dl15.afterdawn.com

AfterDawn Oy

Domain Information

The domain dl15.afterdawn.com registered by AfterDawn Oy was initially registered in March of 1999 through CSL COMPUTER SERVICE LANGENBACH GMBH D/B/A JOKER.COM. This domain has been seen distributing various forms of adware (some being very aggressive) directly or via bundled installations. The hosted servers are located in Frankfurt Am Main, Hessen within Germany which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher AfterDawn who is located in Oulu, Finland.
Registrar:
CSL COMPUTER SERVICE LANGENBACH GMBH D/B/A JOKER.COM

Server location:
Hessen, Germany (DE)

Create date:
Wednesday, March 31, 1999

Expires date:
Sunday, March 31, 2019

Updated date:
Tuesday, February 11, 2014

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Adware distribution

Scan engine
Details
Detections

Reason Heuristics
PUP.MusicLab.M, (M), PUP.OpenCandy.Installer (L), PUP.Bundler.YoutubeDownloaderHD.Installer.Meta (M), PUP.DigitalWave.Bundler.Installer.Meta (L), PUP.DigitalWave.Bundle.Installer.Meta (L)
61.54%

ESET NOD32
Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
23.08%

Fortinet FortiGate
Riskware/OpenCandy
23.08%

G Data
Win32.Application.Dealply, Win32.Application.OpenCandy
23.08%

Dr.Web
Adware.Toolbar.576
23.08%

Rising Antivirus
PE:Trojan.Win32.SpeedingUpMyPC.a!1075357520
23.08%

IKARUS anti.virus
PUA.FusionCore
23.08%

Trend Micro House Call
Suspicious_GEN.F47V0111, Suspicious_GEN.F47V0507
15.38%

Baidu Antivirus
Adware.Win32.Conduit, Adware.Win32.OpenCandy
15.38%

ESET NOD32
Detection.Undefined, Win32/Bundled.Toolbar.Google.D potentially unsafe application
15.38%

CMC Antivirus
Packed.Win32.Katusha.1!O
7.69%

Antiy Labs AVL
Trojan/Win32.TSGeneric
7.69%

McAfee
Artemis!C0A66510319A
7.69%

avast!
Win32:Evo-gen [Susp]
7.69%

Clam AntiVirus
Win.Trojan.Agent-953871
7.69%

The domain dl15.afterdawn.com has been seen to resolve to the following IP address.

imuri15.afterdawn.net
February 6, 2014

File downloads found at URLs served by dl15.afterdawn.com.

 
Latest 30 of 196 download URLs

The following file have been seen to comunicate with dl15.afterdawn.com in live environments.

URL:
http://dl15.afterdawn.com/

Google Analytics:
UA-2099875

Title:
“AfterDawn: Software downloads”

Description:
“Large selection of reviewed shareware and freeware software.”