Server location:
Washington, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Malware distribution (92% detected)
Scan engine
Details
Detections
Dr.Web
Trojan.Swizzor.19587, Trojan.Siggen6.55368, Trojan.Siggen6.54687, Win32.Virut.56
58.33%
Norman
Gen:Variant.Graftor.267932, Trojan.Generic.KDV.391478, Win32.Ramnit.N, Gen:Variant.Razy.7204, Win32.Virtob.Gen.12
50.00%
Microsoft Security Essentials
Threat.Undefined
50.00%
ESET NOD32
Win32/AutoRun.Delf.LV worm, Win32/Ramnit.H virus, Win32/VB.OSK trojan, Win32/Parite.B virus, Win32/Virut.NBP virus
50.00%
avast!
Win32:AutoRun-CWJ [Trj], Win32:RmnDrp, Win32:Quolko, Win32:Parite, Win32:Vitro
50.00%
Kaspersky
Virus.Win32.Renamer, Virus.Win32.Nimnul, Trojan.Win32.Swisyn, Virus.Win32.Parite, Virus.Win32.Virut
50.00%
Emsisoft Anti-Malware
Gen:Variant.Graftor.267932, Win32.Ramnit.N, Gen:Variant.Razy.7204, Win32.Parite, Win32.Virtob.Gen.12
41.67%
McAfee
Virus.W32/Tainp.a, Trojan.Artemis!C5A65C40EA46, Virus.W32/Pate.b, Virus.W32/Virut.n.gen
41.67%
AVG
Worm/Delf.KKJ, Win32/Zbot.F, Win32/Parite, Win32/Virut
41.67%
F-Prot
W32/Autorun.ZF, W32/Ramnit.E, W32/Parite.B, W32/Virut.AI!Generic
41.67%
Reason Heuristics
Threat.Win.Reputation.IMP, PUP.installCore (M)
41.67%
F-Secure
Variant.Graftor.267932, Trojan.Generic.KDV.391478, Win32.Ramnit.N
33.33%
VIPRE Antivirus
Threat.4150696, Threat.4732184, Threat.4763461, Threat.46249
33.33%
Sophos
Virus 'W32/Renamer-L', Virus 'W32/Ramnit-A', Virus 'W32/Mofksys-B'
25.00%
The domain www.downloadscityclean.com has been seen to resolve to the following 52 IP addresses.
server-52-84-125-105.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-102.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-93.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-238.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-229.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-210.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-195.iad16.r.cloudfront.net
June 20, 2016
server-52-84-125-130.iad16.r.cloudfront.net
June 20, 2016
server-52-85-142-189.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-159.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-103.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-102.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-101.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-51.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-36.iad12.r.cloudfront.net
May 16, 2016
server-52-85-142-14.iad12.r.cloudfront.net
May 16, 2016
server-54-230-102-137.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-134.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-126.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-100.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-32.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-184.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-174.iad2.r.cloudfront.net
April 12, 2016
server-54-230-102-164.iad2.r.cloudfront.net
April 12, 2016
server-52-85-131-58.iad53.r.cloudfront.net
April 4, 2016
server-52-85-131-227.iad53.r.cloudfront.net
April 4, 2016
server-52-85-131-185.iad53.r.cloudfront.net
April 4, 2016
server-52-85-131-155.iad53.r.cloudfront.net
April 4, 2016
server-52-85-131-139.iad53.r.cloudfront.net
April 4, 2016
server-52-85-131-135.iad53.r.cloudfront.net
April 4, 2016
Showing 30 of 52 IP Addresses
File downloads found at URLs served by www.downloadscityclean.com.
The following 33 files have been seen to comunicate with www.downloadscityclean.com in live environments.