dl9.afterdawn.com

AfterDawn Oy

Domain Information

The domain dl9.afterdawn.com registered by AfterDawn Oy was initially registered in March of 1999 through CSL COMPUTER SERVICE LANGENBACH GMBH D/B/A JOKER.COM. This domain has been seen distributing various forms of adware (some being very aggressive) directly or via bundled installations. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher AfterDawn who is located in Oulu, Finland.
Registrar:
CSL COMPUTER SERVICE LANGENBACH GMBH D/B/A JOKER.COM

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Wednesday, March 31, 1999

Expires date:
Sunday, March 31, 2019

Updated date:
Tuesday, February 11, 2014

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Adware distribution

Scan engine
Details
Detections

Antiy Labs AVL
Trojan/Win32.Generic.gen, Virus/Win32.Xpaj
40.00%

Rising Antivirus
PE:Trojan.Dropper!6.3CE, PE:Trojan.Win32.Generic.1253E4B3!307487923
40.00%

ViRobot
Trojan.Win32.A.Zbot.22912657, JS.A.Iframe.818001
40.00%

Emsisoft Anti-Malware
Gen:Variant.Kazy.303531
20.00%

Reason Heuristics
PUP.Solimba.Bundler.Meta (M)
20.00%

ESET NOD32
Win32/Adware.ADON
20.00%

ByteHero BDV
Virus.Win32.Part.a
20.00%

Jiangmin
TrojanDownloader.Agent.flzz
20.00%

Kingsoft AntiVirus
Win32.Troj.Generic.(kcloud)
20.00%

The domain dl9.afterdawn.com has been seen to resolve to the following IP address.

imuri9.afterdawn.net
February 5, 2014

File downloads found at URLs served by dl9.afterdawn.com.

3 / 68      (inconclusive)

4 / 68      (PUP)

2 / 68      (inconclusive)

4 / 68      (PUP)