sj.xdirectx.com

PRIVACYDOTLINK CUSTOMER 978222

Domain Information

The domain sj.xdirectx.com registered by PRIVACYDOTLINK CUSTOMER 978222 was initially registered in May of 2012 through UNIREGISTRAR CORP. Currently this domain has been known to host various forms of malware. The hosted servers are located in New York City, New York within the United States.
Registrar:
UNIREGISTRAR CORP

Server location:
New York, United States (US)

Create date:
Wednesday, May 9, 2012

Expires date:
Tuesday, May 9, 2017

Updated date:
Monday, April 11, 2016

ASN:
AS3257 GTT-BACKBONE Tinet Spa, DE

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.GenericKD.2728176
100.00%

nProtect
Trojan.GenericKD.2728176
100.00%

Quick Heal
TrojanDownloader.Banload.r4
100.00%

Malwarebytes
Trojan.Banker.MSIL
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Bitdefender
Trojan.GenericKD.2728176
100.00%

K7 AntiVirus
Trojan-Downloader
100.00%

Arcabit
Trojan.Generic.D29A0F0
100.00%

ESET NOD32
MSIL/TrojanDownloader.Banload.ER (variant)
100.00%

Trend Micro House Call
TROJ_BANLOAD.TLX
100.00%

avast!
Win32:Banker-MGN [Trj]
100.00%

Kaspersky
HEUR:Trojan.Win32.Generic
100.00%

NANO AntiVirus
Trojan.Win32.Agent.dxbude
100.00%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
100.00%

Lavasoft Ad-Aware
Trojan.GenericKD.2728176
100.00%

The domain sj.xdirectx.com has been seen to resolve to the following IP address.

April 19, 2016

File downloads found at URLs served by sj.xdirectx.com.

URL:
http://sj.xdirectx.com/

SSL certificate subject:
CN=*.xdirectx.com, OU=COMODO SSL Wildcard, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
Apache (PHP/5.5.24)