internet-explorer-11.joydownload.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain internet-explorer-11.joydownload.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Monday, March 18, 2013

Expires date:
Saturday, March 18, 2017

Updated date:
Thursday, January 28, 2016

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (73% detected)

Scan engine
Details
Detections

AVG
Generic, OpenCandy, Win32/Sality
100.00%

Dr.Web
Adware.Downware.6712, Adware.OpenCandy.55, Win32.Sector.30
100.00%

McAfee
Artemis!84F8B5E7FEAB, Artemis!65B4F98660A5, Artemis!72B2B762A514, Artemis!2A2CC871B2C2, Artemis!3A8DAB348098, Artemis!6F73A7CA2462
88.89%

Trend Micro House Call
Suspicious_GEN.F47V0722, Suspici.218D75EB, Suspicious_GEN.F47V1111
88.89%

Clam AntiVirus
BC.Heuristic.Trojan.SusPacked.BF-6.B, Win.Trojan.Agent-803351
88.89%

VIPRE Antivirus
Opencandy, Threat.4721115
88.89%

ESET NOD32
Win32/JoyDownloader
88.89%

IKARUS anti.virus
PUA.JoyDownloader
88.89%

Malwarebytes
PUP.Optional.OpenCandy
77.78%

Agnitum Outpost
Riskware.Agent
77.78%

avast!
Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:SaliCode
77.78%

Sophos
Generic PUA LG
77.78%

Reason Heuristics
PUP.InnovativeSystems.DD, PUP.InnovativeSystems.Y, PUP.InnovativeSystems.Installer (M)
77.78%

Avira AntiVirus
APPL/Downloader.Gen
66.67%

AhnLab V3 Security
Dropper/Opencandy.505336, PUP/Win32.OpenCandy
66.67%

The domain internet-explorer-11.joydownload.com has been seen to resolve to the following 10 IP addresses.

ec2-184-73-214-48.compute-1.amazonaws.com
September 18, 2016

ec2-54-243-203-164.compute-1.amazonaws.com
September 18, 2016

ec2-50-19-96-56.compute-1.amazonaws.com
January 6, 2016

ec2-54-225-168-223.compute-1.amazonaws.com
January 6, 2016

ec2-23-23-159-111.compute-1.amazonaws.com
February 11, 2015

ec2-23-21-241-197.compute-1.amazonaws.com
February 11, 2015

ec2-107-22-254-230.compute-1.amazonaws.com
November 2, 2014

ec2-184-73-244-120.compute-1.amazonaws.com
November 2, 2014

ec2-23-23-108-120.compute-1.amazonaws.com
August 27, 2014

ec2-107-22-195-231.compute-1.amazonaws.com
August 27, 2014

File downloads found at URLs served by internet-explorer-11.joydownload.com.

The following file have been seen to comunicate with internet-explorer-11.joydownload.com in live environments.

URL:
http://internet-explorer-11.joydownload.com/

Title:
“Internet Explorer - Download Internet Explorer 11.0 in english on JoyDownload”

Description:
“Internet Explorer is a free popular internet browser for Windows from Microsoft company - Download Internet Explorer latest version here.”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx/1.9.12 (PHP/5.3.10-1ubuntu3.21)

Facebook:
Likes:  7
Shares:  47

Statistics are for the previous month.