www.simplydirectsoft.com

Yossi Marouani

Domain Information

The domain www.simplydirectsoft.com registered by Yossi Marouani was initially registered in October of 2013 through WILD WEST DOMAINS, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Petah Tikva, Hamerkaz within Israel which resides on the RIPE Network Coordination Centre network.
Registrar:
WILD WEST DOMAINS, LLC

Server location:
Hamerkaz, Israel (IL)

Create date:
Thursday, October 10, 2013

Expires date:
Monday, October 10, 2016

Updated date:
Sunday, October 11, 2015

ASN:
AS8551 BEZEQ-INTERNATIONAL-AS Bezeqint Internet Backbone

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SimplyTech.L, PUP.Installer.OneFloorApp.H, PUP.Installer.OneFloorApp.L, PUP.Widdit.SimplyTech.Bundler (M), PUP.Widdit.OneFloorApp.Bundler (M), PUP.Widdit.OneFloor.Bundler (M), PUP.Widdit.SimplyTe.Bundler (M), PUP.Widdit (M)
100.00%

Avira AntiVirus
ADWARE/Adware.Gen, APPL/Downloader.Gen4
76.00%

Malwarebytes
PUP.Optional.SimplyTech, PUP.Optional.SimplyTech.A, PUP.Optional.SimplyInstaller.A
68.00%

Dr.Web
Adware.Downware.2109, Adware.Downware.835, Adware.Downware.3113
68.00%

Qihoo 360 Security
Malware.QVM06.Gen
68.00%

IKARUS anti.virus
BehavesLike, PUA.Toolbar.Widdit, AdWare.Downware
64.00%

G Data
Win32.Application.SimplyTech, Win32.Application.Firstfloor
60.00%

Sophos
SimplyInstaller, Generic PUA FL, PUA 'SimplyInstaller'
56.00%

ESET NOD32
Win32/Toolbar.Widdit.A potentially unwanted application
52.00%

Clam AntiVirus
Win.Adware.Agent-6810, Win.Adware.Agent-7758
48.00%

K7 Gateway Antivirus
Adware , Unwanted-Program
48.00%

Kaspersky
not-a-virus:WebToolbar.Win32.FirstFloor
36.00%

NANO AntiVirus
Trojan.Win32.WebToolbar.dejknp, Riskware.Win32.WebToolbar.dejknp
36.00%

McAfee
Program.PUP-FNE, Artemis!A555B070D6AA
28.00%

McAfee Web Gateway
PUP-FNE, Artemis
28.00%

The domain www.simplydirectsoft.com has been seen to resolve to the following 2 IP addresses.

September 3, 2014

bzq-179-38-67.static.bezeqint.net
May 1, 2014

File downloads found at URLs served by www.simplydirectsoft.com.

The following 94 files have been seen to comunicate with www.simplydirectsoft.com in live environments.

 
Latest 20 of 94 files

URL:
http://www.simplydirectsoft.com/

Title:
“One Floor App - Boutique Apps”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)