install-cdn.mywildwestapp.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain install-cdn.mywildwestapp.com is registered by proxy through GODADDY.COM, LLC and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Fort Myers, Florida within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Florida, United States (US)

Create date:
Tuesday, December 16, 2014

Expires date:
Saturday, December 16, 2017

Updated date:
Monday, March 21, 2016

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Yontoo.WildWest, Threat.Yontoo.Installer, PUP.Yontoo.WildWest.Installer (M), PUP.Yontoo.WildWest (M)
100.00%

VIPRE Antivirus
Yontoo, Threat.4150696
25.00%

Dr.Web
Trojan.Yontoo.1734, Trojan.Siggen6.31097
20.83%

NANO AntiVirus
Trojan.Win32.Yontoo.dnkubo, Trojan.Nsis.BrowseFox.dnxihk, Trojan.Win32.Siggen6.droatj
20.83%

Avira AntiVirus
ADWARE/BrowseFox.Gen2
20.83%

ESET NOD32
Win32/BrowseFox.AE potentially unwanted application, Win32/BrowseFox.C potentially unwanted application
16.67%

K7 AntiVirus
Trojan , Unwanted-Program
16.67%

Baidu Antivirus
Adware.Win32.BrowseFox
16.67%

AVG
BrowseFox, Adware AdPlugin
16.67%

Bkav FE
W32.HfsAdware
16.67%

Rising Antivirus
PE:Adware.BrowseFox!6.1D8B, NS:PUF.SilenceInstaller!1.9DDF
16.67%

Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen, HEUR/QVM42.0.Malware.Gen
16.67%

herdProtect (fuzzy)
a variant of 722e814823ecce459da805b5313d8ed1fc3b842a, a variant of c181a2984d68ebbbd40bda988e2b3399b7ae1e4e, a variant of 7784156601baa16e2879a543c1082ead9945c2ed
16.67%

Trend Micro House Call
TROJ_GEN.R047C0OCM15, Suspicious_GEN.F47V0313
16.67%

Malwarebytes
PUP.Optional.WildWest.A
12.50%

The domain install-cdn.mywildwestapp.com has been seen to resolve to the following 22 IP addresses.

a104-96-220-163.deploy.static.akamaitechnologies.com
August 26, 2016

a23-15-9-80.deploy.static.akamaitechnologies.com
July 25, 2016

a23-15-9-8.deploy.static.akamaitechnologies.com
July 25, 2016

a23-201-103-136.deploy.static.akamaitechnologies.com
May 25, 2016

a23-201-103-138.deploy.static.akamaitechnologies.com
May 25, 2016

May 16, 2016

May 16, 2016

a104-96-220-147.deploy.static.akamaitechnologies.com
May 15, 2016

a104-96-220-169.deploy.static.akamaitechnologies.com
May 15, 2016

a23-15-7-163.deploy.static.akamaitechnologies.com
April 7, 2016

a23-15-7-136.deploy.static.akamaitechnologies.com
April 7, 2016

a23-0-160-48.deploy.static.akamaitechnologies.com
March 3, 2016

a23-0-160-9.deploy.static.akamaitechnologies.com
March 3, 2016

a184-51-126-96.deploy.static.akamaitechnologies.com
February 28, 2016

a23-62-6-81.deploy.static.akamaitechnologies.com
February 27, 2016

a23-62-6-64.deploy.static.akamaitechnologies.com
February 27, 2016

a184-51-126-131.deploy.static.akamaitechnologies.com
February 23, 2016

a184-51-126-160.deploy.static.akamaitechnologies.com
February 23, 2016

a23-15-8-226.deploy.static.akamaitechnologies.com
February 21, 2016

a23-15-8-216.deploy.static.akamaitechnologies.com
February 21, 2016

a184-51-126-81.deploy.static.akamaitechnologies.com
February 6, 2016

a184-51-126-104.deploy.static.akamaitechnologies.com
February 6, 2016

File downloads found at URLs served by install-cdn.mywildwestapp.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

20 / 68    (Adware)

13 / 68    (Adware)

1 / 68      (Adware)

11 / 68    (Adware)

20 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

30 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

The following 275 files have been seen to comunicate with install-cdn.mywildwestapp.com in live environments.

 
Latest 20 of 322 files

URL:
http://install-cdn.mywildwestapp.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)