Download
Community
knowledgeBase
» www.factorybesttower.com
Overview
Analysis
IPs Addresses (11)
Downloads (6)
Network (6)
www.factorybesttower.com
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Root domain:
factorybesttower.com
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.InstallCore.FC.Installer (M)
100.00%
IPs Addresses
The domain www.factorybesttower.com has been seen to resolve to the following 11 IP addresses.
52.25.41.73
ec2-52-25-41-73.us-west-2.compute.amazonaws.com
May 16, 2016
52.24.26.116
ec2-52-24-26-116.us-west-2.compute.amazonaws.com
May 16, 2016
54.69.11.66
ec2-54-69-11-66.us-west-2.compute.amazonaws.com
April 19, 2016
52.25.23.136
ec2-52-25-23-136.us-west-2.compute.amazonaws.com
April 17, 2016
54.191.37.5
ec2-54-191-37-5.us-west-2.compute.amazonaws.com
April 17, 2016
54.148.57.212
ec2-54-148-57-212.us-west-2.compute.amazonaws.com
April 17, 2016
54.69.198.37
ec2-54-69-198-37.us-west-2.compute.amazonaws.com
April 17, 2016
52.88.159.85
ec2-52-88-159-85.us-west-2.compute.amazonaws.com
April 17, 2016
52.35.10.15
ec2-52-35-10-15.us-west-2.compute.amazonaws.com
April 17, 2016
52.34.170.106
ec2-52-34-170-106.us-west-2.compute.amazonaws.com
April 17, 2016
52.26.95.11
ec2-52-26-95-11.us-west-2.compute.amazonaws.com
April 17, 2016
Downloads
File downloads found at URLs served by www.factorybesttower.com.
1 / 68 (Adware)
http://www.factorybesttower.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
(gang-beasts.exe)
1 / 68 (Adware)
http://www.factorybesttower.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
(nba-2k15.exe)
1 / 68 (Adware)
http://www.factorybesttower.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
(winrar.exe)
1 / 68 (Adware)
http://www.factorybesttower.com/c?x=IpDEqxCpeI2PdnB2YmQs0Xhbeg8dnjS5 txKyux5QEw=&c=6GFC3mLlT00yzFb2Lp0nZAwEZXbB357vOSGwSXPS2 13t1fYuGo5MzN3QC6Wt5tAVCG9TLYvZ270SqqjTKrEV7uTpW3d1CvlUvyD0tyYFIcrg9rNm lL5UHYnYXt4rUy&fallback_url=https://secure.inndl.com/.../poly-bridge.exe
(icreinstall_poly-bridge.exe)
1 / 68 (Adware)
http://www.factorybesttower.com/c?x=kozUMiygDioCQ a8AcZvTAu9eKSpoi3gFZltg8zmDSU=&c=Y3c4avaikUAOYtfkRgNmmYs qoxU9OyeC20drARovw1YIBjgoTtICZDRTJPR/CrT 8FoIxq2Kt8fE4/TrOw6gejRI4/jscL/lINPR4CBkngpgOFF6A BoduzMvp7PkD&fallback_url=https://secure.inndl.com/.../tomtom-home.exe
(df965087cabbc7dedf21c00f036e7371)
1 / 68 (Adware)
http://www.factorybesttower.com/c?x=b/u9/hk5h01Zo3OGXrLStKGtBKDySvdklKUgJD jSQQ=&c=o7hXuUNZC2exIIaBZI6Om0V5/lF/T5Tfu6/UPc3uR64t21mJ2Orhbr4RhH55laubrLWHJyowCkSrdzwGvoWJTFK7VfZgHmrLHIqLsRaweTFrhizKn A/USEMzG/rxni3&fallback_url=https://secure.inndl.com/.../realplayer.exe
(realplayer-cloud.exe)
Network Communications
The following 6 files have been seen to comunicate with www.factorybesttower.com in live environments.
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
036629fbd4864725737a8ba8fe7e8cd6.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
Proxomitron.exe (Proxomitron by Groom-A-Zebu (tm))
X