www.intactdownload.com

Amonetize ltd.

Domain Information

The domain www.intactdownload.com registered by Corp New Ventures Services was initially registered in October of 2014 through Moniker Online Services. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Sankt Ingbert, Saarland within Germany which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Amonetize ltd. who is located in Raanana, Israel.
Remove Malware from www.intactdownload.com - Powered by Reason Core Security
Registrar:
SANTIAMDOMAINS.COM LLC

Server location:
Saarland, Germany (DE)

Create date:
Sunday, October 19, 2014

Expires date:
Monday, October 19, 2015

Updated date:
Monday, October 27, 2014

ASN:
AS196763 KEY-SYSTEMS-AS Key-Systems GmbH,DE

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Dr.Web
Win32.Sector.21, Adware.Downware.1655, Adware.Downware.1528, Adware.Downware.1575, Adware.Downware.1339, Adware.Downware.1833
96.55%

Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize, PUP.Optional.Amonetize.A
96.55%

ESET NOD32
Win32/Amonetize (variant), Win32/Amonetize.AA (variant), Win32/Amonetize.AD (variant), Win32/Amonetize.AJ (variant)
96.55%

Reason Heuristics
PUP.Installer.Amonetizeltd.EE, PUP.Installer.Amonetizeltd.P, PUP.Installer.Amonetizeltd.Z, PUP.Installer.Amonetizeltd.Y, PUP.Task.ShetefSolutionsConsulting1998.a, PUP.Installer.ShetefSolutionsConsulting1998.b, PUP.Installer.Amonetizeltd.BB, PUP.Task.Amonetizeltd.c, PUP.Installer.Amonetizeltd.DD, PUP.Installer.Amonetizeltd.F
96.55%

VIPRE Antivirus
Amonetize
93.10%

Trend Micro House Call
TROJ_GEN.F47V1124, TROJ_GEN.F47V1208, TROJ_GEN.F47V1003, TROJ_GEN.F47V1203, TROJ_GEN.F47V1114, TROJ_GEN.F47V1118, TROJ_GEN.F47V1025
89.66%

Sophos
Amonetize
79.31%

McAfee
Artemis!4476FBE0C98B, Artemis!E5C0DB008114, Artemis!466A950A6E7B, Artemis!5C4CA56F91EF, Artemis!C3B43106B5F0, Artemis!7AC7C64CC2F4, Artemis!13CE375DADC9, Artemis!95A1138E816A, Adware-Amonetize!150291AC81A4, Adware-Amonetize!2F5C2A2569FF, Adware-Amonetize!01060DF48554, Adware-Amonetize!5C0F71E83D34, Adware-Amonetize!5417F09906E3, Artemis!B260F8AA3973
65.52%

McAfee Web Gateway
Artemis!4476FBE0C98B, Artemis!E5C0DB008114, Artemis!466A950A6E7B, Artemis!5C4CA56F91EF, Artemis!C3B43106B5F0, Artemis!7AC7C64CC2F4
65.52%

avast!
Win32:Dropper-gen [Drp], Win32:Malware-gen, Win32:Amonetize-E [PUP], Win32:Amonetize-AM [PUP], Win32:Amonetize-AO [PUP]
44.83%

Fortinet FortiGate
Riskware/Amonetize
31.03%

AhnLab V3 Security
PUP/Win32.Amonetiz
31.03%

Avira AntiVirus
W32/Sality.AT, ADWARE/Adware.Gen2, APPL/Amonetize.AD
24.14%

Comodo Security
ApplicUnwnt, TrojWare.Win32.Genome.xghr
24.14%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
20.69%

The domain www.intactdownload.com has been seen to resolve to the following 15 IP addresses.

June 18, 2015

December 1, 2014

ns1.expirationwarning.net
September 5, 2014

209.222.14.3.choopa.net
August 7, 2014

ec2-50-17-209-45.compute-1.amazonaws.com
May 31, 2014

ec2-107-20-210-63.compute-1.amazonaws.com
May 31, 2014

ec2-23-21-228-251.compute-1.amazonaws.com
May 31, 2014

ec2-50-17-206-16.compute-1.amazonaws.com
May 31, 2014

ec2-54-235-68-127.compute-1.amazonaws.com
April 11, 2014

ec2-107-21-115-114.compute-1.amazonaws.com
April 11, 2014

ec2-54-235-189-159.compute-1.amazonaws.com
March 19, 2014

ec2-54-225-132-130.compute-1.amazonaws.com
March 14, 2014

ec2-23-23-96-46.compute-1.amazonaws.com
January 31, 2014

ec2-54-225-181-84.compute-1.amazonaws.com
January 31, 2014

ec2-54-243-172-72.compute-1.amazonaws.com
December 28, 2013

File downloads found at URLs served by www.intactdownload.com.

 
Latest 30 of 52 download URLs

The following 22 files have been seen to comunicate with www.intactdownload.com in live environments.

 
Latest 20 of 23 files

URL:
http://www.intactdownload.com/

Title:
“intactdownload.com”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 30 related domains

Remove Malware from www.intactdownload.com - Powered by Reason Core Security