d.mixxen.com
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain d.mixxen.com is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Washington, United States (US)
Create date:
Wednesday, October 30, 2013
Expires date:
Sunday, October 30, 2016
Updated date:
Saturday, October 31, 2015
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Malwarebytes
PUP.Optional.Mixxen.A
100.00%
Avira AntiVirus
ADWARE/Adware.Gen7
75.00%
Baidu Antivirus
Adware.MSIL.PullUpdate
75.00%
McAfee
Artemis!8F7890813D6A, Artemis!FB3C282C19D4
50.00%
Trend Micro House Call
Suspicious_GEN.F47V0110, Suspicious_GEN.F47V0109
50.00%
Comodo Security
ApplicUnwnt
50.00%
Sophos
Generic PUA EB, Generic PUA JC
50.00%
ESET NOD32
MSIL/Adware.PullUpdate.J.gen (variant)
50.00%
Fortinet FortiGate
Adware/PullUpdate
50.00%
Reason Heuristics
PUP.Installer.SurfIslandSolutions.F
25.00%
Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
25.00%
ESET NOD32
MSIL/Adware.PullUpdate.J.gen application
25.00%
Dr.Web
Adware.Yontoo.68
25.00%
Bkav FE
W32.HfsAdware
25.00%
K7 AntiVirus
Adware
25.00%
The domain d.mixxen.com has been seen to resolve to the following 32 IP addresses.
server-54-192-195-243.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-221.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-205.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-198.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-139.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-64.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-32.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-254.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-173.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-158.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-153.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-112.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-90.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-25.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-17.iad53.r.cloudfront.net
February 23, 2016
server-54-192-195-8.iad53.r.cloudfront.net
February 23, 2016
server-54-230-38-199.jfk1.r.cloudfront.net
May 4, 2015
server-54-192-38-40.jfk1.r.cloudfront.net
May 4, 2015
server-54-230-39-206.jfk1.r.cloudfront.net
May 4, 2015
server-54-192-36-131.jfk1.r.cloudfront.net
May 4, 2015
server-54-230-38-123.jfk1.r.cloudfront.net
May 4, 2015
server-54-192-39-20.jfk1.r.cloudfront.net
May 4, 2015
server-54-192-38-42.jfk1.r.cloudfront.net
May 4, 2015
server-204-246-169-166.jfk1.r.cloudfront.net
May 4, 2015
server-54-192-55-130.jfk6.r.cloudfront.net
May 4, 2015
server-54-230-55-239.jfk6.r.cloudfront.net
May 4, 2015
server-54-230-52-233.jfk6.r.cloudfront.net
May 4, 2015
server-54-230-53-88.jfk6.r.cloudfront.net
May 4, 2015
server-54-230-52-161.jfk6.r.cloudfront.net
May 4, 2015
server-54-192-55-147.jfk6.r.cloudfront.net
May 4, 2015
Showing 30 of 32 IP Addresses
File downloads found at URLs served by d.mixxen.com.
The following 87 files have been seen to comunicate with d.mixxen.com in live environments.
Network:
Amazon Cloudfront