downloadnex.com
Contact Privacy Inc. Customer 0136433912 (Proxy Registrant)
Domain Information
The domain downloadnex.com is registered by proxy through TUCOWS DOMAINS INC. and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
Contact Privacy Inc. Customer 0136433912
Registrar:
TUCOWS DOMAINS INC.
Server location:
Virginia, United States (US)
Create date:
Tuesday, January 14, 2014
Expires date:
Saturday, January 14, 2017
Updated date:
Wednesday, January 13, 2016
ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.ComputeClient.F, PUP.Adknowledge.ComputeClient.Installer (M), PUP.Adknowledge.ComputeC.Installer (M), PUP.Air Software (M)
100.00%
VIPRE Antivirus
Threat.4778314
71.43%
MicroWorld eScan
Gen:Variant.Kazy.439479
71.43%
Bitdefender
Gen:Variant.Kazy.439479
71.43%
Emsisoft Anti-Malware
Gen:Variant.Kazy.439479
71.43%
nProtect
Trojan.GenericKD.1618449
71.43%
McAfee
Artemis!0FF2B0F7AD04
71.43%
Malwarebytes
PUP.Optional.GigaClicks.A, PUP.Optional.Ibryte
71.43%
K7 AntiVirus
Riskware , Unwanted-Program
71.43%
Trend Micro House Call
TROJ_CLIKUG.A
71.43%
avast!
Win32:Adware-gen [Adw]
71.43%
Kaspersky
Trojan-Clicker.Win32.Agent
71.43%
Dr.Web
Trojan.DownLoader11.32275, Trojan.DownLoad3.34676
71.43%
Trend Micro
TROJ_CLIKUG.A
71.43%
Microsoft Security Essentials
TrojanClicker:Win32/Clikug.A
71.43%
The domain downloadnex.com has been seen to resolve to the following 4 IP addresses.
ec2-54-84-187-203.compute-1.amazonaws.com
April 14, 2016
ec2-52-20-167-28.compute-1.amazonaws.com
December 23, 2015
ec2-52-2-5-65.compute-1.amazonaws.com
August 11, 2015
ec2-50-16-246-149.compute-1.amazonaws.com
September 18, 2014
File downloads found at URLs served by downloadnex.com.
The following 3 files have been seen to comunicate with downloadnex.com in live environments.
URL:
http://downloadnex.com/
Network:
Amazon Web Services (AWS), running an EC2 instance
Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)