cds.s6m5m9d7.hwcdn.net

Crossrider Advanced Technologies Ltd.

Domain Information

The domain cds.s6m5m9d7.hwcdn.net registered by Highwinds Technologies was initially registered in June of 2007 through CSC CORPORATE DOMAINS, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Macon, Georgia within the United States which resides on the Highwinds Network Group, Inc. network. The domain is associated with the publisher Crossrider Advanced Technologies Ltd..
Registrar:
CSC CORPORATE DOMAINS, INC.

Server location:
Georgia, United States (US)

Create date:
Wednesday, June 20, 2007

Expires date:
Monday, June 20, 2016

Updated date:
Tuesday, September 2, 2014

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.,US

Root domain:

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.ShopperZ.GuotiIziamruckNi.Installer.Meta (M), Adware.ShopperZ.YmaucvIsokniudyIpo.Installer.Meta (M), Adware.ShopperZ.GapvGaxlidmipfiPe.Installer.Meta (M), Adware.ShopperZ.NeqHespamgippaFuil.Installer.Meta (M), Adware.ShopperZ.GhniYdiykdolzoFefj.Installer.Meta (M), Adware.ShopperZ.ChaXambojuejJu.Installer.Meta (M), Adware.ShopperZ.DosXylfopygyuJiw.Installer.Meta (M), Adware.ShopperZ.DonsJapyuojeLaln.Installer.Meta (M), Adware.ShopperZ.PimGalrobruizEfod.Installer.Meta (M), Adware.ShopperZ.KoalHiolteioixPadm.Installer.Meta (M), PUP.ShopperZ.PipBircolvustPyl.Installer.Meta (M), Adware.ShopperZ.EcasuheYkhgiwejhDo.Installer.Meta (M), Adware.ShopperZ.PaffoFumdittaLolb.Installer.Meta (M), Adware.ShopperZ.TefwhujVednuctuoifTuf.Installer.Meta (M), Adware.ShopperZ.EkoBemmomkuAmau.Installer.Meta (M), PUP.ShopperZ.Installer.Meta (M), Adware.ShopperZ.KizbypuM.Installer.Meta (M), Adware.ShopperZ.Installer.Meta (M), Trojan.Dropper.Installer.Meta (M), PUP.ShopperZ.Meta (M), PUP.ShopperZ.OuhasuGo.Installer.Meta (M), Adware.ShopperZ (M)
91.67%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696, Threat.5085622
14.58%

NANO AntiVirus
Riskware.Win32.PennyBee.dymvoh, Trojan.Win32.Lyrics.dynqbb, Riskware.Win32.PennyBee.dzapai
12.50%

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.255588, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481, Gen:Variant.Kazy.785603
12.50%

AhnLab V3 Security
PUP/Win32.Pennybee
12.50%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
12.50%

MicroWorld eScan
Gen:Variant.Adware.Graftor.255588, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481
10.42%

Bitdefender
Gen:Variant.Adware.Graftor.255588, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481
10.42%

ESET NOD32
Win32/TrojanDropper.Addrop, Win32/Adware.PennyBee.AG (variant)
10.42%

F-Secure
Gen:Variant.Adware.Graftor, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481
10.42%

G Data
Gen:Variant.Adware.Graftor.255588, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481
10.42%

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.255588, Gen:Variant.Zusy.168866, Gen:Variant.Zusy.171481
8.33%

Arcabit
Trojan.Adware.Graftor.D3E664, Trojan.Zusy.D28318, Trojan.Zusy.D29DD9
8.33%

AVG
Generic_r
8.33%

Malwarebytes
PUP.Optional.Komodia.WnskRST, PUP.Optional.PennyBee, Adware.PennyBee
8.33%

The domain cds.s6m5m9d7.hwcdn.net has been seen to resolve to the following 2 IP addresses.

map2.hwcdn.net
January 2, 2016

January 2, 2016

File downloads found at URLs served by cds.s6m5m9d7.hwcdn.net.

1 / 68      (PUP)

1 / 68      (PUP)

13 / 68    (PUP)
http://cds.s6m5m9d7.hwcdn.net/addon_brd/lsp/.../orion.exe  (0c9853ce116ad01c8bcdc05b49587288)

1 / 68      (PUP)

1 / 68      (PUP)
http://cds.s6m5m9d7.hwcdn.net/.../sprz.exe  (92f47d44184a3a36747bb2e67e9f1fc8)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://cds.s6m5m9d7.hwcdn.net/.../sprz.exe  (b1a6abd8be4c53d20c1be26a6f1c19c8)

1 / 68      (PUP)