www.updownday.com

REACTIVATION PERIOD

Domain Information

The domain www.updownday.com registered by REACTIVATION PERIOD was initially registered in April of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Little Rock, Arkansas within the United States which resides on the Black Lotus Communications network.
Registrar:
ENOM, INC.

Server location:
Arkansas, United States (US)

Create date:
Thursday, April 17, 2014

Expires date:
Friday, April 17, 2015

Updated date:
Monday, June 29, 2015

ASN:
AS32421 BLCC - Black Lotus Communications

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.E, PUP.Tuguu.PaymentsInteractive.Bundler (M), PUP.Tuguu.Payments.Bundler (M)
100.00%

MicroWorld eScan
Adware.DomaIQ.AN, Dropped:Adware.Generic.1004246
40.00%

nProtect
Adware.DomaIQ.AN, Trojan-Clicker/W32.Lollipop.449024
40.00%

McAfee
RDN/Generic PUP.x!c2r, CryptDomaIQ
40.00%

Malwarebytes
PUP.Optional.BundleInstaller.A
40.00%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
40.00%

K7 Gateway Antivirus
Unwanted-Program
40.00%

K7 AntiVirus
Unwanted-Program
40.00%

NANO AntiVirus
Trojan.Win32.DomaIQ.cwydit, Riskware.Win32.Lollipop.cxalla
40.00%

Kaspersky
not-a-virus:AdWare.Win32.Lollipop
40.00%

Bitdefender
Adware.DomaIQ.AN, Dropped:Adware.Generic.1004246
40.00%

Agnitum Outpost
PUA.Lollipop
40.00%

Lavasoft Ad-Aware
Adware.DomaIQ.AN, Dropped:Adware.Generic.1004246
40.00%

Sophos
DomainIQ pay-per install
40.00%

Comodo Security
Application.Win32.DomaIQ.PUR
40.00%

The domain www.updownday.com has been seen to resolve to the following IP address.

May 1, 2014

File downloads found at URLs served by www.updownday.com.

1 / 68      (Adware)
http://www.updownday.com/.../Java.exe  (22335856b8c1659a03123a2bbf5ee787)

1 / 68      (Adware)
http://www.updownday.com/.../Java.exe  (7e88ab0de5224593c308fe39887b93a3)

1 / 68      (Adware)
http://www.updownday.com/.../Java.exe  (b4152b1ec07a35fb27dedc489f12a133)

38 / 68    (Adware)
http://www.updownday.com/.../Java.exe  (71ec8728a5df04eadd539818f1aff4db)

30 / 68    (Adware)
http://www.updownday.com/.../Java.exe  (0f83664507c4da7e82756ba3bb9168c0)