www.wajam.com

Martin-Luc Archambault

Domain Information

The domain www.wajam.com registered by Martin-Luc Archambault was initially registered in August of 2007 through Moniker Online Services. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the Wajam network.
Registrar:
Moniker Online Services

Server location:
Quebec, Canada (CA)

Create date:
Thursday, August 09, 2007

Expires date:
Tuesday, August 09, 2016

Updated date:
Friday, March 15, 2013

ASN:
AS19743 WAJAM - Wajam

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Wajam.O, Threat.Win.Reputation.IMP, PUP.Wajam.N, PUP.WajamInternetTechnologies.N, PUP.Wajam.J, PUP.Wajam.P, PUP.WajamInternetTechnologies.P, PUP.Wajam.WajamInternetTechnologies.Installer (M), PUP.Wajam.Meta (M), PUP.Wajam.WajamInt.Installer (M), PUP.Wajam.Installer (M)
100.00%

VIPRE Antivirus
Wajam
68.29%

Dr.Web
Adware.Searcher.2542, Adware.Searcher.2593, Adware.Searcher.2467, Trojan.DownLoader8.47497, Adware.Searcher.2648
58.54%

Boost by Reason
Trojan.Adw.Wajam.O, Optional.Wajam.N, Optional.WajamInternetTechnologies.N
46.34%

ESET NOD32
Win32/Wajam, Win32/Wajam (variant), Win32/Wajam.A potentially unwanted
43.90%

Malwarebytes
PUP.Optional.Wajam, PUP.Optional.Wajam.A
41.46%

AVG
Downloader.Generic13, AdInject.Wajam, Wajam.F
34.15%

Trend Micro House Call
TROJ_GEN.R047H01HF13, TROJ_GEN.F47V0813, TROJ_GEN.F47V1111, TROJ_GEN.F47V1213, TROJ_GEN.F47V0114, TROJ_GEN.F47V0328, TROJ_GEN.F47V0513, Suspicious_GEN.F47V0610, Suspicious_GEN.F47V1225
29.27%

McAfee
Artemis!1D72D31CFF3E, Artemis!2A95B320119E, Artemis!637E3A385C4B, Artemis!D87E18584CB1, Artemis!8350BB40E623, Artemis!517BE2E4E358, Artemis!FED57C859A09, Artemis!97E8F6B46DE9
21.95%

McAfee Web Gateway
Artemis!1D72D31CFF3E, Artemis!2A95B320119E, Artemis!637E3A385C4B, Heuristic.BehavesLike.Win32.Suspicious-PKR.G, Artemis!8350BB40E623
21.95%

Kingsoft AntiVirus
Win32.Troj.Undef.(kcloud), VIRUS_UNKNOWN, Win32.Troj.Generic.(kcloud)
17.07%

Bkav FE
W32.Clod1a0.Trojan, W32.Clod08b.Trojan, W32.Clod34e.Trojan, W32.Clodb16.Trojan, W32.Clod83f.Trojan, W32.HfsAdware
14.63%

G Data
Win32.Application.Wajam
14.63%

IKARUS anti.virus
Trojan.Agent, AdWare.Wajam
9.76%

Zillya! Antivirus
Trojan.Win32.1DB12147
7.32%

The domain www.wajam.com has been seen to resolve to the following 4 IP addresses.

January 4, 2016

March 27, 2014

March 27, 2014

March 27, 2014

File downloads found at URLs served by www.wajam.com.

7 / 68      (Adware)
http://www.wajam.com/.../wajam_install.exe  (4d5c96cc27a42e817fae2fc5fd4ec6d9)

1 / 68      (Adware)
http://www.wajam.com/.../Wajam.exe  (2ecb19eb29ff403a6970f7e481c43602)

1 / 68      (Adware)
http://www.wajam.com/.../wajam_uninstall.exe  (d2380068dd693b49f83dda96aaf36c69)

13 / 68    (Adware)
http://www.wajam.com/.../wajam_adknowledge.exe  (e62cac810da9bd5ea9a868d781c60866)

1 / 68      (PUP)
http://www.wajam.com/.../wajam_validate.exe  (f0482a121688913caf62d28027d5d7df)

8 / 68      (Adware)
http://www.wajam.com/.../wajam_download.exe  (75da74efcebf13be53cbdc4ac4ae75d5)

16 / 68    (Adware)
http://www.wajam.com/.../wajam_setup.exe  (97e8f6b46de9e1e3e312de78ed90e17f)

4 / 68      (Adware)
https://www.wajam.com/.../wajam_uninstall.exe  (48c78dd124c635c6ef7558fde373b1ad)

The following 3 files have been seen to comunicate with www.wajam.com in live environments.

URL:
http://www.wajam.com/

Google Analytics:
UA-24279481

Title:
“Wajam.com | Home - Get Social Recommendations From Your Friends”

Description:
“Add relevant social results and recommendations from your friends and contacts, to your regular search results. What your friends share matters | Wajam.com”

SSL certificate subject:
CN=*.wajam.com, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT90829889

SSL certificate issuer:
CN=RapidSSL SHA256 CA - G3, O=GeoTrust Inc., C=US

Web server:
Apache/2.4.7 (Ubuntu)

Facebook:
Likes:  126
Shares:  210
Comments:  110

Statistics are for the previous month.