h8xjd.0o99hbzi.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain h8xjd.0o99hbzi.com is registered by proxy through NAME.COM, INC. and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kirkland, Washington within the United States which resides on the eNom, Incorporated network.
Registrar:
NAME.COM, INC.

Server location:
Washington, United States (US)

Create date:
Tuesday, February 24, 2015

Expires date:
Friday, February 24, 2017

Updated date:
Monday, March 21, 2016

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!F551B8E83B5E
100.00%

Malwarebytes
PUP.Optional.MagnoPlayer.A
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

K7 AntiVirus
Trojan
100.00%

Agnitum Outpost
Riskware.Confuser
100.00%

Norman
Obfuscated.gen!r
100.00%

Trend Micro House Call
TROJ_SPNV.03BL15
100.00%

avast!
Win32:Malware-gen
100.00%

Kaspersky
Trojan.MSIL.VkHost
100.00%

Avira AntiVirus
TR/Dropper.MSIL.124520
100.00%

ESET NOD32
MSIL/Packed.Confuser.J suspicious (variant)
100.00%

IKARUS anti.virus
PUA.MSIL.Confuser
100.00%

AVG
MSIL7
100.00%

Baidu Antivirus
Hacktool.MSIL.Confuser
100.00%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
100.00%

The domain h8xjd.0o99hbzi.com has been seen to resolve to the following IP address.

rc2.sjl01.dmtracker.com
April 7, 2016

File downloads found at URLs served by h8xjd.0o99hbzi.com.

15 / 68    (PUP)
http://h8xjd.0o99hbzi.com/.../MagnoPlayerSetup.exe  (f551b8e83b5e535177d0dfb903435129)

The following 35 files have been seen to comunicate with h8xjd.0o99hbzi.com in live environments.

 
Latest 20 of 47 files

URL:
http://h8xjd.0o99hbzi.com/

Google Analytics:
UA-2249740

Title:
“0O99hbzi.com”

Description:
“Find Cash Advance, Debt Consolidation and more at 0O99hbzi.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. 0O99hbzi.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains