www.virus-delete.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.virus-delete.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Washington, District of Columbia within the United States which resides on the SoftLayer Technologies Inc. network.
Remove Malware from www.virus-delete.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
District of Columbia, United States (US)

Create date:
Monday, March 25, 2013

Expires date:
Wednesday, March 25, 2015

Updated date:
Monday, March 10, 2014

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (86% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/ELEX, Win32/ELEX (variant)
100.00%

Reason Heuristics
PUP.Optional.Installer.WOODTALETECHNOLOGYINC.H, PUP.Optional.Installer.F
100.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
83.33%

Fortinet FortiGate
Riskware/Elex
50.00%

Bkav FE
W32.Clod044.Trojan, W32.Clod1dd.Trojan
50.00%

Trend Micro House Call
TROJ_GEN.F47V1013, TROJ_GEN.F47V1008
50.00%

Antiy Labs AVL
Trojan/Win32.Tgenic
33.33%

McAfee
Artemis!D554B7917E99
33.33%

McAfee Web Gateway
Artemis!D554B7917E99
33.33%

The domain www.virus-delete.com has been seen to resolve to the following IP address.

174.36.200.167-static.reverse.softlayer.com
January 11, 2014

File downloads found at URLs served by www.virus-delete.com.

3 / 68      (PUP)
http://www.virus-delete.com/iSafedl.exe  (7b5352bffaee7856a2a9182a57f9d881)

The following file have been seen to comunicate with www.virus-delete.com in live environments.

URL:
http://www.virus-delete.com/

Title:
“Yet Another PC Cleaner 2014 | Lifetime Free PC Cleaner - YAC Official Website”

Description:
“YAC PC Cleaner, The Lightest & Fastest Cleaner, available for Windows 8, 7, Vista, and XP. Choose the ONE or nothing”

Web server:
ngx_openresty (ThinkPHP)

Facebook:
Likes:  504
Shares:  233
Comments:  44

Twitter:
Shares:  3

Statistics are for the previous month.

Remove Malware from www.virus-delete.com - Powered by Reason Core Security