Server location:
Georgia, United States (US)
ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.,US
Scanner detections:
Detections (98% detected)
Scan engine
Details
Detections
Reason Heuristics
Adware.InstallMonetizer.VegaSqui.Installer.Meta (M), Adware.Downloader (M), Adware.InstallMonetizer.PvlPoint.Installer.Meta (M), Adware.Amonetize.RE (M), Adware.InstallMonetizer.Jyu3sgSJ.Installer.Meta (M), Adware.InstallMonetizer.ccsc7NT6.Installer.Meta (M), Adware.Amonetize (M), Adware.InstallMonetizer.Finful.Installer.Meta (M), Adware.InstallMonetizer.UtSCApc.Installer.Meta (M), Adware.InstallMonetizer.9JvswlFM.Installer.Meta (M), Adware.InstallMonetizer.Za8IxXq.Installer.Meta (M), Adware.InstallMonetizer.0fsN9MbC.Meta (M), PUP.InstallMonetize (M), Adware.InstallMonetizer.DncnNFg.Installer.Meta (M), Adware.InstallMonetizer.StarGrat.Installer.Meta (M), Adware.InstallMonetizer.jtkiF1J.Installer.Meta (M), Adware.InstallMonetizer.ywvHc7n.Installer.Meta (M), Adware.InstallMonetizer.GCM.Installer.Meta (M), Adware.InstallMonetizer.gdy9Cq3u.Installer.Meta (M), Adware.InstallMonetizer.juYPaUqs.Installer.Meta (M), Adware.InstallMonetizer.TR5azMc.Meta (M), Adware.InstallMonetizer (M)
67.35%
Norman
Gen:Variant.Razy.50351, Gen:Variant.Symmi.62687, Gen:Variant.Graftor.283750, Gen:Variant.Razy.28392, Gen:Variant.Razy.47255
36.73%
ESET NOD32
Win32/Amonetize.SX potentially unwanted application, Win32/Amonetize.RG potentially unwanted application, Win32/Amonetize.VW potentially unwanted application, Win32/Amonetize.QY potentially unwanted application, Win32/Amonetize.TS potentially unwanted application, Win32/Amonetize.VR potentially unwanted application, Win32/Amonetize.TI potentially unwanted application, Win32/Amonetize.SU potentially unwanted application, Win32/Amonetize.ON potentially unwanted application
34.69%
Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.Amonetize.53, Gen:Variant.Graftor.268151, Gen:Heur.ManBat, Gen:Variant.Razy.18984, Gen:Variant.Graftor.273566
18.37%
F-Secure
Variant.Razy.50351, Variant.Symmi.62687, Variant.Razy.46251, Heur.ManBat.1
14.29%
Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:Downloader.Win32.AdLoad
14.29%
avast!
Win32:Malware-gen, Win32:Evo-gen [Susp], Win32:Dropper-gen [Drp]
12.24%
McAfee
Program.PUP-RHEI
4.08%
Microsoft Security Essentials
Threat.Undefined
4.08%
The domain www.balatonserviceless.online has been seen to resolve to the following 2 IP addresses.
map2.hwcdn.net
June 26, 2016
File downloads found at URLs served by www.balatonserviceless.online.
Latest 30 of 606 download URLs