cdnus.wawosodadol.com

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain cdnus.wawosodadol.com is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in November of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Frankfurt Am Main, Hessen within Germany which resides on the Leaseweb USA, Inc. network.
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Hessen, Germany (DE)

Create date:
Thursday, November 21, 2013

Expires date:
Monday, November 21, 2016

Updated date:
Sunday, October 25, 2015

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.Packed.24524
100.00%

Vba32 AntiVirus
Downware.InstallCore
100.00%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
100.00%

Reason Heuristics
PUP.WorldSetup.L, PUP.WorldSetup.H, PUP.WorldSetup.T, PUP.WorldSetup.X, PUP.ironSource
100.00%

K7 Gateway Antivirus
Unwanted-Program
80.00%

K7 AntiVirus
Unwanted-Program
80.00%

Sophos
Install Core
80.00%

Comodo Security
Application.Win32.Installcore.WS, Application.Win32.Installcore.BB
80.00%

VIPRE Antivirus
Trojan.Win32.Generic, InstallCore
80.00%

Avira AntiVirus
ADWARE/InstallCore.Gen7
80.00%

G Data
Win32.Application.InstallCore
80.00%

ESET NOD32
Win32/InstallCore.JE.gen (variant), Win32/InstallCore.IO (variant)
80.00%

AVG
MalSign.Generic, InstallCore, Ransomer
80.00%

Qihoo 360 Security
Win32/Trojan.8c6, HEUR/Malware.QVM20.Gen, Win32/Virus.Adware.94c
80.00%

McAfee
Artemis!824ED9E716BF, Artemis!BD1DD7D12693, Artemis!D98F17DA9E8C
60.00%

The domain cdnus.wawosodadol.com has been seen to resolve to the following 4 IP addresses.

hosted-by.leaseweb.com
May 1, 2014

50.115.122.45.static.westdc.net
May 1, 2014

hosted-by.leaseweb.com
May 1, 2014

May 1, 2014

File downloads found at URLs served by cdnus.wawosodadol.com.

18 / 68    (Adware)

18 / 68    (Adware)

19 / 68    (Adware)

14 / 68    (Adware)

8 / 68      (Adware)

The following 449 files have been seen to comunicate with cdnus.wawosodadol.com in live environments.

 
Latest 20 of 649 files

URL:
http://cdnus.wawosodadol.com/

Web server:
nginx/1.0.10