fra1.ib.adnxs.com

AppNexus Inc

Domain Information

The domain fra1.ib.adnxs.com registered by AppNexus Inc was initially registered in May of 2008 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Washington, District of Columbia within the United States which resides on the RIPE Network Coordination Centre network.
Registrar:
MARKMONITOR INC.

Server location:
District of Columbia, United States (US)

Create date:
Tuesday, May 27, 2008

Expires date:
Friday, May 27, 2016

Updated date:
Saturday, April 26, 2014

ASN:
AS29990 ASN-APPNEXUS - AppNexus, Inc, US

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ShetefSolutionsConsulting1998.c, PUP.ShetefSolutionsConsulting1998.o, PUP.Wilmaonline.c, PUP.Installer.Wilmaonline.f, PUP.Optional.Installer.X, PUP.Optional.Installer.Y, PUP.Amonetize.Ukra2006.Bundler (M), Threat.Win.Reputation.IMP, PUP.Brightcircle.Wilmaonline.Bundler (M), PUP.Solimba.Firseria.Bundler (M), PUP.Amonetize.ShetefSolutionsConsulting1998.Bundler (M), PUP.Outbrowse.Bundler (M), PUP.Brightcircle.Wilmaonl.Bundler (M), PUP.Adknowledge.BootComp.Installer (M), PUP.Amonetize.ShetefSo.Bundler (M), PUP.InstallCore.FC.Installer (M), PUP.Adknowledge.Liquidbu.Installer (M), Adware.Amonetize.Installer.Installer.Meta (M), PUP.Solimba.EilioDev.Bundler (M), Adware.Amonetize.Installer.Meta (M), PUP.Outbrowse.TikiTaka.Bundler (M)
100.00%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
22.22%

avast!
Win32:Adware-BJY [PUP], Win32:Amonetize-M [PUP], Win32:Adware-gen [Adw], Win32:Amonetize-N [PUP], Win32:Amonetize-CI [PUP]
20.00%

Dr.Web
Adware.Downware.1575, Adware.Downware.2250, Adware.Downware.5488, Adware.Downware.8012, Adware.Downware.5717, Adware.Downware.3925
20.00%

ESET NOD32
Win32/Amonetize.AJ (variant), Win32/Amonetize.AX (variant), Win32/Amonetize.BM (variant), Win32/Amonetize.BG (variant), Win32/Amonetize.AG (variant)
20.00%

Malwarebytes
PUP.Optional.Amonetize.A, PUP.Optional.Monetizer
17.78%

Baidu Antivirus
Adware.Win32.Amonetize, Adware.Win32.ELEX
17.78%

Agnitum Outpost
PUA.Amonetize
15.56%

Trend Micro House Call
TROJ_GEN.F47V0227, TROJ_GEN.F47V0304, TROJ_GEN.F47V0309, TROJ_GEN.F47V0313, Suspicious_GEN.F47V0702, TROJ_GEN.F47V0224, TROJ_GEN.R0CBC0EG214
15.56%

Avira AntiVirus
ADWARE/Adware.Gen2
15.56%

McAfee
Artemis!FD84DD4BE9F9, Artemis!4F0D2B78C4BD, Artemis!4FC1814AFEE3, Artemis!68FBA6528597, Artemis!32A84E35209D, PUP-FBM
13.33%

McAfee Web Gateway
Artemis!FD84DD4BE9F9, Artemis!4F0D2B78C4BD, Artemis!4FC1814AFEE3, Artemis!68FBA6528597, Artemis!32A84E35209D, BehavesLike.Win32.AdwareAmonetize.fh
13.33%

Fortinet FortiGate
Riskware/Amonetize
13.33%

NANO AntiVirus
Riskware.Win32.Amonetize.cwgnry, Riskware.Win32.Amonetize.cvodil, Riskware.Win32.Amonetize.dcblyg, Riskware.Win32.Amonetize.ddtnan
13.33%

AVG
Generic_r, MalSign.Wilmo
13.33%

The domain fra1.ib.adnxs.com has been seen to resolve to the following 197 IP addresses.

ip478738.fra1.adnexus.net
July 18, 2016

float.2965.bm-impbus.prod.fra1.adnexus.net
July 12, 2016

float.3004.bm-impbus.prod.fra1.adnexus.net
June 19, 2016

float.2998.bm-impbus.prod.fra1.adnexus.net
June 6, 2016

float.2994.bm-impbus.prod.fra1.adnexus.net
June 5, 2016

float.2995.bm-impbus.prod.fra1.adnexus.net
June 2, 2016

float.3010.bm-impbus.prod.fra1.adnexus.net
May 25, 2016

float.2983.bm-impbus.prod.fra1.adnexus.net
May 25, 2016

float.2990.bm-impbus.prod.fra1.adnexus.net
May 25, 2016

May 24, 2016

May 24, 2016

May 24, 2016

May 24, 2016

May 24, 2016

May 24, 2016

May 21, 2016

May 21, 2016

May 21, 2016

May 21, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

May 20, 2016

 
Showing 30 of 197 IP Addresses

File downloads found at URLs served by fra1.ib.adnxs.com.

 
Latest 30 of 103 download URLs

The following 69 files have been seen to comunicate with fra1.ib.adnxs.com in live environments.

 
Latest 20 of 113 files

URL:
http://fra1.ib.adnxs.com/

Google Analytics:
UA-4057742

Title:
“error page for redirects from product”

Web server:
Apache/2.2.22 (Ubuntu)