www.generaldownload.com

null

Domain Information

The domain www.generaldownload.com registered by null was initially registered in February of 2014 through Moniker Online Services. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Remove Malware from www.generaldownload.com - Powered by Reason Core Security
Registrar:
Moniker Online Services

Server location:
Virginia, United States (US)

Create date:
Tuesday, February 11, 2014

Expires date:
Saturday, February 11, 2017

Updated date:
Sunday, January 31, 2016

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Installer.KOMPANIYAR., PUP.Installer.TEHSNABSTROY.d, PUP.Installer.TEHSNABSTROY.i, PUP.Installer.KOMPANIYAR.e, PUP.Installer.TEHSNABSTROY.c, PUP.Amonetize.TEHSNABSTROY.Bundler (M)
100.00%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
97.67%

ESET NOD32
Win32/Amonetize.AS (variant), Win32/Amonetize.AW (variant), Win32/Amonetize.BF.gen (variant), Win32/Amonetize.BG (variant)
95.35%

AVG
Generic_r, BundleApp_r.R, Toolbar
90.70%

Malwarebytes
PUP.Optional.Amonetize, PUP.Optional.Downloader
86.05%

Baidu Antivirus
Adware.Win32.Amonetize, Adware.Win32.Agent, Adware.Win32.Dropper
79.07%

G Data
Trojan.Generic.11325978, Application.Bundler.Amonetize, Gen:Variant.Application.Bundler.Amonetize, Gen:Variant.Adware.Graftor.146078
76.74%

Avira AntiVirus
W32/Sality.AT, ADWARE/Adware.Gen2, Adware/Graftor.146078.139, APPL/Amonetize.Z, APPL/Amonetize.htzw, APPL/Amonetize.htzv
74.42%

Dr.Web
Win32.Sector.21, Adware.Downware.3925, Adware.Downware.5546, Adware.Downware.5717, Adware.Downware.5913, Adware.Downware.6836
72.09%

NANO AntiVirus
Riskware.Win32.Downware.cyusqp, Riskware.Win32.Amonetize.dazvtx, Riskware.Win32.Downware.dbbsii, Riskware.Win32.Downware.daymkg
72.09%

F-Secure
Trojan.Generic.11325978, Application.Bundler.Amonetize, Gen:Variant.Application.Bundler, Trojan.GenericKD.1754190
72.09%

Lavasoft Ad-Aware
Trojan.Generic.11325978, Application.Bundler.Amonetize.K, Application.Bundler.Amonetize.L, Gen:Variant.Application.Bundler.Amonetize.8
69.77%

McAfee
PUP-FBM!119D25B4A1D1, RDN/Generic PUP.x!cdx, PUP-FBM!09697D1F5E2D, Artemis!F8699D1A4970, Artemis!D1D3FCFB22BB, Artemis!C119EA5AE655, Artemis!A8A8E445C438, PUP-Amonetize, RDN/Generic PUP.x!cmb
67.44%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:AdWare.Win32.Amonetize
67.44%

MicroWorld eScan
Trojan.Generic.11325978, Application.Bundler.Amonetize.K, Application.Bundler.Amonetize.L, Gen:Variant.Application.Bundler.Amonetize.8, Gen:Variant.Adware.Graftor.146078, Application.Bundler.Amonetize.N, Gen:Variant.Application.Bundler.Amonetize.11, Gen:Variant.Application.Bundler.Amonetize.12
67.44%

The domain www.generaldownload.com has been seen to resolve to the following 7 IP addresses.

December 23, 2015

October 29, 2015

May 3, 2015

63-156-206-202.dia.static.qwest.net
March 7, 2015

ec2-54-243-123-240.compute-1.amazonaws.com
February 1, 2015

ec2-184-72-224-116.compute-1.amazonaws.com
September 15, 2014

ec2-50-17-240-123.compute-1.amazonaws.com
May 23, 2014

File downloads found at URLs served by www.generaldownload.com.

 
Latest 30 of 636 download URLs

The following file have been seen to comunicate with www.generaldownload.com in live environments.

URL:
http://www.generaldownload.com/

Title:
“generaldownload.com - generaldownload Resources and Information.”

Description:
“generaldownload.com is your first and best source for information about generaldownload . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx

Remove Malware from www.generaldownload.com - Powered by Reason Core Security