The domain ni.daniarelay.com registered by Erez Azulay was initially registered in January of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC
Server location:
Arizona, United States (US)
Create date:
Friday, January 16, 2015
Expires date:
Monday, January 16, 2017
Updated date:
Thursday, January 28, 2016
ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.PC Utilities.PCUtilities, PUP.PC Utilities.PCUtilities (M), PUP.PC Utilities.PCUtilit (M)
100.00%
VIPRE Antivirus
Threat.5068139, Trojan.Win32.Generic, Threat.4150696, OptimizerPro
36.67%
Comodo Security
Application.Win32.OptimizerPro.FY, ApplicUnwnt
36.67%
Dr.Web
riskware program Program.Unwanted.295, Program.Unwanted.530, riskware program Program.Unwanted.99, Threat.Undefined, Program.Unwanted.776
36.67%
G Data
Win32.Application.OptimizerPro, Gen:Variant.Application.OptimizerPro, Dropped:Adware.Generic.1312642, Gen:Variant.Adware.Mikey.11354
36.67%
AVG
Win.Threat.High, Generic, Adware Generic6, Win32/DH{gRKBE4EOICIlABM1gQw}
36.67%
MicroWorld eScan
Trojan.Generic.13106562, Adware.Generic.1280452, Gen:Variant.Application.OptimizerPro.1, Trojan.Generic.12850669, Dropped:Adware.Generic.1312642
36.67%
Agnitum Outpost
PUA.SpeedingUpMyPC, Riskware.OptimizerPro, Riskware.SpeedingUpMyPC, Trojan.Inject, PUA.Agent, Riskware.Hoax
36.67%
McAfee
Artemis!DD4B5EF72AE2, Artemis!2A27E28F64BF, Artemis!196AD856A758, Artemis!83104CC0EBA4, Artemis!68EF4E68D37D, Artemis!03E661BC83B8
36.67%
Panda Antivirus
PUP/OptimizerPro, Trj/Genetic.gen
36.67%
Fortinet FortiGate
Riskware/SpeedingUpMyPC, Riskware/OptimizerPro, W32/Inject.UMUB!tr, W32/Agent.ISFS!tr
36.67%
Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen, Win32/Virus.IM.067, Win32/Virus.IM.7fa, Win32/Trojan.Multi.daf, HEUR/QVM41.2.Malware.Gen, Win32/Trojan.eb9
36.67%
Zillya! Antivirus
Trojan.ArchSMS.Win32.28854, Adware.SpeedingUpMyPC.Win32.136, Trojan.Black.Win32.22229, Trojan.Inject.Win32.159090, Adware.SpeedingUpMyPC.Win32.216
36.67%
IKARUS anti.virus
PUA.SpeedingUpMyPC, AdWare.Generic
36.67%
Emsisoft Anti-Malware
Gen:Variant.Adware.Mikey.11354, Gen:Variant.Application.Graftor.169998, Gen:Variant.Zusy.133230, Dropped:Adware.Generic.1312642
36.67%
The domain ni.daniarelay.com has been seen to resolve to the following 4 IP addresses.
ip-50-63-202-54.ip.secureserver.net
February 23, 2016
File downloads found at URLs served by ni.daniarelay.com.
Latest 30 of 30 download URLs
The following 218 files have been seen to comunicate with ni.daniarelay.com in live environments.
URL:
http://ni.daniarelay.com/
Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)