dl.elex.soft365.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.elex.soft365.com is registered by proxy through GODADDY.COM, LLC and was originally registered in July of 2004. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Remove Malware from dl.elex.soft365.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Saturday, July 24, 2004

Expires date:
Tuesday, July 24, 2018

Updated date:
Tuesday, April 28, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BanyanTreeTechnologyLimited.I, PUP.BanyanTreeTechnologyLimited.N, PUP.BanyanTreeTechnologyLimited.G, PUP.BanyanTreeTechnologyLimited.F, PUP.Installer.BanyanTreeTechnologyLimited.K, PUP.BeijingELEXTechnologyCoLtd.G, PUP.BanyanTreeTechnology (M), PUP.BanyanTreeTechnology.Installer (M)
100.00%

VIPRE Antivirus
Elex Installer
90.70%

ESET NOD32
Win32/ELEX (variant), Win32/ELEX.C potentially unwanted (variant)
86.05%

AVG
MalSign.Generic
83.72%

avast!
Adware-BEM [Adw], Win32:Adware-BEM [Adw], Win32:Adware-BEN [Adw], Win32:Malware-gen, Win32:Evo-gen [Susp]
81.40%

IKARUS anti.virus
AdWare.Win32.ELEX, Win32.SuspectCrc, AdWare.Gen2
81.40%

Trend Micro House Call
TROJ_GEN.F47V0925, TROJ_GEN.F47V0722, TROJ_GEN.F47V0802, TROJ_GEN.F47V0724, TROJ_GEN.F47V0719, TROJ_GEN.F47V0607, TROJ_GEN.F47V0710
76.74%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
76.74%

G Data
Win32.Adware.Elex, Gen:Variant.Symmi.31573, Win32.Trojan.Agent.GFMSEQ, Win32.Trojan.Wysotot, Gen:Variant.Adware.Strictor.64090
76.74%

Dr.Web
Adware.Mutabaha.23, Adware.Mutabaha.43, Adware.Downware.990, Adware.Mutabaha.255
76.74%

Avira AntiVirus
ADWARE/Adware.Gen2
74.42%

Baidu Antivirus
Adware.Win32.ElexInstall, Trojan.Win32.StartPage
74.42%

Antiy Labs AVL
Trojan/Win32.SGeneric, Trojan/Win32.Tgenic, Spyware[AdWare:not-a-virus]/Win32.Linkun, Trojan/Win32.TSGeneric, Trojan/Win32.BTSGeneric
72.09%

McAfee
Artemis!9F28656AB0CE, Artemis!88B8ED7ECA92, Artemis!10FAFAF646EF, Artemis!28344261C968, Artemis!8DBC2C0673D5, Artemis!B85D0FB79797
72.09%

McAfee Web Gateway
Artemis!9F28656AB0CE, Artemis!88B8ED7ECA92, Artemis!10FAFAF646EF, Artemis!28344261C968, Artemis!8DBC2C0673D5, Artemis!B85D0FB79797
72.09%

The domain dl.elex.soft365.com has been seen to resolve to the following 2 IP addresses.

50.97.129.8-static.reverse.softlayer.com
January 8, 2014

184.173.70.134-static.reverse.softlayer.com
January 8, 2014

File downloads found at URLs served by dl.elex.soft365.com.

23 / 68    (Adware)
http://dl.elex.soft365.com/Public/dlexe/acs/.../YouTV.exe  (b85d0fb797978a0f0e0ff6b84774cea7)

14 / 68    (Adware)

1 / 68      (Adware)

The following 6 files have been seen to comunicate with dl.elex.soft365.com in live environments.

URL:
http://dl.elex.soft365.com/

Title:
“(ELEX) downloader generator”

Web server:
Apache/2.2.8 (Win32) PHP/5.2.6 (ThinkPHP)

Facebook:
Shares:  1

Statistics are for the previous month.

Remove Malware from dl.elex.soft365.com - Powered by Reason Core Security