down.pe-waxo.com

REACTIVATION PERIOD

Domain Information

The domain down.pe-waxo.com registered by REACTIVATION PERIOD was initially registered in March of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Friday, March 14, 2014

Expires date:
Tuesday, March 14, 2017

Updated date:
Tuesday, March 15, 2016

ASN:
AS16265 LEASEWEB-NETWORK LeaseWeb B.V.,NL

Root domain:

Scanner detections:
Detections  (91% detected)

Scan engine
Details
Detections

ESET NOD32
NSIS/TrojanDownloader.Adload.R trojan, Win32/Adware.PEerMarket.A application
90.00%

avast!
Downloader-ABF [Trj], Adware-gen [Adw], Malware-gen, Evo-gen [Susp], Win32:Dropper-gen [Drp], Win32:Adware-gen [Adw], Win32:Evo-gen [Susp]
85.00%

Kaspersky
not-a-virus:AdWare.NSIS.Adload, not-a-virus:AdWare.Win32.AdLoad
55.00%

Dr.Web
Trojan.DownLoader11.52754, Trojan.DownLoader11.50808, infected with Trojan.Vittalia.1482, Detection.Undefined, Trojan.DownLoader12.25584
50.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
45.00%

Norman
Adware.Adload.T, Adware.Generic.1314899, Application.Bundler.LX
45.00%

Emsisoft Anti-Malware
Adware.Adload.T, Adware.Generic.1314899, Trojan.Generic.15269066
40.00%

Microsoft Security Essentials
Threat.Undefined
30.00%

Avira AntiVirus
Adware/AgentCV.136471, ADWARE/AgentCV.A.11775, ADWARE/Adware.Gen7, TR/Dldr.Adload.100769.1
25.00%

F-Prot
W32/A-d1dcd27f, W32/AdLoad.BW.gen
20.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, AdWare.Adload
20.00%

Qihoo 360 Security
Malware.QVM06.Gen, HEUR/QVM42.0.Malware.Gen, Win32/Trojan.d1b, HEUR/QVM42.1.Malware.Gen
20.00%

AVG
Adware AdLoad.Q, Adware Generic6.AJDA
20.00%

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader
15.00%

NANO AntiVirus
Trojan.Nsis.Downloader.dmtokw, Riskware.Nsis.AdLoad.drxdka
15.00%

The domain down.pe-waxo.com has been seen to resolve to the following 2 IP addresses.

April 17, 2016

November 29, 2014

File downloads found at URLs served by down.pe-waxo.com.

0 / 68
http://down.pe-waxo.com/.../codec.exe  (9e33efb2153f8e089e3bb7f71869b169)

0 / 68
http://down.pe-waxo.com/.../codec.exe  (361b4135ddda4ea85f1b01e899b8521a)

5 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (592e4f0753c8115aa80f04d964019c49)

4 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (ad6dbb66f9d2a518a55a86789250dc2d)

5 / 68      (PUP)

1 / 68      (Adware)
http://down.pe-waxo.com/.../codec.exe  (3e8401ac723b5b02ebad7a3904f2ee79)

4 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (76e4263358fc45592c5d5cfa9f9a69db)

4 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (f28a30b41675e9314a038ce993b69a93)

8 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (397135f0a2487b0e57924d127bab5ef8)

5 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (1b6c4fcdbb881fd3af0a8147e6054b98)

5 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (fbdb483d4c47c738250285c12cf54a04)

6 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (096d2ba24c91036721188f2b7a4a8878)

6 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (4521af57d580d4021d93d84a68287f23)

7 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (fe7df1f3be1a67f8b6d88e7a361e9143)

8 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (afec4a40691d0c2f4584c65db8228a29)

13 / 68    (PUP)
http://down.pe-waxo.com/.../codec.exe  (2fa8ac8e780f5caeb7bc1465732d353e)

8 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (6ee8cbc4f360cbed447ea8ca14f426c2)

14 / 68    (PUP)
http://down.pe-waxo.com/.../codec.exe  (9c9d9aa871e57325208a3860a2ab294a)

6 / 68      (PUP)
http://down.pe-waxo.com/.../codec.exe  (4a120e37dd59ba5c53187b4a753b31e8)

14 / 68    (PUP)
http://down.pe-waxo.com/.../codec.exe  (1c528ef5c02408a2c97233fb5dc8f043)

15 / 68    (PUP)
http://down.pe-waxo.com/.../codec.exe  (6318d674b3e24cdbb99b721af1579139)

7 / 68      (Malware)
http://down.pe-waxo.com/.../codec.exe  (07f570a8e48260818aef96ed75c47f84)

URL:
http://down.pe-waxo.com/

Google Analytics:
UA-2249740

Title:
“Pe-Waxo.com”

Description:
“Find Cash Advance, Debt Consolidation and more at Pe-Waxo.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Pe-Waxo.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains