j.mp

Domain Information

Server location:
New York, United States (US)

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/InstallIQ (variant), Win32/Amonetize.AJ (variant), Win32/Amonetize.BI (variant), Win32/Amonetize.BK (variant), Win32/Amonetize.BN (variant)
100.00%

avast!
Win32:PUP-gen [PUP], Win32:Amonetize-AO [PUP], Win32:Amonetize-CL [PUP], Win32:Amonetize-CV [PUP], Win32:Evo-gen [Susp]
88.89%

McAfee Web Gateway
Artemis!C8F1EB982D37, Artemis!54F271D88CCB, Heuristic.BehavesLike.Win32.Suspicious-BAY.K, Artemis!FCD06B70229D, Artemis!4169BBD9F752
88.89%

McAfee
Artemis!C8F1EB982D37, Artemis!54F271D88CCB, Artemis!5302E6FFC138, Artemis!FCD06B70229D, Artemis!4169BBD9F752, PUP-Amonetize
77.78%

Malwarebytes
PUP.Optional.SafeInstall.A, PUP.Optional.Amonetize.A, PUP.Optional.Downloader
77.78%

Dr.Web
Adware.Searcher.2593, Adware.Downware.2467, Adware.InstallIQ.2, Adware.Downware.5913, Adware.Downware.6926, Adware.Downware.8379
77.78%

Reason Heuristics
PUP.Installer.SecureInstall.K, PUP.Installer.Amonetizeltd.F, PUP.Installer.KOMPANIYAR.FF, PUP.Installer.Wilmaonline.o, PUP.Installer.Wilmaonline.
77.78%

Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:AdWare.Win32.Amonetize, UDS:DangerousObject.Multi.Generic
77.78%

AVG
Generic_r, MultiBundle, Downloader.MSIL
77.78%

Avira AntiVirus
APPL/InstallQ.oler, ADWARE/Adware.Gen2, APPL/Amonetize.htzv, TR/Dldr.Kivat.B.7
77.78%

G Data
Win32.Application.InstallIQ, Application.Bundler.Amonetize, Gen:Variant.Application.Bundler.Amonetize.11, Gen:Variant.MSIL.Krypt.32
77.78%

Sophos
DomainIQ pay-per install, Amonetize, Generic PUA OJ, Mal/Generic-S
66.67%

VIPRE Antivirus
InstallIQ Installer, Amonetize, Trojan.Win32.Generic
66.67%

Panda Antivirus
Trj/CI.A, Trj/Genetic.gen
66.67%

Antiy Labs AVL
Trojan/Win32.TSGeneric, GrayWare[AdWare:not-a-virus]/Win32.Amonetize
66.67%

The domain j.mp has been seen to resolve to the following 2 IP addresses.

May 1, 2014

May 1, 2014

File downloads found at URLs served by j.mp.

33 / 68    (Malware)
https://j.mp/facevideos  (facebook-video.exe)

11 / 68    (PUP)
http://j.mp/image_20061  (image_100915.exe)

22 / 68    (Adware)
http://j.mp/1mjIh3N  (windowsupdatekb12695__4914_il77.exe)

0 / 68
http://j.mp/SceiLA  (dotNetFx45_Full_setup.exe)

17 / 68    (Adware)
http://j.mp/1pOBz6n  (your uninstaller pro 7.5.2014.03 tã¼rkã§e full tam indir__6666_i1251263029_il83331.exe)

17 / 68    (Adware)
http://j.mp/icloud-activation-tool  (your uninstaller pro 7.5.2014.03 tã¼rkã§e full tam indir__6666_i1251263029_il83331.exe)

27 / 68    (Adware)
http://j.mp/1c2oADc  (vioplayerv.exe)

28 / 68    (Adware)
http://j.mp/1c2oADc  (vioplayerv.exe)

16 / 68    (Adware)
http://j.mp/RobocraftHack  (sims 3 game installer__5160_i1143379549_il2496.exe)

27 / 68    (Adware)
http://j.mp/1c2oADc  (vioplayerv.exe)

14 / 68    (Adware)
http://j.mp/PcZpK1  (setup.exe)