dl.datagenserv.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.datagenserv.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Morgan, Utah within the United States.
Registrar:
GODADDY.COM, LLC

Server location:
Utah, United States (US)

Create date:
Tuesday, February 18, 2014

Expires date:
Saturday, February 18, 2017

Updated date:
Sunday, December 27, 2015

ASN:
AS20446 HIGHWINDS3 - Highwinds Network Group, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.KimahriSoftwareinc.F, PUP.Downloader.F, PUP.Downloader.Wwnurzguptr.H, PUP.Brightcicrle.Brightcircle.Installer (M), PUP.SIMONAVIORICAMARIN.Installer (M), PUP.Downloader.Installer (M), PUP.Crossrider.CinemaVi.Installer.Meta (M), Adware.BrightCircle.Installer (M)
100.00%

Malwarebytes
PUP.Optional.ScramblePacker.A, PUP.Optional.CrossRider.A
33.33%

Dr.Web
Trojan.Crossrider.41, infected with Trojan.Crossrider.24543, infected with Trojan.Crossrider.27895
26.67%

Panda Antivirus
PUP/PlusHD, Trj/Genetic.gen
26.67%

Clam AntiVirus
Win.Adware.Agent-6597
26.67%

VIPRE Antivirus
Crossrider, Threat.4789396
13.33%

G Data
Win32.Application.Plush
13.33%

ESET NOD32
Win32/Packed.ScrambleWrapper.M potentially unwanted application
13.33%

Trend Micro House Call
TROJ_GE.B5A736DE, Suspici.AB01381A
13.33%

IKARUS anti.virus
PUA.PlusHD, PUA.CrossRider
13.33%

NANO AntiVirus
Trojan.Win32.Generic.dbxnnd
6.67%

Kaspersky
not-a-virus:AdWare.Win32.Agent
6.67%

Quick Heal
AdWare.Agent.r4 (Not a Virus)
6.67%

Vba32 AntiVirus
AdWare.Agent
6.67%

The domain dl.datagenserv.com has been seen to resolve to the following 2 IP addresses.

tlb.hwcdn.net
February 9, 2016

hwcdn.net
February 9, 2016

File downloads found at URLs served by dl.datagenserv.com.

8 / 68      (Adware)
http://dl.datagenserv.com/virt/.../smrts.exe  (32f20f30c6f650ed2d506780089b8594)

1 / 68      (Adware)
http://dl.datagenserv.com/full/.../setup.exe  (138ad2c748e7633255c514aa0441074f)

3 / 68      (Adware)
http://dl.datagenserv.com/virt/.../smrts.exe  (48cab9f96e66cecd5c6aaca9fe4b6ced)

10 / 68    (Adware)
http://dl.datagenserv.com/virt/.../smrts.exe  (2bba95b10118c5fbda04505869f27ea9)

1 / 68      (Adware)
http://dl.datagenserv.com/shop/.../setup.exe  (f763c25d4157411906c349aec2687838)

1 / 68      (Adware)
http://dl.datagenserv.com/catch/.../setup.exe  (2d2b8e625f51eeda5010c1ee357dcce8)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (PUP)
http://dl.datagenserv.com/catch/.../setup.exe  (d5b6deeb308db6c507aae2f3675a9f12)

5 / 68      (Adware)
http://dl.datagenserv.com/catch/.../setup.exe  (109fcad88400173e5b35c1cfd8a00b66)

1 / 68      (Adware)
http://dl.datagenserv.com/virt/.../sms15.exe  (efd3c10275a01d174458da256e6db67a)

5 / 68      (Adware)

6 / 68      (Adware)
http://dl.datagenserv.com/catch/.../setup.exe  (b5c85c6e763f5d972c16a00d37a8a377)

1 / 68      (Adware)
http://dl.datagenserv.com/21/all/hqv/.../setup.exe  (c5e652fdae8e240b9fb2e479d5ec0549)

1 / 68      (Adware)
http://dl.datagenserv.com/21/all/hds/.../setup.exe  (88acc0f1527b479f733d39c6ccf233ed)