cds.d5v5w7m8.hwcdn.net

Crossrider Advanced Technologies Ltd.

Domain Information

The domain cds.d5v5w7m8.hwcdn.net registered by Highwinds Technologies was initially registered in June of 2007 through CSC CORPORATE DOMAINS, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Macon, Georgia within the United States which resides on the Highwinds Network Group, Inc. network. The domain is associated with the publisher Crossrider Advanced Technologies Ltd..
Registrar:
CSC CORPORATE DOMAINS, INC.

Server location:
Georgia, United States (US)

Create date:
Wednesday, June 20, 2007

Expires date:
Monday, June 20, 2016

Updated date:
Tuesday, September 2, 2014

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Amonitize.Task.Meta (M)
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.Amonetize.34, Gen:Variant.Zusy.145808, Gen:Variant.Application.Bundler.Amonetize.36
88.89%

Malwarebytes
PUP.Optional.Amonetize.A
88.89%

Bitdefender
Gen:Variant.Application.Bundler.Amonetize.34, Gen:Variant.Zusy.145808, Gen:Variant.Application.Bundler.Amonetize.36
88.89%

Arcabit
Trojan.Application.Bundler.Amonetize.34, Trojan.Zusy.D23990, Trojan.Application.Bundler.Amonetize.36
88.89%

G Data
Gen:Variant.Application.Bundler.Amonetize.34, Gen:Variant.Zusy.145808, Gen:Variant.Application.Bundler.Amonetize.36
88.89%

Baidu Antivirus
PUA.Win32.Amonetize, Adware.Win32.Amonetize
88.89%

avast!
Win32:Malware-gen, Win32:Amonetize-KC [PUP]
88.89%

AhnLab V3 Security
PUP/Win32.Amonetize
77.78%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.Amonetize.34, Gen:Variant.Zusy.145808, Gen:Variant.Application.Bundler.Amonetize.36
77.78%

Norman
Gen:Variant.Application.Bundler.Amonetize.34, Gen:Variant.Zusy.145808, Gen:Variant.Application.Bundler.Amonetize.36
77.78%

Kaspersky
HEUR:Trojan.Win32.Generic
77.78%

Avira AntiVirus
TR/Trash.Gen, ADWARE/Amonetize.Gen7
77.78%

Panda Antivirus
Trj/Genetic.gen
77.78%

ESET NOD32
Win32/Amonetize.GD.gen potentially unwanted (variant), Win32/Amonetize.ER potentially unwanted (variant)
55.56%

The domain cds.d5v5w7m8.hwcdn.net has been seen to resolve to the following 2 IP addresses.

February 3, 2016

map2.hwcdn.net
February 3, 2016

File downloads found at URLs served by cds.d5v5w7m8.hwcdn.net.

1 / 68      (Malware)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (382414d5441f5622d6c06c1dd9a42d32)

16 / 68    (PUP)

16 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (544427230593e20f9f7cc4ab065b0cd5)

17 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (47396390a97ea4cfacb104dbe93f0b49)

19 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (ccabf5cd04ad315b2d67cdb78169c2c8)

17 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (a9e2704e068a80ab7b0e38a94cc2ce0b)

16 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (6c92220e7db9b6f1b5f9adf5b435a36a)

18 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (${comp_updater_file_name})

18 / 68    (PUP)
http://cds.d5v5w7m8.hwcdn.net/Updater.exe  (${comp_updater_file_name})