www.harmonyhollow.net

Kyle Dusang

Domain Information

The domain www.harmonyhollow.net registered by Kyle Dusang was initially registered in May of 2000 through DNC HOLDINGS, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Salt Lake City, Utah within the United States which resides on the WEBSITEWELCOME.COM network.
Registrar:
DNC HOLDINGS, INC.

Server location:
Utah, United States (US)

Create date:
Wednesday, May 31, 2000

Expires date:
Tuesday, May 31, 2016

Updated date:
Wednesday, June 3, 2015

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (76% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Somoto, Win32/DownloadAdmin, Win32/Toolbar.Conduit.AE, Win32/DownloadAdmin (variant), Win32/OpenCandy potentially unsafe
80.00%

Reason Heuristics
PUP.Somoto.Bundle, PUP.CodeTechno.G, PUP.ClientConnect.J, PUP.Tightrope.Bundler, PUP.InstallCore.RE11 (M), PUP.OpenCandy.Installer (L)
80.00%

Dr.Web
Adware.Downware.2220, Adware.Conduit.87, Adware.DAdmin.151, Adware.Conduit.33, Adware.OpenCandy.152, Adware.Conduit.300
60.00%

AVG
Generic, Luhe.Malum.A, OpenCandy
46.67%

NANO AntiVirus
Riskware.Win32.Downware.crgjbr, Riskware.Win32.Downware.djahkt, Trojan.Win32.Toolbar.deinxo, Riskware.Win32.OpenCandy.dsocau
40.00%

Baidu Antivirus
Adware.Win32.Somoto, Adware.Win32.Conduit, Adware.Win32.DownloadAdmin
33.33%

VIPRE Antivirus
DownloadAdmin, Trojan.Win32.Generic
33.33%

Avira AntiVirus
ADWARE/Adware.Gen, PUA/OpenCandy.Gen
33.33%

G Data
Win32.Application.DownloadAdmin, Win32.Application.OpenCandy, Win32.Adware.Conduit
33.33%

Trend Micro House Call
TROJ_GEN.F47V0531, Suspicious_GEN.F47V0701, Suspicious_GEN.F47V0715, Suspicious_GEN.F47V1113
26.67%

F-Secure
Adware:W32/WebInstallBundle
26.67%

Fortinet FortiGate
Riskware/DownloadAdmin, Riskware/Agent
26.67%

IKARUS anti.virus
PUA.Toolbar.Conduit, Trojan.Dropper, Win32.SuspectCrc
20.00%

Malwarebytes
PUP.Optional.DownloadAdmin
20.00%

Agnitum Outpost
Riskware.Agent
20.00%

The domain www.harmonyhollow.net has been seen to resolve to the following IP address.

har.harmonyhollow.net
April 29, 2014

File downloads found at URLs served by www.harmonyhollow.net.

3 / 68      (PUP)
http://www.harmonyhollow.net/.../ctimer.exe  (fe2a2bf5b373b53d79ab323c9d19a0a0)

14 / 68    (PUP)
http://www.harmonyhollow.net/.../ctimer.exe  (77fccd2577e4cf2d7364bef24d3783b5)

0 / 68
http://www.harmonyhollow.net/.../ainjectr.exe  (7e2661cc224ed03299d27ce595c32aca)

9 / 68      (PUP)
http://www.harmonyhollow.net/.../giftwiz.exe  (52512222daf0e905597e373e1f21943f)

0 / 68
http://www.harmonyhollow.net/.../thehat.exe  (bccc6c7377ce2685392c59b77cd793bb)

0 / 68
http://www.harmonyhollow.net/.../thehat.exe  (d8c89c8a57ca2b77471f333b84c03076)

3 / 68      (PUP)
http://www.harmonyhollow.net/.../screenhl.exe  (1c7207d9352b0762c01c288880fb174f)

8 / 68      (PUP)
http://www.harmonyhollow.net/.../ainjectr.exe  (8d046eaecd2b18805777b54f7b9f22b7)

3 / 68      (PUP)
http://www.harmonyhollow.net/.../ainjectr.exe  (7cc40e26406f9db4d007b36617b731ed)

4 / 68      (PUP)
http://www.harmonyhollow.net/.../thehat.exe  (19773e2d9cede357a40b76b1fc6f256d)

22 / 68    (Adware)
http://www.harmonyhollow.net/.../ainjectr.exe  (c346de6a794ab153c1acf7bd1667190c)

12 / 68    (PUP)
http://www.harmonyhollow.net/.../ctimer.exe  (5b8df547b01cf95b47a62dde9dd6a1aa)

12 / 68    (Adware)
http://www.harmonyhollow.net/.../ctimer.exe  (554ac0a9418aa51ce76802299995e40e)

9 / 68      (PUP)
http://www.harmonyhollow.net/.../ctimer.exe  (92c55b981598d98753aec84599393598)

8 / 68      (Adware)
http://www.harmonyhollow.net/.../ctimer.exe  (d2555709c00385584122c42c2be576d3)

1 / 68
http://www.harmonyhollow.net/.../ctimer.exe  (3d2ab44ce1c62a4f6189d1231efa5665)

3 / 68      (PUP)
http://www.harmonyhollow.net/.../ctimer.exe  (5698b01d18df22873f3b76a8a2bb6061)

URL:
http://www.harmonyhollow.net/

Google Analytics:
UA-2012633

Title:
“Harmony Hollow Software”

Description:
“Developers of unique and useful freeware and shareware Windows downloads for teachers, webmasters, parents, and all other everyday computer users.”

Web server:
Apache (PleskLin)

Facebook:
Likes:  89
Shares:  487
Comments:  45

Statistics are for the previous month.