The domain s8.qnagya.com is registered by proxy through NAMESILO, LLC and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in North Kansas City, Missouri within the United States which resides on the DataShack, LC network.
Registrant:
See PrivacyGuardian.org
Server location:
Missouri, United States (US)
Create date:
Sunday, December 14, 2014
Expires date:
Monday, December 14, 2015
Updated date:
Saturday, June 6, 2015
ASN:
AS33387 DATASHACK - DataShack, LC,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.PluginUpdateSL.F, DownloadManager.F, PUP.Installer.TrafficSpace, PUP.Softpulse.Bundler
100.00%
Avira AntiVirus
APPL/Softpulse.aone, ADWARE/Adware.Gen, TR/Spy.Gen, PUA/SoftPulse.oani
100.00%
Kaspersky
not-a-virus:AdWare.Win32.SoftPulse, not-a-virus:AdWare.Win32.AirAdInstaller, not-a-virus:Downloader.Win32.DriverUpd
75.00%
VIPRE Antivirus
Threat.4783235, Iminent, Threat.4150696
75.00%
ESET NOD32
Win32/SoftPulse.S potentially unwanted application, Win32/AirAdInstaller.E potentially unwanted application, Win32/SoftPulse.AE potentially unwanted application
75.00%
F-Secure
Gen:Variant.Adware.Symmi.49537, Gen:Trojan.Heur.VB.pm0@dmGbWygi, Riskware.Gen:Variant.Application.Graftor
75.00%
Agnitum Outpost
Packed/PECompact, PUA.AirAd, PUA.Downloader
75.00%
AhnLab V3 Security
Win-PUP/SoftPulse, PUP/Win32.Installer, PUP/Win32.SoftPulse
75.00%
Panda Antivirus
Trj/Genetic.gen, Generic Suspicious
75.00%
Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48, PE:PUF.Airinstall!1.9C4C, NS:PUF.SilenceInstaller!1.9DDF
75.00%
AVG
Generic, Potentially harmful program Downloader.FDG
75.00%
Dr.Web
Trojan.Domaiq.41, Trojan.SMSSend.5383, Trojan.Domaiq.185
75.00%
Emsisoft Anti-Malware
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Strictor.82398
50.00%
Lavasoft Ad-Aware
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Application.Graftor.181402
50.00%
Norman
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Application.Graftor.181402
50.00%
The domain s8.qnagya.com has been seen to resolve to the following IP address.
File downloads found at URLs served by s8.qnagya.com.
URL:
http://s8.qnagya.com/
Web server:
Apache/2.2.9 (APMServ) PHP/5.2.6
Related Domains