www.quinquevalenceslavepeopled.tech

Domain Information

Server location:
Georgia, United States (US)

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.,US

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
(M), Adware.Amonetize (M), Adware.Amonetize.ET (M), Adware.InstallMonetizer.NMK.Installer.Meta (M), Adware.InstallMonetizer.FenamnFa.Installer.Meta (M), Adware.InstallMonetizer.Finful.Installer.Meta (M), Adware.Amonetize.OldTramo.Installer.Meta (M), Adware.InstallMonetizer.FstTeaf.Installer.Meta (M), Adware.InstallMonetizer.SPRT.Installer.Meta (M), PUP.InstallMonetizer.pbJVwqWk.Installer.Meta (M), Adware.InstallMonetizer.tG4QL2Q.Installer.Meta (M), Adware.InstallMonetizer.Pepcy.Installer.Meta (M), Adware.InstallMonetizer.nF2Nxk.Installer.Meta (M), Adware.InstallMonetizer.xHcgVt0e.Installer.Meta (M), Adware.InstallMonetizer.OldTramo.Installer.Meta (M), Adware.InstallMonetizer.PLT.Installer.Meta (M), Adware.Amonetize.gMBY7JIB.Meta (M), Adware.InstallMonetizer.w1NzcLST.Meta (M), Adware.InstallMonetizer.GYNKF.Meta (M), Adware.InstallMonetizer.u9ApBD4M.Installer.Meta (M), Adware.Amonetize.RE (M), Adware.InstallMonetizer.PvlPoint.Installer.Meta (M), PUP.InstallMonetizer.StarGrat.Installer.Meta (M), Adware.InstallMonetizer.x7KltFes.Installer.Meta (M)
77.55%

ESET NOD32
Win32/Amonetize.NY potentially unwanted application, Win32/Amonetize.RB potentially unwanted application, Win32/Amonetize.OR potentially unwanted application, Win32/Amonetize.OO potentially unwanted application, Win32/Amonetize.SX potentially unwanted application, Win32/Amonetize.UM potentially unwanted application, Win32/Amonetize.QK potentially unwanted application, Win32/Amonetize.UO potentially unwanted application, Win32/Amonetize.SE potentially unwanted application, Win32/Amonetize.QG potentially unwanted application
32.65%

Norman
Gen:Variant.Graftor.283922, Gen:Variant.Graftor.286372, Gen:Variant.Razy.53845, Gen:Variant.Razy.55810, Gen:Variant.Graftor.273566
32.65%

F-Secure
Variant.Graftor.283922, Variant.Graftor.286372, Variant.Razy.53845, Variant.Razy.55810, Variant.Razy.27757, Variant.Razy.37085, Variant.Razy.50351
22.45%

Emsisoft Anti-Malware
Gen:Variant.Graftor.286372, Gen:Variant.Razy.27757, Gen:Heur.ManBat, Gen:Variant.Razy.18984, Gen:Variant.Application.Jaik.9084
16.33%

avast!
Win32:Evo-gen [Susp], Win32:Malware-gen
10.20%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:Downloader.Win32.AdLoad
8.16%

MicroWorld eScan
Gen:Heur.ManBat.1
2.04%

McAfee
PUP-XAA-LR
2.04%

Malwarebytes
PUP.Optional.Amonetize
2.04%

AegisLab AV Signature
AdWare.W32.Amonetize.muQm
2.04%

Arcabit
Trojan.ManBat.1
2.04%

F-Prot
W32/Amonetize.AG2.gen
2.04%

ESET NOD32
Win32/Amonetize.RG potentially unwanted (variant)
2.04%

Bitdefender
Gen:Heur.ManBat.1
2.04%

The domain www.quinquevalenceslavepeopled.tech has been seen to resolve to the following 2 IP addresses.

July 17, 2016

map2.hwcdn.net
July 17, 2016

File downloads found at URLs served by www.quinquevalenceslavepeopled.tech.

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../mch6s.exe  (065bce225f00e48db6c96dfd1c7024e4)

3 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../jaf54.exe  (1b4fc7cfb9f3178ade5d45339a6afbf7)

1 / 68      (PUP)

1 / 68      (Malware)
http://www.quinquevalenceslavepeopled.tech/.../y66uw.exe  (828f778069f136bc54267706d2ccf327)

5 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../v8tm8.exe  (setup__19958_i1927130341_il25.exe)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../7ngby.exe  (microsoft office professional downloader__3687_i1927061314_il246226.exe)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../jvuhq.exe  (setup__19958_i1927062134_il25.exe)

4 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../5tcwz.exe  (914e93e426acdbb2b5969045672abf43)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../natqk.exe  (7835bf9b6fe291bc54a11bb6d4273eb1)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../43fbj.exe  (52e0bd816ed11f63c7e7424466338453)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../w9cm3.exe  (2ab52145201b7d7360b44984c090cb8e)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../8tqjs.exe  (a6e10fcf0666be361362f49e18593661)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../p32yx.exe  (05b63fc3f7a322edf5693da67b3f66e0)

5 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../66w8k.exe  (7d1c0eb7c88718de219b8577cf6a6668)

4 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../g4z9e.exe  (e113fd36ab90eb6a4404782de61e70d6)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../2d7nm.exe  (twinmotion 2016 downloader__3687_i1927108268_il267559.exe)

1 / 68      (PUP)

4 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../wgtyh.exe  (192b04d8ec2faa160118e7ace54de78f)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../nj4h9.exe  (devil.dll__13432_i1926506503_il178285.exe)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../my4su.exe  (30ee9aedb903181120416fdeb40782b8)

1 / 68      (PUP)

1 / 68      (Malware)
http://www.quinquevalenceslavepeopled.tech/.../grs7t.exe  (smadav 2016 rev 10 8 full key downloader__3687_i1927155670_il287585.exe)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../r795y.exe  (kmspico10.1.9__8174_il109172.exe)

4 / 68      (PUP)

4 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../y9u6p.exe  (smadav pro 2016 rev 10 8 2 ter downloader__3687_i1927029990_il231811.exe)

2 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../27m4s.exe  (09c1876da23d4f86ab67a17bb02a63b1)

4 / 68      (PUP)

1 / 68      (PUP)
http://www.quinquevalenceslavepeopled.tech/.../8td7y.exe  (64515445bb7b4123924e3f864b89b11c)

 
Latest 30 of 358 download URLs