www.burstingdownload.com

Amonetize ltd.

Domain Information

The domain www.burstingdownload.com registered by null was initially registered in October of 2013 through Moniker Online Services. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform. The domain is associated with the publisher Amonetize ltd. who is located in Raanana, Alberta in Israel.
Registrar:
Moniker Online Services

Server location:
Virginia, United States (US)

Create date:
Thursday, October 31, 2013

Expires date:
Saturday, October 31, 2015

Updated date:
Monday, December 8, 2014

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Amonetize.AA (variant), Win32/Amonetize.AD (variant), Win32/Amonetize.AI (variant), Win32/Amonetize.AJ (variant), Win32/Amonetize.AG (variant)
92.00%

Trend Micro House Call
TROJ_GEN.F47V0102, TROJ_GEN.F47V0106, TROJ_GEN.F47V0109, TROJ_GEN.R0CBH07AB14, TROJ_GEN.F47V0113, TROJ_GEN.F47V0115, TROJ_GEN.F47V0116
80.00%

Dr.Web
Adware.Downware.1833, Adware.Downware.1655, Adware.Downware.1575, Adware.Downware.2250, Adware.Downware.2467, Adware.Downware.2453
80.00%

Sophos
Amonetize, Generic PUA CO, Generic PUA PI, Generic PUA MK, PUA 'Amonetize'
80.00%

VIPRE Antivirus
Amonetize, Trojan-Downloader.Win32.Agent, Trojan.Win32.Generic
76.00%

McAfee
Artemis!C3B43106B5F0, Artemis!13CE375DADC9, Artemis!61B0F21DCE77, Artemis!F00968514BFD, Adware-Amonetize!66CAD2BCA3B7, Adware-Amonetize!150291AC81A4, Adware-Amonetize!674A0FDDF9BB, Adware-Amonetize!D80DD1FDE124, Adware-Amonetize!A29868C4E22A, Adware-Amonetize!9468B3566BA3, Artemis!0B496C37A93A, Artemis!BA6290BEE079, Artemis!B66BAB089D91, Adware-Amonetize!97691C324FCE, Artemis!07386133B80B, Adware-Amonetize!B0D8CCD0ACBB
72.00%

Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize.A
72.00%

Reason Heuristics
PUP.Installer.Amonetizeltd.Y, PUP.Installer.Amonetizeltd.?, PUP.Installer.ShetefSolutionsConsulting1998.HH, PUP.Installer.Amonetizeltd.W, PUP.Installer.ShetefSolutionsConsulting1998.FF, PUP.Installer.Amonetizeltd.BB, PUP.Task.Amonetizeltd.c, PUP.Installer.Amonetizeltd.F
72.00%

Fortinet FortiGate
Riskware/Amonetize, Riskware/Agent, Adware/Amonetize
52.00%

Comodo Security
UnclassifiedMalware, ApplicUnwnt, TrojWare.Win32.Genome.xghr
44.00%

Avira AntiVirus
APPL/Amonetize.hsn.55, ADWARE/Adware.Gen2, TR/Trash.Gen
44.00%

AhnLab V3 Security
PUP/Win32.Amonetiz
44.00%

avast!
Win32:Amonetize-E [PUP], Win32:Dropper-gen [Drp], Win32:Amonetize-N [PUP], Win32:Amonetize-AM [PUP], Win32:Amonetize-AD [PUP]
40.00%

Kaspersky
not-a-virus:Downloader.Win32.Agent, not-a-virus:AdWare.Win32.Amonetize, not-a-virus:HEUR:AdWare.Win32.Amonetize
36.00%

Qihoo 360 Security
HEUR/Malware.QVM01.Gen, Trojan.Generic, Win32/Trojan.Adware.37e, Win32/Virus.Adware.932, HEUR/Malware.QVM10.Gen
28.00%

The domain www.burstingdownload.com has been seen to resolve to the following 14 IP addresses.

.
August 29, 2016

May 18, 2016

66-16.colo.sta.blacknight.ie
March 25, 2015

209.222.14.3.choopa.net
December 2, 2014

ec2-50-17-209-45.compute-1.amazonaws.com
May 30, 2014

ec2-50-17-206-16.compute-1.amazonaws.com
May 30, 2014

ec2-23-21-228-251.compute-1.amazonaws.com
May 30, 2014

ec2-107-20-210-63.compute-1.amazonaws.com
May 30, 2014

ec2-54-235-68-127.compute-1.amazonaws.com
April 11, 2014

ec2-107-21-115-114.compute-1.amazonaws.com
April 11, 2014

ec2-54-225-132-130.compute-1.amazonaws.com
March 14, 2014

ec2-54-225-181-84.compute-1.amazonaws.com
February 1, 2014

ec2-107-21-221-255.compute-1.amazonaws.com
January 28, 2014

ec2-23-23-96-46.compute-1.amazonaws.com
January 6, 2014

File downloads found at URLs served by www.burstingdownload.com.

10 / 68    (PUP)

 
Latest 30 of 51 download URLs

The following 23 files have been seen to comunicate with www.burstingdownload.com in live environments.

 
Latest 20 of 24 files

URL:
http://www.burstingdownload.com/

Title:
“burstingdownload.com - This website is for sale! - burstingdownload Resources and Information.”

Description:
“This website is for sale! burstingdownload.com is your first and best source for information about burstingdownload . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Apache (PHP/5.3.3-7+squeeze25)

30 of 30 related domains