www.funheartcapital.com

Domain Information

Server location:
Washington, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.FusionCore.EST (M), Adware.Bundler (M), PUP.installCore (M)
100.00%

ESET NOD32
Win32/FusionCore.E potentially unwanted application
33.33%

Dr.Web
Trojan.Swizzor.19586
33.33%

Norman
Gen:Variant.Adware.Symmi.59817
33.33%

The domain www.funheartcapital.com has been seen to resolve to the following 23 IP addresses.

server-52-85-131-127.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-43.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-37.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-232.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-211.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-178.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-148.iad53.r.cloudfront.net
April 15, 2016

server-52-85-131-251.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-202.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-177.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-151.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-138.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-117.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-110.iad53.r.cloudfront.net
April 7, 2016

server-52-85-131-53.iad53.r.cloudfront.net
April 7, 2016

server-54-192-195-47.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-37.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-12.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-248.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-153.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-116.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-87.iad53.r.cloudfront.net
February 4, 2016

server-54-192-195-85.iad53.r.cloudfront.net
February 4, 2016

File downloads found at URLs served by www.funheartcapital.com.

3 / 68      (PUP)
http://www.funheartcapital.com/.../installer.exe  (e6537ab9b78c3202a13d9dbb2ceb2686)

1 / 68      (PUP)

2 / 68      (PUP)
http://www.funheartcapital.com/.../installer.exe  (niepotwierdzony 656340.crdownload)

The following file have been seen to comunicate with www.funheartcapital.com in live environments.