ds123.maxiget.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain ds123.maxiget.com is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Francisco, California within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Remove Malware from ds123.maxiget.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Monday, October 01, 2012

Expires date:
Thursday, October 01, 2020

Updated date:
Thursday, August 27, 2015

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MaxigetLimited.h, PUP.MaxigetLimited.g, PUP.MaxigetLimited.P, PUP.MaxigetLimited.X, PUP.MaxigetLimited.K, PUP.MaxigetLimited.V, PUP.MaxigetLimited.f, PUP.MaxigetLimited.o, PUP.MaxigetLimited.U, PUP.MaxigetLimited.S, PUP.MaxigetLimited.Y, PUP.MaxigetLimited.CC, PUP.MaxigetLimited.G, PUP.MaxigetLimited.i, PUP.MaxigetLimited.n, PUP.MaxigetLimited.M, PUP.MaxigetLimited.N, PUP.MaxigetLimited.Z, PUP.New IT Limited, PUP.New IT Limited.Maxiget.Bundler (M), PUP.New IT Limited.Maxiget (M)
97.62%

Sophos
4Share Downloader, PUA.4Share Downloader, PUA '4Share Downloader'
64.29%

AVG
MalSign.Generic, Dropper.Agent, Adware BundleApp.CG, Adware BundleApp.CJ, Trojan horse Dropper.Agent.BIQP
64.29%

Agnitum Outpost
PUA.4Shared, PUA.Downloader
59.52%

VIPRE Antivirus
Adware.Win32.4Shared.a, Trojan.Win32.Generic, Threat.4150696, Threat.4838292, Threat.4895345, Threat.4791953
54.76%

NANO AntiVirus
Trojan.Win32.GetFaster.cvvyma, Trojan.Win32.Agent.ctkcbd, Trojan.Win32.MLW.dcdomp, Trojan.Win32.GetFaster.clxvmr, Riskware.Win32.Downware.degipb
52.38%

ESET NOD32
Win32/4Shared.S potentially unwanted application, Win32/4Shared.J potentially unwanted application, Win32/4Shared.U potentially unwanted application
50.00%

Avira AntiVirus
APPL/Downloader.Gen
42.86%

K7 Gateway Antivirus
Unwanted-Program , Riskware , Trojan
40.48%

Vba32 AntiVirus
Downloader.GetFaster, TrojanDropper.Agent
38.10%

McAfee
PUP-FIW!59FF8F1088AE, Obfosha, PUP-FEO!1A8F89C0F164, PUP-FNX, Program.PUP-FNX
38.10%

K7 AntiVirus
Unwanted-Program , Riskware , Trojan
35.71%

Dr.Web
Adware.Downware.2191, Adware.Downware.1603, Adware.Downware.2538, Adware.Downware.4322, Adware.Downware.2460, Adware.Downware.9565
30.95%

McAfee Web Gateway
PUP-FIW!59FF8F1088AE, BehavesLike.Win32.CryptDoma.gh, PUP-FEO!1A8F89C0F164, BehavesLike.Win32.Dropper.fh, BehavesLike.Win32.Dropper.gh
30.95%

F-Prot
W32/A-1f3d25ca, W32/4Shared.E.gen, W32/A-3006e021, W32/A-083dbbf9, W32/A-ac292965
30.95%

The domain ds123.maxiget.com has been seen to resolve to the following 7 IP addresses.

January 28, 2014

January 28, 2014

January 28, 2014

January 28, 2014

January 28, 2014

January 11, 2014

January 11, 2014

File downloads found at URLs served by ds123.maxiget.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Adware)

13 / 68    (Adware)

23 / 68    (Adware)

22 / 68    (Adware)

16 / 68    (Adware)

15 / 68    (Adware)

16 / 68    (Adware)

17 / 68    (Adware)

18 / 68    (Adware)

18 / 68    (Adware)

10 / 68    (Adware)

9 / 68      (Adware)

18 / 68    (Adware)
http://ds123.maxiget.com/.../Hack2014Proof.exe  (ffe14cf5ad4abc59ed8061a477f3781e)

9 / 68      (Adware)
http://ds123.maxiget.com/.../MSSQLS1313-S.exe  (64f26eff88a32fc1cfc67070637e5d50)

17 / 68    (Adware)
http://ds123.maxiget.com/.../Boz.Mongoose.101.MAC.WiN.exe  (c50c5286e9b7242f977c685f648ef27d)

17 / 68    (Adware)
http://ds123.maxiget.com/.../JSillF.exe  (685cf045dfceb5792047b1307cd5e2b4)

8 / 68      (Adware)

17 / 68    (Adware)

5 / 68      (Adware)

4 / 68      (Adware)
http://ds123.maxiget.com/.../R2ef1O.exe  (0d4441314b423389564fe89c94a0845e)

27 / 68    (Adware)

5 / 68      (Adware)
http://ds123.maxiget.com/.../PUNCH_Magi_S2_-_06.exe  (a28483b83e4100e6b02567759eb014c2)

16 / 68    (Adware)
http://ds123.maxiget.com/.../P14_TS.exe  (631c8a297922df6c95fc154e1955ef77)

16 / 68    (Adware)

15 / 68    (Adware)

 
Latest 30 of 43 download URLs

Remove Malware from ds123.maxiget.com - Powered by Reason Core Security