ws2.fb-hosting-apps.com

Fundacion Private Whois  (Proxy Registrant)

Domain Information

The domain ws2.fb-hosting-apps.com is registered by proxy through INTERNET.BS CORP. and was originally registered in January of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Remove Malware from ws2.fb-hosting-apps.com - Powered by Reason Core Security
Registrar:
INTERNET.BS CORP.

Server location:
New York, United States (US)

Create date:
Saturday, January 05, 2013

Expires date:
Monday, January 05, 2015

Updated date:
Thursday, December 05, 2013

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!85B4694F55DB
100.00%

Malwarebytes
PUP.Optional.Amonetize.A
100.00%

Trend Micro House Call
TROJ_GEN.F47V0416
100.00%

avast!
Win32:Amonetize-AK [PUP]
100.00%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize
100.00%

Dr.Web
Adware.Downware.2467
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Avira AntiVirus
ADWARE/Adware.Gen2
100.00%

McAfee Web Gateway
Artemis!85B4694F55DB
100.00%

Sophos
Amonetize
100.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
100.00%

Baidu Antivirus
Adware.Win32.Amonetize
100.00%

ESET NOD32
Win32/Amonetize.AJ (variant)
100.00%

Rising Antivirus
PE:Malware.Adware!6.17D8
100.00%

Fortinet FortiGate
Riskware/Amonetize
100.00%

The domain ws2.fb-hosting-apps.com has been seen to resolve to the following 2 IP addresses.

(CloudFlare)
May 30, 2014

(CloudFlare)
May 30, 2014

File downloads found at URLs served by ws2.fb-hosting-apps.com.

URL:
http://ws2.fb-hosting-apps.com/

Web server:
cloudflare-nginx (PHP/5.3.3)

Remove Malware from ws2.fb-hosting-apps.com - Powered by Reason Core Security