Server location:
Washington, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
ESET NOD32
Win32/IStartSurf.C potentially unwanted application
100.00%
Microsoft Security Essentials
Threat.Undefined
100.00%
Kaspersky
Trojan-Downloader.Win32.Small, not-a-virus:AdWare.Win32.StartSurf
100.00%
Norman
Trojan.Generic.15502117, Trojan.Generic.15586127, Gen:Application.Heur.gu6@HDGxfzni, Gen:Application.Heur.gu6@H52PaGai
100.00%
Emsisoft Anti-Malware
Trojan.Generic.15502117, Gen:Application.Heur.gu6@HDGxfzni, Gen:Application.Heur.gu6@H52PaGai, Trojan.Generic.15586127
80.00%
AVG
Adware BundleApp_r.BC
80.00%
Reason Heuristics
Adware.Bundler (M)
80.00%
McAfee
Trojan.Trojan-FHMF!DC87943DD130, Trojan.Trojan-FHMF!F669771D44D0, Trojan.Trojan-FHMF!FCEE4507D957, Trojan.Trojan-FHMF!7A8AAC0ED27A
80.00%
Dr.Web
Detection.Undefined
60.00%
VIPRE Antivirus
Threat.4150696
60.00%
F-Secure
Trojan.Generic.15502117
20.00%
The domain get.skdfw8hfjskdf.xyz has been seen to resolve to the following 37 IP addresses.
server-52-84-125-91.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-31.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-24.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-13.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-12.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-250.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-226.iad16.r.cloudfront.net
July 21, 2016
server-52-84-125-190.iad16.r.cloudfront.net
July 21, 2016
server-52-85-131-165.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-38.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-222.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-208.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-196.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-183.iad53.r.cloudfront.net
July 6, 2016
server-52-85-131-214.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-181.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-170.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-148.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-102.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-23.iad53.r.cloudfront.net
May 21, 2016
server-52-85-131-21.iad53.r.cloudfront.net
May 21, 2016
server-54-230-102-173.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-122.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-112.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-101.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-31.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-5.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-248.iad2.r.cloudfront.net
April 14, 2016
server-54-230-102-237.iad2.r.cloudfront.net
April 14, 2016
server-52-85-131-66.iad53.r.cloudfront.net
April 13, 2016
Showing 30 of 37 IP Addresses
File downloads found at URLs served by get.skdfw8hfjskdf.xyz.
The following 14 files have been seen to comunicate with get.skdfw8hfjskdf.xyz in live environments.