cdn.shyapotato.us

Admonetizer Inc

Domain Information

The domain cdn.shyapotato.us registered by Admonetizer Inc was initially registered in November of 2012 through GODADDY.COM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Jose, California within the United States which resides on the CDNetworks Inc. network.
Registrar:
GODADDY.COM, INC.

Server location:
California, United States (US)

Create date:
Friday, November 16, 2012

Expires date:
Friday, November 15, 2013

Updated date:
Friday, November 16, 2012

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN, TROJ_GEN.R47H1AB, TROJ_GEN.FFFCBAC, TROJ_GEN.RCBZ1KQ, TROJ_GEN.R70H1IM, TROJ_GEN.RCBB1B8, TROJ_GEN.RCBH1BP, TROJ_GEN.R47H1DK, TROJ_GEN.F47V1127
100.00%

Dr.Web
Trojan.MulDrop4.22250, Adware.Downware.193, Trojan.DownLoad3.13530, Trojan.DownLoader7.54115, Trojan.DownLoader7.58240, Trojan.DownLoader7.54308
100.00%

VIPRE Antivirus
InstallMonetizer, AdAgent, InfoAtoms, Trojan.Win32.Generic
98.00%

Trend Micro
TROJ_GEN, TROJ_GEN.FFFCBAC, TROJ_GEN.RCBZ1KQ, SPYW_HIJACK.SM, TROJ_GEN.FFFCBB6, TROJ_GEN.FFFCBAD
96.00%

G Data
DeepScan:Generic.Mitglied, NSIS:Malware-gen
96.00%

Panda Antivirus
Suspicious file
96.00%

SUPERAntiSpyware
Heur.Agent/Gen-WhiteBox
94.00%

McAfee
Artemis!FE04D1B8E07F, Artemis!9110BD8E93D4, Artemis!214B6FFB4BC1, Artemis!2D57302FF185, Artemis!1F4F603867B2, Artemis!5079C8B9896A, Artemis!31F4E10DD158, Artemis!0C525E1BFCDA, Artemis!5A874FADB913, Artemis!88991D889853, Artemis!69086DF1104B, Artemis!B0C685FE7046, Artemis!76DB3EB0AB28
92.00%

K7 AntiVirus
Adware, Adware
92.00%

F-Prot
W32/AdAgent.AI.gen, W32/AdAgent.AI2.gen
92.00%

Bitdefender
DeepScan:Generic.Mitglied
92.00%

F-Secure
DeepScan:Generic.Mitglied
92.00%

McAfee Web Gateway
Artemis!FE04D1B8E07F, Artemis!9110BD8E93D4, Artemis!214B6FFB4BC1, Artemis!2D57302FF185, Artemis!1F4F603867B2, Artemis!5079C8B9896A
92.00%

Emsisoft Anti-Malware
DeepScan:Generic.Mitglied
92.00%

AVG
MultiBundle.D, Dropper.Generic_c
90.00%

The domain cdn.shyapotato.us has been seen to resolve to the following 33 IP addresses.

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

November 16, 2013

 
Showing 30 of 33 IP Addresses

File downloads found at URLs served by cdn.shyapotato.us.

4 / 68      (PUP)
http://cdn.shyapotato.us/nsi/.../Mixed_Bundle_4636.exe  (26133b85ddd9c3a7ad5867dd791d82fa)

22 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../rockpl1_6669.exe  (94b2d0179fe51050642def144faf518d)

19 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../sayma_mirza_6696.exe  (76db3eb0ab28326a2a7c7dd8e9105415)

22 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../SBWin_3_RC2_4793.exe  (9385b82ca36022423a2c7d62cb3ef851)

16 / 68    (PUP)

22 / 68    (PUP)

18 / 68    (PUP)

21 / 68    (PUP)

17 / 68    (PUP)

18 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../Test07042011_2450.exe  (6b5c233e680866d73ffa0b176dfd96a8)

24 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../testing123_6099.exe  (66f1497804c3f0d7cdfa69e8496d098d)

21 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../ThomasCoBundle_5720.exe  (738083148d94b7bc66546d752c5568d3)

17 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../topview_mkv_266.exe  (b66a38309182e7b228ee4d321685ea0e)

18 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../TwitaMatic_5619.exe  (c627f561390a8b393834f09f45ba6bb6)

22 / 68    (PUP)

21 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../VAT_Calculator_5046.exe  (63b424b0feeac2e097e2586c91d30248)

21 / 68    (PUP)

18 / 68    (PUP)

18 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../WWTrans_5088.exe  (b8eac4e2d5c7cf590436c9df2be6ed8f)

17 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../isodownloader_5184.exe  (9695a2e666f49766b21bae5eaee1856e)

13 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../ttrans_4712.exe  (434b9f7d9aab1352782e0e98b80c7f91)

21 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../Ant_CoBundle_6498.exe  (69086df1104b7d5c48c94598b296bb79)

22 / 68    (PUP)

17 / 68    (PUP)

17 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../dubstep11d_6483.exe  (df33efc3c08fb4b7fc3d3a0961ffcec3)

21 / 68    (PUP)

22 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../JD_Extractor_6397.exe  (43c78a9f992c864ec10b4a5aae4a5bc2)

20 / 68    (PUP)

7 / 68      (PUP)
http://cdn.shyapotato.us/nsi/.../vsntctrl.exe  (a61a909100eb71cd360fc818c0eef5e7)

21 / 68    (PUP)
http://cdn.shyapotato.us/nsi/.../20120213_001_5415.exe  (85bcd9bd57a17423e09cbbe98e8716d0)

 
Latest 30 of 393 download URLs

The following 27 files have been seen to comunicate with cdn.shyapotato.us in live environments.

 
Latest 20 of 72 files

URL:
http://cdn.shyapotato.us/

Web server:
PWS/8.0.18

30 of 33 related domains