Server location:
Berlin, Germany (DE)
Scanner detections:
Detections (67% detected)
Scan engine
Details
Detections
Malwarebytes
PUP.Optional.OpenCandy, PUP.Optional.OpenCandy.A
82.35%
ESET NOD32
Win32/OpenCandy, Win32/OpenCandy (variant), Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
82.35%
Fortinet FortiGate
Adware/OpenCandy, Riskware/OpenCandy
64.71%
Trend Micro House Call
ADW_OPENCANDY, TROJ_GEN.F47V0106, TROJ_GEN.F47V0401, TROJ_GE.34764AD7, TROJ_GEN.F47V0609, Suspicious_GEN.F47V0722, Suspici.1E48FE7A
58.82%
Dr.Web
Adware.OpenCandy.4, Adware.OpenCandy.39, Adware.OpenCandy.55, Adware.OpenCandy.147, Adware.OpenCandy.183
52.94%
McAfee
Adware-OpenCandy!8A85F5AD22C6, Adware-OpenCandy!2FF7EB50E7B6, Adware-OpenCandy!7A33F3343630, Artemis!5DA7E98522BC, Artemis!C9709047D4A4, Program.Adware-OpenCandy
47.06%
Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
41.18%
Agnitum Outpost
Riskware.OpenCandy, Riskware.Agent
29.41%
IKARUS anti.virus
PUA.OpenCandy, PUA.SpeedingUpMyPC
23.53%
Bkav FE
W32.Clod3ad.Trojan, W32.Clodef1.Trojan, W32.Clod944.Trojan
17.65%
G Data
Win32.Adware.OpenCandy, Win32.Application.OpenCandy
17.65%
Reason Heuristics
PUP.OpenCandy.Installer (L), Threat.Win.Reputation.IMP
17.65%
avast!
Win32:Adware-gen [Adw]
17.65%
Baidu Antivirus
Adware.Win32.OpenCandy
17.65%
Clam AntiVirus
Win.Adware.Agent-59160
11.76%
The domain www.dexpot.de has been seen to resolve to the following 3 IP addresses.
w0d.rzone.de
April 6, 2016
54.115.226.46.in-addr.arpa
February 2, 2016
srv17.sysproserver.de
December 28, 2013
File downloads found at URLs served by www.dexpot.de.
13 / 68 (false positives)
The following 8 files have been seen to comunicate with www.dexpot.de in live environments.
Related Domains