www.dowskjd.com

Domain Registries Foundation

Domain Information

The domain www.dowskjd.com registered by Domain Registries Foundation was initially registered in July of 2015 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Wednesday, July 29, 2015

Expires date:
Friday, July 29, 2016

Updated date:
Wednesday, July 29, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ClovermediaSL.E, PUP.Tuguu.Clovermedia.Bundler (M), PUP.Tuguu.PaymentsInteractive.Bundler (M), PUP.Tuguu.Cloverme.Bundler (M), Adware.Tuguu.Bundler.Meta (M), PUP.Tuguu.Payments.Bundler (M), PUP.Tuguu (M)
100.00%

MicroWorld eScan
Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.L, Application.Bundler.DomaIQ.Q
32.50%

Malwarebytes
PUP.Optional.DomaIQ
32.50%

VIPRE Antivirus
DomaIQ, Trojan.Win32.Generic, Threat.4150696
32.50%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ
32.50%

Bitdefender
Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.L, Application.Bundler.DomaIQ.Q
32.50%

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.374465, Gen:Variant.Adware.Symmi.41510, Application.Bundler.DomaIQ.L, Application.Bundler.DomaIQ.Q
32.50%

Avira AntiVirus
APPL/DomaIQ.Gen
32.50%

Jiangmin
Pack.Mal.AntiVM
32.50%

G Data
Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ
32.50%

Panda Antivirus
Trj/Genetic.gen, Suspicious file
32.50%

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q
30.00%

Sophos
Generic PUA MI, DomainIQ pay-per install
30.00%

F-Secure
Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ
30.00%

Dr.Web
Trojan.DownLoader11.5325
30.00%

The domain www.dowskjd.com has been seen to resolve to the following 3 IP addresses.

ip-184-168-221-42.ip.secureserver.net
August 5, 2016

November 10, 2015

comfort73.thebestdeal1b.com
May 2, 2014

File downloads found at URLs served by www.dowskjd.com.

1 / 68      (Adware)
http://www.dowskjd.com/.../Java.exe  (65eaecfb93a12bb822a67551f9f8717d)

The following 8 files have been seen to comunicate with www.dowskjd.com in live environments.

URL:
http://www.dowskjd.com/

Title:
“dowskjd.com”

Web server:
Apache

Facebook:
Shares:  1

Statistics are for the previous month.