getb.2secondsfiles.org

OutBrowse

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
GoDaddy.com, LLC (R91-LROR)

Server location:
Virginia, United States (US)

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OUTBROWSE.G, PUP.OUTbrowse.?, PUP.OUTBROWSE.X, PUP.OUTBROWSE.m, PUP.OUTBROWSE.v
100.00%

VIPRE Antivirus
Threat.4784459, OutBrowse
100.00%

Dr.Web
Adware.Downware.2081, Trojan.Packed.28499
100.00%

Kaspersky
not-a-virus:AdWare.Win32.OutBrowse
100.00%

McAfee
Adware-OutBrowse.a, Adware-OutBrowse.b
100.00%

Malwarebytes
PUP.Optional.OutBrowse, PUP.Optional.Outbrowse
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Agnitum Outpost
PUA.OutBrowse, Trojan.Packed
100.00%

AVG
Generic
100.00%

Sophos
OutBrowse Revenyou
80.00%

Avira AntiVirus
APPL/Downloader.Gen, APPL/OutBrowse.lwasp
80.00%

G Data
Win32.Application.Outbrowse
80.00%

ESET NOD32
Win32/OutBrowse.AO, Win32/OutBrowse.AW, Win32/OutBrowse.AY
80.00%

IKARUS anti.virus
PUA.OutBrowse
40.00%

herdProtect (fuzzy)
a variant of 6122a148b175a7fa7b3d15a884b23dcdbc60b8ab, a variant of eab86a66d0ad423a3a91e29916c6726d9c521ffb
40.00%

The domain getb.2secondsfiles.org has been seen to resolve to the following IP address.

ec2-50-19-236-133.compute-1.amazonaws.com
October 9, 2014

File downloads found at URLs served by getb.2secondsfiles.org.

URL:
http://getb.2secondsfiles.org/

Google Analytics:
UA-40546980

Title:
“jewel quest”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Microsoft-IIS/7.0 (ASP.NET)