app.offerbox.com

Aedge Performance BCN, S.L.U.

Domain Information

The domain app.offerbox.com registered by Aedge Performance BCN, S.L.U. was initially registered in April of 2006 through OVH. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
OVH

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Monday, April 17, 2006

Expires date:
Monday, April 17, 2017

Updated date:
Tuesday, April 12, 2016

ASN:
AS16276 OVH OVH SAS

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Adedge, PUP.Adedge.AedgePerformanceBCNU.Installer (M), PUP.OfferBox.SecureDigitalServices.Installer (M), PUP.Adedge.AedgePer.Installer (M)
100.00%

Malwarebytes
PUP.Optional.OfferBox.A
37.50%

ESET NOD32
Win32/AdWare.OfferBox (variant)
37.50%

Antiy Labs AVL
Trojan/Win32.SGeneric
37.50%

Trend Micro House Call
HV_ZYX_CA082DC6.TOMC, ADW_OFFERBOX
37.50%

herdProtect (fuzzy)
a variant of 3bc7e3995c0864c230f20f77ecac724c8d736218
25.00%

Bkav FE
W32.Clodb12.Trojan
12.50%

K7 Gateway Antivirus
Unwanted-Program
12.50%

K7 AntiVirus
Unwanted-Program
12.50%

Sophos
Generic PUA CH
12.50%

Trend Micro
ADW_OFFERBOX
12.50%

Microsoft Security Essentials
Adware:Win32/OfferBoxBrowser
12.50%

The domain app.offerbox.com has been seen to resolve to the following 4 IP addresses.

w03.es2.aedn.eu
February 28, 2016

w02.es2.aedn.eu
February 28, 2016

w01.es2.aedn.eu
August 17, 2015

w07.es2.aedn.eu
August 17, 2015

File downloads found at URLs served by app.offerbox.com.

1 / 68      (Adware)

1 / 68      (Adware)

4 / 68      (Adware)

1 / 68      (Adware)

4 / 68      (Adware)

11 / 68    (PUP)

3 / 68      (Adware)

3 / 68      (Adware)

The following 56 files have been seen to comunicate with app.offerbox.com in live environments.

 
Latest 20 of 85 files

URL:
http://app.offerbox.com/

Web server:
nginx