download.aminst.net

Amonetize ltd.

Domain Information

The domain download.aminst.net registered by Jan Everno was initially registered in October of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network. The domain is associated with the publisher Amonetize ltd. who is located in Raanana, Israel.
Remove Malware from download.aminst.net - Powered by Reason Core Security
Registrar:
BETTERTHANAVERAGEDOMAINS.COM LLC

Server location:
Quebec, Canada (CA)

Create date:
Wednesday, October 15, 2014

Expires date:
Saturday, October 15, 2016

Updated date:
Friday, October 30, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Amonetizeltd.t, PUP.Installer.ShetefSolutionsConsulting1998.?, PUP.Installer.ShetefSolutionsConsulting1998.w, PUP.Installer.ShetefSolutionsConsulting1998.v, PUP.Installer.Amonetizeltd.i, PUP.Installer.Amonetizeltd.V, PUP.Installer.ShetefSolutionsConsulting1998.j, PUP.Installer.Amonetizeltd.T, PUP.Installer.ShetefSolutionsConsulting1998.p, PUP.Installer.Amonetizeltd.?, PUP.Installer.ShetefSolutionsConsulting1998.FF
100.00%

Malwarebytes
PUP.Optional.Amonetize.A, PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize.AS
100.00%

Avira AntiVirus
Adware/Amonetize.U.3, ADWARE/Adware.Gen2, Adware/Amonetize.Q.2
100.00%

ESET NOD32
Win32/Amonetize (variant), Win32/Amonetize.AA (variant)
100.00%

Dr.Web
Adware.Downware.1339, Adware.Downware.1575, Adware.Downware.1528
95.24%

Trend Micro House Call
TROJ_GEN.F47V0918, TROJ_GEN.F47V1205, TROJ_GEN.F47V1216, TROJ_GEN.F47V1211, TROJ_GEN.F47V1203, TROJ_GEN.F47V1125, TROJ_GEN.F47V1017
80.95%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
80.95%

VIPRE Antivirus
Amonetize, Conduit
76.19%

IKARUS anti.virus
not-a-virus:Downloader.Win32.Agent, Win32.Malware, AdWare.Amonetize
76.19%

McAfee
Artemis!DA55E3AC944E, Artemis!3492E93A345F, Artemis!17945562CC68, Artemis!CD1FFC3696D4, Artemis!A892424AD6E1, Artemis!D6A70215CAA9, Artemis!F00968514BFD, Artemis!9026520E9EF5
57.14%

McAfee Web Gateway
Artemis!DA55E3AC944E, Artemis!3492E93A345F, Artemis!CD1FFC3696D4, Artemis!A892424AD6E1, Artemis!D6A70215CAA9, Artemis!C74297554C5C
52.38%

Comodo Security
ApplicUnwnt
47.62%

Fortinet FortiGate
Riskware/Amonetize, W32/Amonetize.W, Adware/Fam.NB, Adware/Amonetize
47.62%

Sophos
Generic PUA EN, Amonetize, Generic PUA PI
47.62%

AhnLab V3 Security
PUP/Win32.Amonetiz
38.10%

The domain download.aminst.net has been seen to resolve to the following 16 IP addresses.

October 20, 2015

July 1, 2015

July 1, 2015

May 6, 2015

May 4, 2015

ns513839.ip-167-114-156.net
May 3, 2015

November 29, 2014

October 20, 2014

March 14, 2014

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
March 6, 2014

26-143-116-62.rev.customer-net.de
February 2, 2014

25-143-116-62.rev.customer-net.de
January 28, 2014

(CloudFlare)
January 17, 2014

(CloudFlare)
January 17, 2014

(CloudFlare)
December 18, 2013

(CloudFlare)
December 18, 2013

File downloads found at URLs served by download.aminst.net.

18 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Downloader&ti1=1320000&ti2=0&ti3=2013-12-31T20:19:06.411058 00:00  (driver_pack_solution_[repack_2013].iso__3039_i226908295_il165946.exe)

14 / 68    (Adware)

15 / 68    (Adware)
http://download.aminst.net/.../get.php?q=Breaking.Bad.S05E13.HDTV.x264-asap.mp4.flv&ti1=500000&ti2=0&ti3=2013-10-18T22:36:18.220227 00:00  (appdev windows phone 7 development using vs 2010 torrents__2789_i102287290_il4525297.exe)

14 / 68    (Adware)

14 / 68    (Adware)

26 / 68    (Adware)

14 / 68    (Adware)

11 / 68    (Adware)

13 / 68    (Adware)

16 / 68    (Adware)

12 / 68    (Adware)
http://download.aminst.net/.../get.php?q=artbeats Electric Arcs HD&ti1=700000&ti2=0&ti3=2013-11-07T09:19:32.797082 00:00  (artlantis studio 4.1.7 windows 64 bit 32 bit.rar__3039_i121833025_il3424769.exe)

 
Latest 30 of 355 download URLs

The following 11 files have been seen to comunicate with download.aminst.net in live environments.

URL:
http://download.aminst.net/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 30 related domains

Remove Malware from download.aminst.net - Powered by Reason Core Security