www.jakva.com

Barry Lange

Domain Information

The domain www.jakva.com registered by Barry Lange was initially registered in June of 2015 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Prolexic Technologies, Inc. network.
Registrar:
Moniker Online Services

Server location:
Massachusetts, United States (US)

Create date:
Sunday, June 7, 2015

Expires date:
Tuesday, June 7, 2016

Updated date:
Tuesday, December 15, 2015

ASN:
AS32787 PROLEXIC-TECHNOLOGIES-DDOS-MITIGATION-NETWORK - Prolexic Technologies, Inc.,US

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.L, PUP.Tuguu.PaymentsInteractive.Bundler (M), PUP.Tuguu (M)
100.00%

avast!
PUP-gen [PUP], DomaIQ-CC [PUP]
40.00%

VIPRE Antivirus
Threat.4783262, Threat.4150696
40.00%

Microsoft Security Essentials
Threat.Undefined
40.00%

Dr.Web
Trojan.DownLoader9.21779, Trojan.Packed.142
40.00%

AVG
Adware Skodna.Bundle_r.Y, Adware DomaIQ_r.G
40.00%

ESET NOD32
Win32/DomaIQ.AZ potentially unwanted application, Win32/DomaIQ.BB potentially unwanted application
40.00%

MicroWorld eScan
Application.Bundler.DomaIQ.Q
40.00%

nProtect
Trojan-Clicker/W32.Lollipop.320544, Trojan-Clicker/W32.Lollipop.394120
40.00%

Quick Heal
Adware.DomaIQ.BT5
40.00%

McAfee
CryptDomaIQ, Program.CryptDomaIQ
40.00%

Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.Domalq
40.00%

Zillya! Antivirus
Adware.DomaIQ.Win32.129, Adware.DomaIQ.Win32.186
40.00%

K7 AntiVirus
Unwanted-Program , Riskware
40.00%

NANO AntiVirus
Trojan.Win32.DomaIQ.ctadmg, Riskware.Win32.Lolipop.cvxwob
40.00%

The domain www.jakva.com has been seen to resolve to the following IP address.

unknown.prolexic.com
April 15, 2016

File downloads found at URLs served by www.jakva.com.

1 / 68      (Adware)
http://www.jakva.com/.../flashplayer.exe  (c112d96148f7a2222f8787518d9be6e5)

0 / 68
http://www.jakva.com/.../flashplayer.exe  (extreme flash player_v1.1.0.exe)

1 / 68      (Adware)
http://www.jakva.com/.../flashplayer.exe  (239ef73851ed3d474f3d29b5756efc92)

1 / 68      (Adware)
http://www.jakva.com/.../flashplayer.exe  (d659559738b2110e0ca8663504a5c871)

33 / 68    (Adware)
http://www.jakva.com/.../flashplayer.exe  (7caf267fa8f515f4b5081820bce3de90)

32 / 68    (Adware)
http://www.jakva.com/.../flashplayer.exe  (bb2e55969e658b0efdeecc25a4a1832b)

The following 36 files have been seen to comunicate with www.jakva.com in live environments.

 
Latest 20 of 38 files

URL:
http://www.jakva.com/

Title:
“jakva.com - This website is for sale! - jakva Resources and Information.”

Description:
“This website is for sale! jakva.com is your first and best source for all of the information you’re looking for. From general topics to more of what you would expect to find here, jakva.com has it all. We hope you find what you are searching for...”

Web server:
Apache (PHP/5.3.3-7+squeeze28)