02asCl8 LGqCPBNsDAtyOaYVytsQU8WQC4ICJHiYYnvRsG7bz6d1Pr&downloadAs=nero-startsmart-15.0.03500.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455633944/en/.../2/227179-1798418-nero-startsmart.exe
(2f0a3630001de14ca8ac390c148f7062)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=6R1xvnShIhBJvi gKjjD5sHXo9ScjwWWQShNhV7SVFU=&c=63F6RbJOSN2nlXkLM8N5nQT RLn7BFQCRjjQSLFF/FBUBbNiiKD/Wnc2QY6h6ZZPQqkPtVZdcDLn46K7m4Ci 3pfYaTPnT/B41kJ/r8tWeKIi Xvd4/uDlX8R7IXi0Gw&downloadAs=windows-media-player-12.exe&fallback_url=http://windows.microsoft.com/en-us/.../download-windows-media-player
(4444b59418f7396a282189f0ed5821df)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=4eTY3NY4IoUBZpH2vxGxPaHbY9nShMNM6XZXvtcoxXw=&c=47 6Oyvclb19HLcPza0BGBjizpOWxhiuJuLmbyXtgdjlEEDa3XDDIuIdvD61xOuTAOCdC4UhKMXmb/pok/UR ElvhL8wrtCLEBnTaI2ih10TDhBCBfB1isw/H eEoZFt&downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455627898/en/8/.../83929-92631-microsoft-office-2010.exe
(d9e088b696831441257fc36e47a67fc4)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=PASP si8H/IXlAfslv2 uB39zbbE75h011aZX4fLmjg=&c=V7jFNFNayNS4xukYsoSy4OnnhXrA5cql IKApv5W7XXKdERflDeHnulp 1PaVT4hzh 4wRP81WHAv6gR2RddbWdrwZrVHSb/DZXNQ7AojS1b2bUHEIW1AXWdjkFI0 zD&downloadAs=opera-mini-12.00.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455619779/en/.../2/228755-1800091-opera-mini.sis
(cced558e29c5df2377981d94ec23d88e)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=yHGeb0iyrkW034cJ6bvkEPofTPXEHZ4QmWh/4ffT9z0=&c=7hENY7E2N3SFbSLfAZcJFuSc2iclmjM 4w8BVtIcFc10XuGf6Q06bWgcYEG/jk/NC5o SKJ72OKqGOoBwF055XX7uKW2qmXA/nltfObKMqn8Hz6CrUP8Xxd wUuqrhv3&downloadAs=microsoft-office-home-and-student-2010-14.0.5128.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455617882/no/4/.../46460-658931-microsoft-office-home-and-student-2010.exe
(5f165bbb87dd43ddeac7fa973cc35ce0)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=kR8VT wDNiSQMliUqcBbZbN0IiuDSQIei5MT3ZJ9qi4=&c=uPQ09Y62l/k9MvRfIe9TvPIjE39bw42/hsjPQonlgXG7 ffVs2zxJeF6AR8qMQaq/WScxDmSEop3NUjtKwDrmIO7p/aoV7xiNcqzJxr9nspoObXNLYxrwvyb/HJFMf v&downloadAs=hotspot-shield-5.1.7.exe&fallback_url=http://mydati.com//download/.../HSS-773.exe
(fab08e54edc20de78846282a472a733a)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=l/aE9jFJB8znco/sH/ NVL0fOMe9RcE5e LSzD7kqjI=&c=svBkqpWPCaIT1Iuwb76BeVUXcD9uSiTqrXscNQy0KOXNT23Eb5/euIwpJBl5f1wRLJvfl7XMc9DtgzJqY0hQWhRBuPGBoDWJZ49GCOlJTtp60n9J6Y0Foi173tq9qaKO&downloadAs=hotspot-shield-5.1.7.exe&fallback_url=http://mydati.com//download/.../HSS-773.exe
(79aafa2f3bffc6ecd19e05897927d61f)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=V2zCE9IGPx1JpXSoJmAbObTESnQ6epjxyyB15lvTD6U=&c=hmpKrURSQfIB3/CjVNQX9f7htA42qSN7bUZpJ1Kz CqaiHbMCNR94r6syS43ucyvWmz5WyXVn3p2PAQsEGgJRvDn18/7xazylEWHt306kzR8tBetjMP56 0ctuLQQ8eb&downloadAs=microsoft-word-2013.exe&fallback_url=http://office.microsoft.com/en-001/.../
(733fad92c3b56c8d6019e2b4ee884f23)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=e54Xg1qVn4/Yd6FMYZx/4tJH5JTd5LeyBjEgHRn/L c=&c=nI6SFB 3lXHBPOA1atwWW6myimUmq7rf2Oq1cp9iLXd8zCH2xM/sEwoYCn3KN7Nx3/Tpdt4iKcx02YVQaBdY5oymyi9nmuW1JOoOaWwhpvdOXy7OVkdTYtvKi3ip8FL4&downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455624198/en/8/.../83929-92631-microsoft-office-2010.exe
(c64533541438d4322bb6fb89b906aa86)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=01Ijb4OLNnAQq0l4Z qatOTSFE XLNnC0fzWeWFClO0=&c=EDcNgysUGXPeCmxjJRljvpD0ngsEeAufdxV2 Zqtr48sQmsAcZJW0EhzX8pArMPVMtLR4DosiZvBczbEY4u9iiYHV8sV9y0tmHt/9oiNfjxk8RM tCVQmHAZ3E29nuR &downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455625583/en/8/.../83929-92631-microsoft-office-2010.exe
(icreinstall_microsoft-office-2010.exe)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=0wOroOCVtdTtEQjWSjxIl48yJE2jm7P/BEB02SPbw3I=&c=s qmh2t0gc2oCFqPmxCYeDi7Ef0DGP38tk/RsUnTe9NccHqwRQEZ1xkodL2 MAQJVhLuqkTxLi50qtmczRxp175FF5E7jB6UH4uKwT4SrQQJUWOs6DvDneGqrX4M4ALI&downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455631305/en/8/.../83929-92631-microsoft-office-2010.exe
(8a5fecb06744c3ac193dd8303effb1c1)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=emBK 1xeAZoNQlxr23WImIkZdrlKtZYHb7oG3uLyoBs=&c=dKmqe8Io9Xo9VAMoR5o8EZ6tVtL/pRRmE6v5wvCflaOUKjtmjZYP05kmWcpg2Q5 hPaZVjGkQHxYITg2qbOKxmNBLd8MkYz/s8IFTQXQkqmjZXRuRqzOGYOQNabIXoh7&downloadAs=microsoft-office-2010.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455632185/en/8/.../83929-92631-microsoft-office-2010.exe
(eb512aaa20718a60a6377d72d66b368c)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=nTaVuMieMYfp dDQG6hApfrPKmVEhVN4ujxW7t/epGU=&c=9 j1ni68j4q371U2BYbJy8GGBsFWxplgr P60MfSZl9K9ekzAMTiE03Vo7OJOafKN22L/G451yOD3qJQdzcYfZHMF7vCetLjB ofdbw9Nc3BtlPSIlyOyrTQEYfKmJNC&downloadAs=battlefield-4-full-version.exe&fallback_url=http://www.battlefield.com/uk/.../buy
(4bb962ffff931301458d944da6c99a80)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=pDDediPt0wETzZdvZR6nqjAHax7uCKzjYxoQ/1V0Ils=&c=m8uokybEGgcCLpWih1wmVsv/Vaz9ldSqNN1atOqObsrz1a1dOe7aArdg3hOIWJL7TS3ligVZCd/SGItjl2kR8w6UXZJySdKF/FbTqoTyyKBaHIQy1Njk7Ca18TXTUM7X&downloadAs=internet-download-manager-6.25-build-12.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455632827/fr/2/.../26881-1808945-internet-download-manager.exe
(1914f7eb340d3ed256ecaad41ee07a2e)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=tDy/gOVp4OgFRE8zCOpTMIAVUeL5c8noWBAvxaHdPm8=&c=Oyf9Kgwha01OVd/0zk6H0GnOt2tuanRxUaWwT/vhlnft/J0c7MpeW2hQsnrLmjchOYUdLL7O4IGjbA7qR4Bh3CARpr1IS5uMJ5tQLVmkqMbGmOoP8GtqZSrM7UNP9P/2&downloadAs=internet-download-manager-6.25-build-12.exe&fallback_url=http://pf.benjaminstrahs.com/s/1455630918/en/2/.../26881-1808945-internet-download-manager.exe
(664835197e0b75b7f26c4c46cebfe2a8)
1 / 68 (Adware)
http://www.appstowerfarm.com/c?x=Adt45qbvNztg1THZjBeR0nenfX24YWbZtdDuHFtq6AU=&c=Ej0BCgilAquc4UveYs/IUfxUHMixDaUBK964H39nk/ksXymtnY8gc0TJHthlvJRS538dKD2DX35Yj mayjTJnlCn2cwoU6GBoJqOYngM2ckL3 3MpJHeDbJi1Cq4qeOq&downloadAs=befunky-photo-editor-pro-1.0.4.exe&fallback_url=https://.../details?id=air.com.befunky.BeFunkyPhotoEditorPro
(5a53f1c36ea8d9810fc70d89fa4589c0)
Network Communications
The following 23 files have been seen to comunicate with www.appstowerfarm.com in live environments.
TCP »
52.38.209.219
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.33.46.229
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
52.33.46.229
:80
browserairexec.exe (BrowserAir by Goobzo)
TCP »
52.38.209.219
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
52.38.209.219
:80
browserairexec.exe (BrowserAir by Goobzo)
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.38.209.219
:80
browser.exe (Browser)
TCP »
52.33.46.229
:80
citrio.exe (Citrio by CatalinaGroup)
TCP »
52.33.46.229
:80
Client.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
036629fbd4864725737a8ba8fe7e8cd6.exe
TCP »
52.33.46.229
:80
ShopAtHome_BAC_Service.exe (by ShopAtHome.com)
TCP »
52.33.46.229
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.33.46.229
:80
browserair.exe (BrowserAir by Goobzo)
TCP »
52.38.209.219
:80
3.9.0.128_20140916045038.exe (The KMPlayer by PandoraTV)
TCP »
52.38.209.219
:80
e5be.tmp
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
Proxomitron.exe (Proxomitron by Groom-A-Zebu (tm))
TCP »
52.38.209.219
:80
client.exe
Latest 20 of 59 files
X