dk.1aab807gfl.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain dk.1aab807gfl.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU
Server location:
Massachusetts, United States (US)
Create date:
Tuesday, February 17, 2015
Expires date:
Wednesday, February 17, 2016
Updated date:
Tuesday, February 17, 2015
ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Bundler.Air Software, PUP.Air Software (M)
100.00%
Dr.Web
Trojan.Vittalia.30
50.00%
avast!
Win32:Adware-CKC [PUP]
50.00%
VIPRE Antivirus
Threat.4782985
50.00%
Bkav FE
W32.HfsAdware
50.00%
NANO AntiVirus
Trojan.Win32.DownloadHelper.dpgylc
50.00%
Avira AntiVirus
TR/Crypt.XPACK.Gen
50.00%
AhnLab V3 Security
PUP/Win32.Bundler
50.00%
ESET NOD32
Win32/DownloadAssistant.A potentially unwanted (variant)
50.00%
Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48
50.00%
The domain dk.1aab807gfl.com has been seen to resolve to the following 4 IP addresses.
a23-67-250-129.deploy.static.akamaitechnologies.com
May 5, 2015
a23-67-250-122.deploy.static.akamaitechnologies.com
May 5, 2015
a23-62-6-83.deploy.static.akamaitechnologies.com
April 8, 2015
a23-62-6-58.deploy.static.akamaitechnologies.com
April 8, 2015
File downloads found at URLs served by dk.1aab807gfl.com.
The following 43 files have been seen to comunicate with dk.1aab807gfl.com in live environments.
URL:
http://dk.1aab807gfl.com/
Web server:
Apache (PHP/5.3.10-1ubuntu3.9)