ls.yac.mx

Name: Registration Private

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Jose, California within the United States.
Registrar:
GoDaddy.com

Server location:
California, United States (US)

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Quick Heal
TrojanPWS.ZBot
50.00%

Malwarebytes
FraudTool.YAC
50.00%

K7 AntiVirus
Riskware
50.00%

Kaspersky
not-a-virus:Downloader.Win32.AdLoad
50.00%

Baidu Antivirus
Hacktool.Win32.AdLoad
50.00%

Panda Antivirus
Generic Suspicious
50.00%

Reason Heuristics
PUP.Elex.Yac.Installer.Meta (M)
50.00%

The domain ls.yac.mx has been seen to resolve to the following 5 IP addresses.

e6.d6.0bc6.ip4.static.sl-reverse.com
February 11, 2016

e5.d6.0bc6.ip4.static.sl-reverse.com
February 11, 2016

e9.d6.0bc6.ip4.static.sl-reverse.com
February 11, 2016

e8.d6.0bc6.ip4.static.sl-reverse.com
February 11, 2016

e7.d6.0bc6.ip4.static.sl-reverse.com
February 11, 2016

File downloads found at URLs served by ls.yac.mx.

1 / 68      (PUP)
http://ls.yac.mx/yet_another_cleaner_mal.exe  (e3e59188898471eb12962748aee3fed9)

1 / 68      (PUP)
http://ls.yac.mx/yet_another_cleaner_adb.exe  (yet_another_cleaner_mal.exe)

6 / 68      (PUP)
http://ls.yac.mx/yet_another_cleaner_jun.exe  (yet_another_cleaner_mal.exe)

6 / 68      (PUP)
http://ls.yac.mx/yet_another_cleaner_mal.exe  (945d71e1cef7c1fa33325101c860ee9d)

URL:
http://ls.yac.mx/

Web server:
nginx