download.aminst.net

Amonetize ltd.

Domain Information

The domain download.aminst.net registered by Jan Everno was initially registered in October of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network. The domain is associated with the publisher Amonetize ltd. who is located in Raanana, Alberta in Israel.
Registrar:
BETTERTHANAVERAGEDOMAINS.COM LLC

Server location:
Quebec, Canada (CA)

Create date:
Wednesday, October 15, 2014

Expires date:
Saturday, October 15, 2016

Updated date:
Friday, October 30, 2015

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ShetefSolutionsConsulting1998.?, PUP.Installer.Amonetizeltd.i, PUP.Installer.Amonetizeltd.V, PUP.Installer.ShetefSolutionsConsulting1998., PUP.Installer.ShetefSolutionsConsulting1998.j, PUP.Installer.ShetefSolutionsConsulting1998.x, PUP.Installer.Amonetizeltd.T, PUP.Installer.ShetefSolutionsConsulting1998.p, PUP.Installer.Amonetizeltd.?, PUP.Installer.ShetefSolutionsConsulting1998.l, PUP.Amonetize (M)
96.00%

Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize.A, PUP.Optional.Amonetize.AS, PUP.Optional.Monetizer
92.00%

ESET NOD32
Win32/Amonetize (variant), Win32/Amonetize.AA (variant), Win32/Amonetize.S potentially unwanted (variant)
92.00%

Avira AntiVirus
ADWARE/Adware.Gen2, Adware/Amonetize.Q.2
84.00%

Dr.Web
Adware.Downware.1575, Adware.Downware.1528
80.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
76.00%

Trend Micro House Call
TROJ_GEN.F47V1205, TROJ_GEN.F47V1214, TROJ_GEN.F47V1222, TROJ_GEN.F47V1125, TROJ_GEN.F47V1017, TROJ_GEN.F47V1217, TROJ_GEN.F47V1011
64.00%

IKARUS anti.virus
not-a-virus:Downloader.Win32.Agent, Win32.Malware, AdWare.Amonetize
60.00%

VIPRE Antivirus
Amonetize, Conduit
60.00%

McAfee
Artemis!53597284E965, Artemis!17945562CC68, Artemis!311F3AB701D4, Artemis!D770A95564A8, Artemis!CD1FFC3696D4, Artemis!A892424AD6E1, Artemis!9026520E9EF5, Artemis!2A82B348D96C, Artemis!F12182204DF9
56.00%

Fortinet FortiGate
Riskware/Amonetize, W32/Amonetize.W, Adware/Fam.NB, Riskware/Agent
48.00%

McAfee Web Gateway
Artemis!53597284E965, Artemis!311F3AB701D4, Artemis!D770A95564A8, Artemis!CD1FFC3696D4, Artemis!A892424AD6E1, Artemis!D6A70215CAA9
48.00%

avast!
Win32:Dropper-gen [Drp], Win32:Amonetize-E [PUP], Win32:Rootkit-gen [Rtk], Win32:Malware-gen, Win32:Amonetize-Q [PUP], Win32:PUP-gen [PUP]
40.00%

Comodo Security
ApplicUnwnt
40.00%

AhnLab V3 Security
PUP/Win32.Amonetiz
32.00%

The domain download.aminst.net has been seen to resolve to the following 16 IP addresses.

October 20, 2015

July 1, 2015

July 1, 2015

May 6, 2015

May 4, 2015

ns513839.ip-167-114-156.net
May 3, 2015

November 29, 2014

October 20, 2014

March 14, 2014

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
March 6, 2014

26-143-116-62.rev.customer-net.de
February 2, 2014

25-143-116-62.rev.customer-net.de
January 28, 2014

(CloudFlare)
January 17, 2014

(CloudFlare)
January 17, 2014

(CloudFlare)
December 18, 2013

(CloudFlare)
December 18, 2013

File downloads found at URLs served by download.aminst.net.

18 / 68    (Adware)

1 / 68      (Adware)

14 / 68    (Adware)
http://download.aminst.net/.../get.php?q=chloe turn it.mp3&ti1=1135000&ti2=1&ti3=2013-12-02T07:35:42.657300 00:00  (gladaitor1 jsc sport full hd by sat s.com.rar__3516_i161892186_il5029388.exe)

9 / 68      (Adware)
http://download.aminst.net/.../get.php?q=karaokekanta 7 0 crack full taringa&ti1=700000&ti2=0&ti3=2013-12-07T14:48:52.253127 00:00  (van wilder freshman year.2009.dvdrip.ur.xvid 1337x noir.avi.mp4__3039_i178044569_il7547462.exe)

10 / 68    (Adware)

12 / 68    (Adware)

16 / 68    (Adware)

18 / 68    (Adware)

14 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Asap Rocky Goin Back To Cali&ti1=940000&ti2=0&ti3=2013-11-22T01:31:00.714513 00:00  (eset nod32 antivirus 6 clé activation license 2013.rar__3515_i141505014_il1093614.exe)

9 / 68      (Adware)
http://download.aminst.net/.../get.php?q=kid_pix_studio_deluxe_free&ti1=1240000&ti2=0&ti3=2013-12-06T09:43:41.431408 00:00  (van wilder freshman year.2009.dvdrip.ur.xvid 1337x noir.avi.mp4__3039_i178044569_il7547462.exe)

15 / 68    (Adware)
http://download.aminst.net/.../get.php?q=the_hills_season_3_episode_10_7b748.avi.flv&ti1=500000&ti2=0&ti3=2013-10-18T20:13:31.436112 00:00  (appdev windows phone 7 development using vs 2010 torrents__2789_i102287290_il4525297.exe)

14 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Insidious&ti1=1075000&ti2=0&ti3=2013-11-23T17:50:54.809472 00:00  (eset nod32 antivirus 6 clé activation license 2013.rar__3515_i141505014_il1093614.exe)

14 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Elysium&ti1=1075000&ti2=0&ti3=2013-11-25T21:03:29.277755 00:00  (gladaitor1 jsc sport full hd by sat s.com.rar__3516_i161892186_il5029388.exe)

9 / 68      (Adware)
http://download.aminst.net/.../get.php?q=carrie la vengeance cpasbien&ti1=700000&ti2=2&ti3=2013-12-06T23:52:48.824473 00:00  (van wilder freshman year.2009.dvdrip.ur.xvid 1337x noir.avi.mp4__3039_i178044569_il7547462.exe)

24 / 68    (Adware)
http://download.aminst.net/.../get.php?q=_The_Internship.flv.flv&ti1=500000&ti2=0&ti3=2013-10-23T18:55:11.317592 00:00  (project.x.extended.german.ac3.bdrip.xvid sons.avi.flv__3516_i104707738_il5205280.exe)

12 / 68    (Adware)

14 / 68    (Adware)

14 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Crazy Tonight (feat. Clare Bowen).mp3&ti1=1135000&ti2=0&ti3=2013-11-24T04:14:33.818532 00:00  (eset nod32 antivirus 6 clé activation license 2013.rar__3515_i141505014_il1093614.exe)

14 / 68    (Adware)

14 / 68    (Adware)

 
Latest 30 of 403 download URLs

The following 249 files have been seen to comunicate with download.aminst.net in live environments.

 
Latest 20 of 263 files

URL:
http://download.aminst.net/

Title:
“aminst.net -&nbspThis website is for sale! -&nbspaminst Resources and Information.”

Title (12/18/2013):
“aminst.net”

Title (11/29/2014):
“aminst.net - This website is for sale! - aminst Resources and Information.”

Description:
“This”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

30 of 30 related domains