get.sdfjow3f.xyz

Domain Information

Server location:
Virginia, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.C4DLMedia (M), Threat.Win.Reputation.IMP, PUP.C4DLMedia.Installer (M), PUP.C4DLMedi (M)
97.44%

Kaspersky
not-a-virus:AdWare.Win32.Agent
10.26%

F-Secure
Application:W32/Generic.70053c248f!Online, Variant.Application.LoadMoney
5.13%

Emsisoft Anti-Malware
Gen:Variant.Application.LoadMoney.78
5.13%

Norman
Gen:Variant.Application.LoadMoney.78
5.13%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.56%

VIPRE Antivirus
Threat.4725471
2.56%

Lavasoft Ad-Aware
Gen:Variant.Application.LoadMoney.78
2.56%

The domain get.sdfjow3f.xyz has been seen to resolve to the following 86 IP addresses.

server-52-85-131-220.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-124.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-114.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-109.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-14.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-241.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-235.iad53.r.cloudfront.net
May 21, 2016

server-52-85-131-226.iad53.r.cloudfront.net
April 17, 2016

server-52-85-131-191.iad53.r.cloudfront.net
April 17, 2016

server-52-85-131-98.iad53.r.cloudfront.net
April 17, 2016

server-52-85-131-37.iad53.r.cloudfront.net
April 17, 2016

server-52-85-131-36.iad53.r.cloudfront.net
April 17, 2016

server-54-230-102-66.iad2.r.cloudfront.net
April 14, 2016

server-54-230-102-55.iad2.r.cloudfront.net
April 14, 2016

server-54-230-102-210.iad2.r.cloudfront.net
April 11, 2016

server-54-230-102-198.iad2.r.cloudfront.net
April 11, 2016

server-54-230-102-190.iad2.r.cloudfront.net
April 11, 2016

server-54-230-102-74.iad2.r.cloudfront.net
April 11, 2016

server-54-230-102-60.iad2.r.cloudfront.net
April 11, 2016

server-54-230-102-22.iad2.r.cloudfront.net
April 11, 2016

server-52-85-131-74.iad53.r.cloudfront.net
April 9, 2016

server-52-85-131-38.iad53.r.cloudfront.net
April 9, 2016

server-52-85-131-20.iad53.r.cloudfront.net
April 9, 2016

server-52-85-131-230.iad53.r.cloudfront.net
April 9, 2016

server-52-85-131-182.iad53.r.cloudfront.net
April 9, 2016

server-52-85-142-198.iad12.r.cloudfront.net
April 6, 2016

server-52-85-142-197.iad12.r.cloudfront.net
April 6, 2016

server-52-85-142-190.iad12.r.cloudfront.net
April 6, 2016

server-52-85-142-113.iad12.r.cloudfront.net
April 6, 2016

server-52-85-142-104.iad12.r.cloudfront.net
April 6, 2016

 
Showing 30 of 86 IP Addresses

File downloads found at URLs served by get.sdfjow3f.xyz.

1 / 68      (PUP)

1 / 68      (PUP)
http://get.sdfjow3f.xyz/get.php?ses=9DFC7635-9682-46C7-90BD-465A9F99FC0D  (boat trip.este.barco.es.un.peligro[dvdrip][spanish].exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://get.sdfjow3f.xyz/get.php?ses=0DC581A5-ABA8-4E47-B4CD-48A001C8B617  (va - hypnotic presents maximes ministry of bounce_ april 2008 (4.exe)

2 / 68      (false positives)

1 / 68      (PUP)
http://get.sdfjow3f.xyz/get.php?ses=D1070B16-F002-419D-B3CD-00DFDD7D0278  (dos hombres y un destino.(paul newman).(dvdrip.divx.spanish)..exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://get.sdfjow3f.xyz/get.php?ses=19B231B8-F7E4-4ADE-ACBF-B0DD88B1C6A3  (sleeping dogs_ definitive edition {update 1} repac.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

 
Latest 30 of 39 download URLs

The following 22 files have been seen to comunicate with get.sdfjow3f.xyz in live environments.

 
Latest 20 of 54 files