www.solutiontoolkituk.info

Bogdan

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
Dynadot, LLC (R259-LRMS)

Server location:
Virginia, United States (US)

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.WebPick.Installer.EE, Adware.WebPick.Installer.Z, Adware.WebPick.Installer.?, Adware.WebPick.Installer.g, Adware.WebPick.Installer.m, Adware.WebPick.Installer.DD, Adware.WebPick.Installer.FF, Adware.WebPick.Installer.j, Adware.WebPick.Installer.k, Adware.WebPick.Installer.CC, Adware.WebPick.Installer.Y, Adware.WebPick.Installer (M)
100.00%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4753027, Threat.4150696, Threat.14871
70.83%

avast!
Win32:InstalleRex-BI [PUP], Win32:InstalleRex-DT [PUP], Win32:InstalleRex-AP [PUP]
70.83%

Kaspersky
Trojan.Win32.AntiFW
70.83%

Dr.Web
Trojan.WebPick.29, Adware.Downware.1719
70.83%

ESET NOD32
Win32/InstalleRex.P potentially unwanted application, Win32/InstalleRex.M potentially unwanted application, Win32/InstalleRex.R potentially unwanted application
66.67%

Clam AntiVirus
Win.Trojan.Antifw-15, Win.Trojan.Agent-728639, Win.Trojan.Antifw-45, Win.Trojan.Installerex-92
62.50%

F-Prot
W32/InstallRex.B, W32/InstallRex.B.gen
62.50%

Quick Heal
Trojan.AntiFW.A5
54.17%

McAfee
PUP-FHQ!77BF6FF0F37E, Program.PUP-FHQ
54.17%

Malwarebytes
PUP.Optional.InstalleRex, PUP.Optional.Installrex, PUP.Optional.AppReady, PUP.Optional.Installex
54.17%

K7 AntiVirus
Unwanted-Program , Trojan
54.17%

K7 Gateway Antivirus
Unwanted-Program , Trojan
54.17%

NANO AntiVirus
Riskware.Win32.InfoLeak.cvgqot, Riskware.Win32.Downware.cvftvb, Riskware.Win32.Downware.crcxkm
54.17%

Agnitum Outpost
Trojan.AntiFW
54.17%

The domain www.solutiontoolkituk.info has been seen to resolve to the following 11 IP addresses.

July 8, 2016

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
June 3, 2016

ec2-54-69-104-255.us-west-2.compute.amazonaws.com
May 5, 2015

ec2-54-68-171-13.us-west-2.compute.amazonaws.com
December 2, 2014

ec2-54-148-67-213.us-west-2.compute.amazonaws.com
December 2, 2014

ec2-54-167-174-238.compute-1.amazonaws.com
September 5, 2014

ec2-54-91-118-83.compute-1.amazonaws.com
September 5, 2014

ec2-54-213-103-160.us-west-2.compute.amazonaws.com
July 3, 2014

ec2-54-191-54-126.us-west-2.compute.amazonaws.com
July 3, 2014

January 28, 2014

January 28, 2014

File downloads found at URLs served by www.solutiontoolkituk.info.

 
Latest 30 of 40 download URLs

The following 218 files have been seen to comunicate with www.solutiontoolkituk.info in live environments.

TCP » 54.72.9.51:80

 
Latest 20 of 222 files

URL:
http://www.solutiontoolkituk.info/

Title:
“Welcome to nginx!”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
ngx_openresty (PHP/5.4.37)