The domain www.lpmxp2040.com registered by Domain Registries Foundation was initially registered in March of 2016 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrant:
Domain Registries Foundation
Registrar:
GODADDY.COM, LLC
Server location:
Oregon, United States (US)
Create date:
Wednesday, March 30, 2016
Expires date:
Thursday, March 30, 2017
Updated date:
Wednesday, March 30, 2016
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.DigitalPluginSL.M, PUP.Installer.DigitalPluginSL.F, PUP.Bundler.Softpulse, PUP.Vittalia.InstallHelper.Installer (M), PUP.Softpulse.DigitalPlugin.Bundler (M), PUP.Bundlore.Bundler (M), PUP.Softpulse.DigitalP.Bundler (M), PUP.Softpulse.PluginUp.Bundler (M), PUP.Softpulse (M)
100.00%
VIPRE Antivirus
Threat.4150696, Threat.4782985
20.00%
avast!
Win32:SoftPulse-S [PUP], Adware-CKN [PUP]
20.00%
IKARUS anti.virus
PUA.DigiPlug, PUA.SoftPulse, PUA.DownloadAssistant
20.00%
AVG
Generic, Potentially harmful program Downloader
20.00%
Avira AntiVirus
TR/Dropper.Gen
16.67%
McAfee
SoftPulse, Socrydo
16.67%
K7 AntiVirus
Unwanted-Program
16.67%
Sophos
DomainIQ pay-per install, SoftPulse
16.67%
Panda Antivirus
Trj/Genetic.gen, Trj/Buzus.BR
16.67%
Dr.Web
Trojan.Packed.28257, Trojan.Vittalia.55
16.67%
NANO AntiVirus
Trojan.Win32.MLW.dcoqvj, Trojan.Win32.Vittalia.dqfrig
16.67%
ESET NOD32
Win32/SoftPulse (variant)
13.33%
Malwarebytes
PUP.Optional.DomaIQ
13.33%
Agnitum Outpost
Trojan.Buzus
13.33%
The domain www.lpmxp2040.com has been seen to resolve to the following 7 IP addresses.
ec2-54-213-32-162.us-west-2.compute.amazonaws.com
August 13, 2014
ec2-54-186-57-35.us-west-2.compute.amazonaws.com
August 13, 2014
ec2-54-244-33-78.us-west-2.compute.amazonaws.com
August 12, 2014
ec2-54-187-235-203.us-west-2.compute.amazonaws.com
August 12, 2014
ec2-54-213-97-204.us-west-2.compute.amazonaws.com
August 7, 2014
ec2-54-186-140-71.us-west-2.compute.amazonaws.com
August 7, 2014
File downloads found at URLs served by www.lpmxp2040.com.
Latest 30 of 30 download URLs
URL:
http://www.lpmxp2040.com/
Network:
Amazon Web Services (AWS), running an EC2 instance