www.intactdownload.com

Amonetize ltd.

Domain Information

The domain www.intactdownload.com registered by Corp New Ventures Services was initially registered in October of 2014 through Moniker Online Services. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Sankt Ingbert, Saarland within Germany which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Amonetize ltd. who is located in Raanana, Alberta in Israel.
Registrar:
SANTIAMDOMAINS.COM LLC

Server location:
Saarland, Germany (DE)

Create date:
Sunday, October 19, 2014

Expires date:
Wednesday, October 19, 2016

Updated date:
Monday, September 28, 2015

ASN:
AS196763 KEY-SYSTEMS-AS Key-Systems GmbH,DE

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Amonetizeltd.EE, PUP.Installer.Amonetizeltd.P, PUP.Installer.Amonetizeltd.b, PUP.Installer.Amonetizeltd.Z, PUP.Installer.ShetefSolutionsConsulting1998.o, PUP.Task.ShetefSolutionsConsulting1998.a, PUP.Installer.ShetefSolutionsConsulting1998.b, PUP.Installer.Amonetizeltd.BB, PUP.Task.Amonetizeltd.c, PUP.Installer.Amonetizeltd.Y, PUP.Installer.Amonetizeltd.DD, PUP.Installer.Amonetizeltd.F
96.88%

Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize.A
93.75%

ESET NOD32
Win32/Amonetize (variant), Win32/Amonetize.AA (variant), Win32/Amonetize.AD (variant), Win32/Amonetize.AE (variant), Win32/Amonetize.AI (variant)
93.75%

Trend Micro House Call
TROJ_GEN.F47V1124, TROJ_GEN.F47V1208, TROJ_GEN.F47V1126, TROJ_GEN.F47V1114, TROJ_GEN.F47V1118, TROJ_GEN.F47V1025, TROJ_GEN.F47V1020
84.38%

Dr.Web
Adware.Downware.1655, Adware.Downware.1575, Adware.Downware.1339, Adware.Downware.1833, Adware.Downware.2083, Adware.Downware.2467
84.38%

VIPRE Antivirus
Amonetize, Trojan.Win32.Generic
84.38%

Sophos
Amonetize
75.00%

McAfee
Artemis!4476FBE0C98B, Artemis!E5C0DB008114, Artemis!F0B991FC49D6, Artemis!466A950A6E7B, Artemis!5C4CA56F91EF, Artemis!C3B43106B5F0, Artemis!13CE375DADC9, Artemis!95A1138E816A, Adware-Amonetize!2F5C2A2569FF, Adware-Amonetize!01060DF48554, Adware-Amonetize!5C0F71E83D34, Artemis!EED95BD36931, Adware-Amonetize!5417F09906E3, Artemis!B260F8AA3973, Adware-Amonetize!BEAD1CA99F6D
68.75%

avast!
Win32:Dropper-gen [Drp], Win32:Malware-gen, Win32:Amonetize-E [PUP], Win32:Amonetize-N [PUP], Win32:Amonetize-AM [PUP], Win32:Amonetize-AO [PUP]
50.00%

AhnLab V3 Security
PUP/Win32.Amonetiz
40.63%

Fortinet FortiGate
Riskware/Amonetize, Adware/Amonetize
37.50%

Avira AntiVirus
ADWARE/Adware.Gen2, APPL/Amonetize.AD
31.25%

Comodo Security
TrojWare.Win32.Genome.xghr, ApplicUnwnt
21.88%

IKARUS anti.virus
Win32.Malware, not-a-virus:Downloader.Win32.Agent, Win32.SuspectCrc
18.75%

Bkav FE
W32.Clodacf.Trojan, W32.Clodf20.Trojan, W32.Clod95f.Trojan, W32.Clod16d.Trojan, W32.Clod294.Trojan
15.63%

The domain www.intactdownload.com has been seen to resolve to the following 17 IP addresses.

July 23, 2016

April 13, 2016

June 18, 2015

December 1, 2014

ns1.expirationwarning.net
September 5, 2014

209.222.14.3.choopa.net
August 7, 2014

ec2-50-17-209-45.compute-1.amazonaws.com
May 31, 2014

ec2-107-20-210-63.compute-1.amazonaws.com
May 31, 2014

ec2-23-21-228-251.compute-1.amazonaws.com
May 31, 2014

ec2-50-17-206-16.compute-1.amazonaws.com
May 31, 2014

ec2-54-235-68-127.compute-1.amazonaws.com
April 11, 2014

ec2-107-21-115-114.compute-1.amazonaws.com
April 11, 2014

ec2-54-235-189-159.compute-1.amazonaws.com
March 19, 2014

ec2-54-225-132-130.compute-1.amazonaws.com
March 14, 2014

ec2-23-23-96-46.compute-1.amazonaws.com
January 31, 2014

ec2-54-225-181-84.compute-1.amazonaws.com
January 31, 2014

ec2-54-243-172-72.compute-1.amazonaws.com
December 28, 2013

File downloads found at URLs served by www.intactdownload.com.

 
Latest 30 of 59 download URLs

The following 24 files have been seen to comunicate with www.intactdownload.com in live environments.

 
Latest 20 of 25 files

URL:
http://www.intactdownload.com/

Google Analytics:
UA-19309218

Title:
“intactdownload.com - This website is for sale! - intactdownload Resources and Information.”

Description:
“This website is for sale! intactdownload.com is your first and best source for information about intactdownload . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
nginx

30 of 123 related domains