s2s.yac.mx

Name: Registration Private

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Salton City, California within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GoDaddy.com

Server location:
California, United States (US)

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.X, PUP.Optional.Installer.W, PUP.Optional.Installer.Y, PUP.Optional.Installer.ELEX
100.00%

Trend Micro House Call
Suspicious_GEN.F47V0724, Suspicious_GEN.F47V0312, Suspicious_GEN.F47V0314, Suspicious_GEN.F47V0304, Suspicious_GEN.F47V0320
27.78%

ESET NOD32
Win32/ELEX.AS (variant), Win32/ELEX.CC potentially unwanted (variant)
27.78%

Dr.Web
Adware.Mutabaha.73, Adware.Mutabaha.174, Adware.Mutabaha.163, Adware.Mutabaha.166
27.78%

McAfee
Artemis!C111C7975604, Artemis!FF4812AA6342, Artemis!809DCF417462, Artemis!24295C1BFE5D
22.22%

Avira AntiVirus
TR/Elex.1571656.1, TR/Elex.1022888, TR/Elex.1460408.1
16.67%

Fortinet FortiGate
Riskware/Elex
11.11%

avast!
Win32:Malware-gen
11.11%

Malwarebytes
FraudTool.YAC, Fraudtool.YAC
11.11%

Baidu Antivirus
Adware.Win32.Elex
5.56%

K7 AntiVirus
Trojan
5.56%

Agnitum Outpost
Riskware.Agent
5.56%

The domain s2s.yac.mx has been seen to resolve to the following IP address.

50.97.45.26-static.reverse.softlayer.com
August 28, 2014

File downloads found at URLs served by s2s.yac.mx.

 
Latest 30 of 688 download URLs

The following 27 files have been seen to comunicate with s2s.yac.mx in live environments.

 
Latest 20 of 28 files

URL:
http://s2s.yac.mx/

Web server:
ngx_openresty (PHP/5.4.22)