bs-self.s3.amazonaws.com

Amazon.com, Inc

Domain Information

The domain bs-self.s3.amazonaws.com registered by Amazon.com, Inc was initially registered in August of 2005 through MARKMONITOR INC.. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the RIPE Network Coordination Centre network. The domain uses the Amazon Web Services (AWS) cloud computing platform. It utilizes the Amazon Simple Storage Service (Amazon S3) a scalable storage web service for hosting content.
Remove Malware from bs-self.s3.amazonaws.com - Powered by Reason Core Security
Registrar:
MARKMONITOR INC.

Server location:
Dublin City, Ireland (IE)

Create date:
Thursday, August 18, 2005

Expires date:
Tuesday, January 16, 2018

Updated date:
Thursday, May 01, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Amonetizeltd.J, PUP.Installer.Amonetizeltd.Y, PUP.Installer.Amonetizeltd.DD, PUP.Installer.Amonetizeltd.d, PUP.Installer.Amonetizeltd.h
100.00%

Malwarebytes
PUP.Optional.Amonetize.AS
92.86%

Dr.Web
Adware.Downware.1339, Adware.Downware.1528, Adware.Downware.646, Adware.Downware.1216
92.86%

ESET NOD32
Win32/Amonetize (variant)
92.86%

VIPRE Antivirus
Amonetize
92.86%

Sophos
Amonetize
85.71%

Avira AntiVirus
ADWARE/Adware.Gen2, APPL/WhiteSmoke.E, Adware/Amonetize.AA
85.71%

K7 AntiVirus
Unwanted-Program
64.29%

K7 Gateway Antivirus
Unwanted-Program
64.29%

Trend Micro House Call
TROJ_GEN.F47V0625, TROJ_GEN.F47V0702, TROJ_GEN.F47V0610, TROJ_GEN.R0CCOH0LM13, TROJ_GEN.F47V0521, TROJ_GEN.R0CBH05G214
42.86%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
35.71%

avast!
Win32:Amonetize-I [PUP], Win32:WhiteSmoke-A [PUP], Win32:Amonetize-Q [PUP]
35.71%

G Data
Adware.Generic.595228, Adware.Generic.509274, Win32.Application.Amonetize
28.57%

AhnLab V3 Security
PUP/Win32.Amonetize
28.57%

Emsisoft Anti-Malware
Adware.Generic.595228, Adware.Generic.509274, Gen:Heur.Conjar
21.43%

The domain bs-self.s3.amazonaws.com has been seen to resolve to the following 13 IP addresses.

s3-1-w.amazonaws.com
May 4, 2015

s3-1-w.amazonaws.com
May 4, 2015

s3-1-w.amazonaws.com
January 7, 2015

s3-1-w.amazonaws.com
September 4, 2014

s3-1-w.amazonaws.com
September 4, 2014

s3-1-w.amazonaws.com
September 2, 2014

June 5, 2014

May 30, 2014

s3-1-w.amazonaws.com
April 26, 2014

s3-1-w.amazonaws.com
April 26, 2014

s3-1-w.amazonaws.com
March 14, 2014

March 14, 2014

s3-1-w.amazonaws.com
February 6, 2014

File downloads found at URLs served by bs-self.s3.amazonaws.com.

11 / 68    (Adware)

6 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (surf anonymous free 2.1.4.2__2759_i26356367_il611276.exe)

2 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__1279_i21100381_il263433.exe)

18 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (jazz jackrabbit 2__2347_il316651.exe)

10 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (7zip__2766_i31678482_il604572.exe)

10 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayersetup__2340_i26279640.exe)

10 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (mediaupdater__2577_i26048055_il561301.exe)

28 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i19937420_il42840.exe)

8 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbosetup__962_i4684453_il1196.exe)

14 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (internetturbo__2298_il544821.exe)

19 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i18558057_il42840.exe)

11 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i21406253_il42840.exe)

9 / 68      (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (flashplayer__2114_i33495880_il42840.exe)

13 / 68    (Adware)
http://bs-self.s3.amazonaws.com/.../Launcher.exe  (skymonkam__2155_il405671.exe)

URL:
http://bs-self.s3.amazonaws.com/

Network:
Amazon Web Services (AWS)

SSL certificate subject:
CN=*.s3.amazonaws.com, OU=S3-A, O=Amazon.com Inc., L=Seattle, S=Washington, C=US

SSL certificate issuer:
CN=VeriSign Class 3 Secure Server CA - G3, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Web server:
AmazonS3

Remove Malware from bs-self.s3.amazonaws.com - Powered by Reason Core Security