Server location:
Virginia, United States (US)
 
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
 
Scanner detections:
Detections  (100% detected)
 
Scan engine
Details
Detections
 
Reason Heuristics
PUP.Installer.Injekt
100.00%
 
VIPRE Antivirus
Threat.4784449
100.00%
 
ESET NOD32
Win32/ExFriendAlert.B potentially unwanted application
100.00%
 
Dr.Web
Threat.Undefined
100.00%
 
Sophos
PUA 'OpenCandy'
100.00%
 
Malwarebytes
PUP.Optional.OpenCandy
100.00%
 
K7 AntiVirus
Trojan 
100.00%
 
avast!
Win32:BHO-AMO [PUP]
100.00%
 
NANO AntiVirus
Trojan.Win32.ExFriendAlert.deiobm
100.00%
 
G Data
Win32.Adware.OpenCandy
100.00%
 
Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
100.00%
 
Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
100.00%
 
IKARUS anti.virus
PUA.ExFriendAlert
100.00%
 
The domain dl.turnlightsoff.com has been seen to resolve to the following 8 IP addresses.
 
server-54-230-18-22.iad12.r.cloudfront.net
February 9, 2015
 
server-54-230-17-161.iad12.r.cloudfront.net
February 9, 2015
 
server-54-230-17-85.iad12.r.cloudfront.net
February 9, 2015
 
server-54-230-17-57.iad12.r.cloudfront.net
February 9, 2015
 
server-54-230-16-93.iad12.r.cloudfront.net
February 9, 2015
 
server-54-230-16-80.iad12.r.cloudfront.net
February 9, 2015
 
server-54-240-160-131.iad12.r.cloudfront.net
February 9, 2015
 
server-54-240-160-74.iad12.r.cloudfront.net
February 9, 2015
 
File downloads found at URLs served by dl.turnlightsoff.com.
 
The following file have been seen to comunicate with dl.turnlightsoff.com in live environments.