Server location:
Washington, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Adware.iStartSurf.ET (M), PUP.IStartSurf, Adware.Amonetize, Adware.Bundler, Adware.Downloader, Adware.IStartSurf, Adware.Vittalia, Adware.IStartSurf.Installer.Meta (M)
76.00%
ESET NOD32
Win32/IStartSurf.AP potentially unwanted application, Win32/IStartSurf.AQ potentially unwanted application, Win32/IStartSurf.AS potentially unwanted application, Win32/IStartSurf.AR potentially unwanted application, Win32/IStartSurf.AT potentially unwanted application
26.00%
avast!
Win32:Dropper-gen [Drp], Win32:Malware-gen, Win32:Trojan-gen, Win32:Parite
22.00%
VIPRE Antivirus
Threat.4150696
14.00%
Emsisoft Anti-Malware
Trojan.Dropper.YCI, Trojan.Agent.BTWS, Adware.IstartSurf.LNQ, Trojan.Agent.BUHN, Win32.Parite
10.00%
Norman
Gen:Trojan.Heur.UT.hyW@b8F5qvki, Win32.Parite.B
4.00%
F-Secure
Trojan.Agent.BUDV, Trojan.Agent.BUHN
4.00%
Kaspersky
Trojan.Win32.Yakes
2.00%
Microsoft Security Essentials
Threat.Undefined
2.00%
The domain get.wenter3.space has been seen to resolve to the following 49 IP addresses.
server-54-192-19-52.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-19.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-8.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-182.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-181.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-177.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-121.iad12.r.cloudfront.net
June 27, 2016
server-54-192-19-57.iad12.r.cloudfront.net
June 27, 2016
server-52-84-125-13.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-7.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-234.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-196.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-169.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-144.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-59.iad16.r.cloudfront.net
June 27, 2016
server-52-84-125-26.iad16.r.cloudfront.net
June 27, 2016
server-52-85-131-196.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-183.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-165.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-38.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-222.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-208.iad53.r.cloudfront.net
June 26, 2016
server-52-85-131-9.iad53.r.cloudfront.net
June 7, 2016
server-52-84-125-129.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-87.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-86.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-52.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-247.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-210.iad16.r.cloudfront.net
June 7, 2016
server-52-84-125-140.iad16.r.cloudfront.net
June 7, 2016
Showing 30 of 49 IP Addresses
File downloads found at URLs served by get.wenter3.space.
Latest 30 of 162 download URLs
The following 168 files have been seen to comunicate with get.wenter3.space in live environments.