xml.dlak.org

Matthew Klein

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Florida, New York within the United States which resides on the Rook Media USA, Inc. network.
Registrar:
GoDaddy.com, LLC

Server location:
New York, United States (US)

ASN:
AS40034 CONFLUENCE-NETWORK-INC - Confluence Networks Inc, VG

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Avira AntiVirus
ADWARE/Adware.Gen
100.00%

Baidu Antivirus
Adware.Win32.AddLyrics
100.00%

ESET NOD32
Win32/AdWare.AddLyrics.AC, Win32/AdWare.AddLyrics.AH (variant)
100.00%

Fortinet FortiGate
Riskware/AddLyrics
100.00%

MicroWorld eScan
Gen:Variant.Adware.Graftor.133169
75.00%

McAfee
Artemis!4451ADABCDCE, Artemis!A399CBAEC162, Artemis!FCB9C43BB692
75.00%

Malwarebytes
PUP.Optional.Bundler, PUP.Optional.AdLyrics
75.00%

Trend Micro House Call
TROJ_GEN.F47V0220, TROJ_GE.B8F91C47, TROJ_GEN.R0CBC0ODL14
75.00%

Bitdefender
Gen:Variant.Adware.Graftor.133169
75.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.133169
75.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.133169
75.00%

Comodo Security
ApplicUnwnt, UnclassifiedMalware
75.00%

F-Secure
Gen:Variant.Adware.Graftor.133169
75.00%

Dr.Web
Trojan.Revizer.17, Trojan.Revizer.15, Trojan.Revizer.18
75.00%

G Data
Gen:Variant.Adware.Graftor.133169
75.00%

The domain xml.dlak.org has been seen to resolve to the following 4 IP addresses.

April 13, 2016

April 13, 2016

April 13, 2016

April 13, 2016

File downloads found at URLs served by xml.dlak.org.

27 / 68    (PUP)

8 / 68      (PUP)

15 / 68    (PUP)

21 / 68    (PUP)

URL:
http://xml.dlak.org/

Title:
“dlak.org”

Web server:
Apache