www.sayclix.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain www.sayclix.com is registered by proxy through ENOM, INC. and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Lehi, Utah within the United States which resides on the ViaWest network.
Remove Malware from www.sayclix.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Utah, United States (US)

Create date:
Tuesday, July 23, 2013

Expires date:
Wednesday, July 23, 2014

Updated date:
Sunday, October 20, 2013

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OutBrowse.H, PUP.Installer.OUTBROWSE.F
100.00%

Malwarebytes
PUP.Optional.OutBrowse
100.00%

Dr.Web
Adware.Downware.1664, Adware.Downware.2081
100.00%

ESET NOD32
Win32/OutBrowse (variant)
100.00%

AVG
Skodna.Downloader, MalSign.Generic
100.00%

NANO AntiVirus
Trojan.Win32.Generic.cthmwf
66.67%

AhnLab V3 Security
PUP/Win32.OutBrowse
66.67%

McAfee
Artemis!D1D70E66A952
33.33%

K7 Gateway Antivirus
Unwanted-Program
33.33%

K7 AntiVirus
Unwanted-Program
33.33%

Trend Micro House Call
TROJ_GEN.F47V1122
33.33%

Sophos
Generic PUA CI
33.33%

VIPRE Antivirus
OutBrowse
33.33%

McAfee Web Gateway
Artemis!D1D70E66A952
33.33%

Antiy Labs AVL
Downloader/NSIS.OutBrowse.gen
33.33%

The domain www.sayclix.com has been seen to resolve to the following IP address.

February 5, 2014

File downloads found at URLs served by www.sayclix.com.

URL:
http://www.sayclix.com/

Title:
“Status”

SSL certificate subject:
CN=www.sayclix.com, OU=PositiveSSL, OU=Domain Control Validated

SSL certificate issuer:
CN=PositiveSSL CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

Remove Malware from www.sayclix.com - Powered by Reason Core Security