www.dm-file.com

ziv dascalu

Domain Information

The domain www.dm-file.com registered by ziv dascalu was initially registered in September of 2014 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrar:
GANDI SAS

Server location:
Oregon, United States (US)

Create date:
Sunday, September 21, 2014

Expires date:
Monday, September 21, 2015

Updated date:
Sunday, September 21, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Installer.InstallPath.Z, PUP.Installer.InstallPath.FF
100.00%

Malwarebytes
PUP.Optional.Amonetize
100.00%

ESET NOD32
Win32/Amonetize.BR (variant)
100.00%

Baidu Antivirus
Adware.Win32.Amonetize
100.00%

AVG
Generic, Generic_r
100.00%

Panda Antivirus
Trj/Genetic.gen, PUP/MultiToolbar.A
100.00%

K7 AntiVirus
Unwanted-Program
66.67%

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
66.67%

Sophos
Generic PUA MI, Generic PUA MO
66.67%

Avira AntiVirus
Adware/Amonetize.tzv
66.67%

Fortinet FortiGate
Adware/Amonetize, Riskware/Amonetize
66.67%

Qihoo 360 Security
Win32/Virus.Adware.e09
66.67%

G Data
Win32.Application.Amonetize
33.33%

Agnitum Outpost
PUA.Amonetize
33.33%

AhnLab V3 Security
PUP/Win32.Amonetiz
33.33%

The domain www.dm-file.com has been seen to resolve to the following 3 IP addresses.

ec2-54-245-104-86.us-west-2.compute.amazonaws.com
September 30, 2014

ec2-54-214-247-254.us-west-2.compute.amazonaws.com
September 27, 2014

ec2-54-214-6-146.us-west-2.compute.amazonaws.com
September 27, 2014

File downloads found at URLs served by www.dm-file.com.

The following 6 files have been seen to comunicate with www.dm-file.com in live environments.

URL:
http://www.dm-file.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Apache/2.2.29 (Amazon)