www.yelwau.com

See PrivacyGuardian.org  (Proxy Registrant)

Domain Information

The domain www.yelwau.com is registered by proxy through NAMESILO, LLC and was originally registered in November of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Frankfurt Am Main, Hessen within Germany which resides on the FDCservers.net network.
Registrar:
NAMESILO, LLC

Server location:
Hessen, Germany (DE)

Create date:
Sunday, November 16, 2014

Expires date:
Monday, November 16, 2015

Updated date:
Sunday, November 16, 2014

ASN:
AS6461 ABOVENET - Abovenet Communications, Inc,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PluginUpdateSL.E
100.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.SoftPulse.4
100.00%

VIPRE Antivirus
Threat.4783235
100.00%

Dr.Web
Adware.SoftPulseENT.1
100.00%

avast!
Win32:SoftPulse-BB [PUP]
100.00%

ESET NOD32
Win32/SoftPulse.Q potentially unwanted application
100.00%

Avira AntiVirus
TR/Dropper.Gen
100.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.SoftPulse
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.SoftPulse.4
100.00%

McAfee
SoftPulse
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Bitdefender
Gen:Variant.Application.Bundler.SoftPulse.4
100.00%

Sophos
SoftPulse
100.00%

G Data
Gen:Variant.Application.Bundler.SoftPulse
100.00%

AhnLab V3 Security
Win-PUP/SoftPulse
100.00%

The domain www.yelwau.com has been seen to resolve to the following IP address.

November 29, 2014

File downloads found at URLs served by www.yelwau.com.

URL:
http://www.yelwau.com/

Web server:
nginx (PHP/5.2.17p1)