lax1.ib.adnxs.com

AppNexus Inc

Domain Information

The domain lax1.ib.adnxs.com registered by AppNexus Inc was initially registered in May of 2008 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Fullerton, California within the United States which resides on the AppNexus, Inc network.
Registrar:
MARKMONITOR INC.

Server location:
California, United States (US)

Create date:
Tuesday, May 27, 2008

Expires date:
Friday, May 27, 2016

Updated date:
Saturday, April 26, 2014

ASN:
AS29990 ASN-APPNEXUS - AppNexus, Inc,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SecureInstall.L, PUP.Optional.Installer.X, PUP.Optional.Installer.Y, PUP.Installer.Stepitapp.I, PUP.Installer.Stepitapp.F, Threat.Win.Reputation.IMP, PUP.Adknowledge.OverallM.Installer (M), PUP.Adknowledge.Liquidbu.Installer (M), PUP.Adknowledge.BuildInp.Bundler (M), PUP.Adknowledge.INSTALLT.Installer (M), PUP.Softpulse.YumonSys.Bundler (M), PUP.Adknowledge.BootComp.Installer (M), PUP.Solimba.EilioDev.Bundler (M), PUP.Adknowledge.Liquidbu.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.Outbrowse.Bundler (M), PUP.InstallX.SafeInst.Installer (M), PUP.Adknowledge (M), PUP.GadgetBox (M), PUP.InstallX (M)
92.00%

Dr.Web
Adware.Searcher.2593, Adware.Downware.5822, Adware.DAdmin.151, Trojan.KillFiles.12939
14.00%

avast!
Win32:PUP-gen [PUP], Win32:Dropper-gen [Drp], Win32:GenMalicious-AGK [Trj], Win32:Evo-gen [Susp]
14.00%

VIPRE Antivirus
InstallIQ Installer, Conduit, DownloadAdmin, Threat.4150696
12.00%

Trend Micro House Call
Suspicious_GEN.F47V0621, Suspicious_GEN.F47V0627, Suspicious_GEN.F47V0802, TROJ_GEN.F47V0516, Suspici.B577CD42
10.00%

Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:Downloader.Win32.Agent, not-a-virus:AdWare.Win32.Linkun
10.00%

McAfee
Artemis!70197CFE7AFD, Artemis!681A294031C4, Artemis!17FD46A07B73, Artemis!384D07F74228
8.00%

Malwarebytes
PUP.Optional.SafeInstall.A, PUP.Optional.Conduit, PUP.Optional.DownloadAdmin
8.00%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-BAY.K, Artemis!17FD46A07B73, BehavesLike.Win32.Downloader.bc
8.00%

ESET NOD32
Win32/AdWare.Linkular.AJ application
8.00%

F-Prot
W32/Linkun.A (exact, not disinfectable)
8.00%

ESET NOD32
Win32/InstallIQ (variant), Win32/DownloadAdmin
6.00%

AVG
MultiBundle, Generic
6.00%

NANO AntiVirus
Riskware.Win32.Searcher.csnymk
4.00%

Sophos
DomainIQ pay-per install
4.00%

The domain lax1.ib.adnxs.com has been seen to resolve to the following 317 IP addresses.

177.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

146.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

145.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

142.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

147.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

143.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

144.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

176.bm-nginx-loadbalancer.mgmt.lax1.adnexus.net
September 14, 2016

June 5, 2016

float.2487.bm-impbus.prod.lax1.adnexus.net
May 18, 2016

float.1904.bm-impbus.prod.lax1.adnexus.net
April 21, 2016

float.2388.bm-impbus.prod.lax1.adnexus.net
April 20, 2016

float.2342.bm-impbus.prod.lax1.adnexus.net
April 19, 2016

float.2391.bm-impbus.prod.lax1.adnexus.net
April 13, 2016

float.2392.bm-impbus.prod.lax1.adnexus.net
April 13, 2016

April 11, 2016

float.2391.bm-impbus.prod.lax1.adnexus.net
April 11, 2016

float.2886.bm-impbus.prod.lax1.adnexus.net
April 9, 2016

float.2341.bm-impbus.prod.lax1.adnexus.net
April 6, 2016

April 5, 2016

float.2397.bm-impbus.prod.lax1.adnexus.net
April 4, 2016

float.2392.bm-impbus.prod.lax1.adnexus.net
April 3, 2016

float.2529.bm-impbus.prod.lax1.adnexus.net
April 2, 2016

float.2338.bm-impbus.prod.lax1.adnexus.net
March 31, 2016

float.2505.bm-impbus.prod.lax1.adnexus.net
March 1, 2016

float.2523.bm-impbus.prod.lax1.adnexus.net
February 14, 2016

float.2518.bm-impbus.prod.lax1.adnexus.net
February 13, 2016

float.2875.bm-impbus.prod.lax1.adnexus.net
February 13, 2016

float.2500.bm-impbus.prod.lax1.adnexus.net
February 12, 2016

float.2878.bm-impbus.prod.lax1.adnexus.net
January 29, 2016

 
Showing 30 of 317 IP Addresses

File downloads found at URLs served by lax1.ib.adnxs.com.

 
Latest 30 of 374 download URLs

The following 188 files have been seen to comunicate with lax1.ib.adnxs.com in live environments.

 
Latest 20 of 649 files

URL:
http://lax1.ib.adnxs.com/

Google Analytics:
UA-4057742

Title:
“error page for redirects from product”

Web server:
Apache/2.2.22 (Ubuntu)