dl.pocolegion.com
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain dl.pocolegion.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2016. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Massachusetts, United States (US)
Create date:
Monday, January 4, 2016
Expires date:
Wednesday, January 4, 2017
Updated date:
Friday, February 5, 2016
ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US
Scanner detections:
Detections (96% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Solimba.POPELERS (M), PUP.PIGATERS (M), PUP.Solimba.POPELERS.Bundler (M), PUP.Solimba.Investen (M), PUP.Solimba.CAROSENT (M), PUP.Solimba.EilioDev (M), PUP.Solimba (M), PUP (M)
97.96%
Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.04%
F-Secure
Application:W32/Generic.70053c248f!Online
2.04%
The domain dl.pocolegion.com has been seen to resolve to the following 10 IP addresses.
a184-25-63-8.deploy.static.akamaitechnologies.com
May 6, 2015
a184-25-63-9.deploy.static.akamaitechnologies.com
May 6, 2015
a23-62-7-160.deploy.static.akamaitechnologies.com
May 6, 2015
a23-62-7-146.deploy.static.akamaitechnologies.com
May 6, 2015
a184-51-126-88.deploy.static.akamaitechnologies.com
March 30, 2015
a184-51-126-75.deploy.static.akamaitechnologies.com
March 30, 2015
a23-0-160-206.deploy.static.akamaitechnologies.com
February 23, 2015
a23-0-160-216.deploy.static.akamaitechnologies.com
February 23, 2015
File downloads found at URLs served by dl.pocolegion.com.
Latest 30 of 86 download URLs
The following 126 files have been seen to comunicate with dl.pocolegion.com in live environments.
URL:
http://dl.pocolegion.com/