www.pcrisk.org

malin

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Washington, District of Columbia within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
Hichina Zhicheng Technology Limited

Server location:
District of Columbia, United States (US)

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Bkav FE
W32.HfsAdware
100.00%

Malwarebytes
FraudTool.YAC, PUP.Optional.ELEX
100.00%

ESET NOD32
Win32/ELEX.GB potentially unwanted (variant), Win32/ELEX.CC potentially unwanted (variant)
100.00%

Dr.Web
Adware.Mutabaha.790, Adware.Mutabaha.174
100.00%

Fortinet FortiGate
Riskware/Elex
100.00%

Reason Heuristics
Win32.Generic.ELEX.Installer.Meta
100.00%

SUPERAntiSpyware
PUP.Elex/Variant
50.00%

G Data
Win32.Application.Elex
50.00%

McAfee
Artemis!E497222C8947
50.00%

Trend Micro House Call
Suspicious_GEN.F47V0330
50.00%

avast!
Win32:Adware-gen [Adw]
50.00%

AhnLab V3 Security
PUP/Win32.Generic
50.00%

K7 AntiVirus
Trojan
50.00%

Agnitum Outpost
Riskware.Agent
50.00%

Avira AntiVirus
APPL/Elex.jjsd
50.00%

The domain www.pcrisk.org has been seen to resolve to the following IP address.

eb.ce.1632.ip4.static.sl-reverse.com
February 9, 2016

File downloads found at URLs served by www.pcrisk.org.

8 / 68      (PUP)
http://www.pcrisk.org/.../18595  (yet_another_cleaner_sk_1805369.exe)

13 / 68    (PUP)
http://www.pcrisk.org/.../24243  (yet_another_cleaner_sk_0.exe)

The following 3 files have been seen to comunicate with www.pcrisk.org in live environments.

URL:
http://www.pcrisk.org/

Google Analytics:
UA-48462349

Title:
“How Do I Remove It - PCrisk.org”

Description:
“PCrisk.org is a community for computer help and technical support. Find your solutions here!”

Web server:
ngx_openresty (ThinkPHP)

Facebook:
Likes:  2
Shares:  1
Comments:  20

Statistics are for the previous month.