b.softologic.com

Softango Technology LLC  (via a Proxy Registrant)

Domain Information

The domain b.softologic.com is registered by proxy through Moniker Online Services and was originally registered in June of 2011. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network. The domain is part of a DNS service that utilizes a number of reverse proxy IP Addresses (see below). The domain is associated with the publisher Softango Technology LLC who is located in Beaverton, Oregon in the United States.
Registrar:
Moniker Online Services

Server location:
New York, United States (US)

Create date:
Thursday, June 30, 2011

Expires date:
Thursday, June 30, 2016

Updated date:
Tuesday, December 22, 2015

ASN:
AS62567 DIGITALOCEAN-ASN-NY2 - Digital Ocean, Inc., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Win.Reputation, PUP.Installer.Performersoft.T, PUP.Performersoft.Bundler (M), PUP.Performersoft.YellowSo.Bundler (M), PUP.Performersoft (M)
100.00%

F-Prot
W32/IBrain.D.gen, W32/IBrain.C.gen
17.95%

avast!
Win32:Malware-gen, Win32:InstallBrain-BC [PUP], Win32:PUP-gen [PUP], Win32:Adware-gen [Adw]
17.95%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.BrainInst, not-a-virus:AdWare.Win32.BrainInst
17.95%

Fortinet FortiGate
Adware/InstallBrain.OP, Adware/BrainInst
17.95%

Trend Micro House Call
TROJ_GEN.F47V1122, ADW_PCOPTIMZER, TROJ_GEN.F47V0402
17.95%

Total Defense
Win32/Tnega.BRRKCQ, Win32/Tnega.XWeCRHB, Win32/Tnega.ATFN
17.95%

AhnLab V3 Security
Trojan/Win32.Brantall, Adware/Win32.BrainInst, Downloader/Win32.Agent
17.95%

MicroWorld eScan
Application.Bundler.InstallBrain.A
17.95%

Bitdefender
Application.Bundler.InstallBrain.A
17.95%

Zillya! Antivirus
Adware.BrainInst.Win32.63, Downloader.BrainInst.Win32.14, Downloader.BrainInst.Win32.2
17.95%

Qihoo 360 Security
Malware.QVM10.Gen
17.95%

Quick Heal
TrojanDownloader.Brantall.A5, TrojanDownloader.Brantall.b
15.38%

McAfee
RDN/Generic PUP.x!bpg, PUP-FDT!62DFC7C3DE7D, PUP-FDT!C9D4600CD9C9
15.38%

Malwarebytes
Adware.InstallBrain
15.38%

The domain b.softologic.com has been seen to resolve to the following 7 IP addresses.

nxdomain.dnsmadeeasy.com
September 14, 2016

ec2-52-70-175-181.compute-1.amazonaws.com
February 13, 2016

ec2-54-235-159-97.compute-1.amazonaws.com
January 6, 2016

50.97.37.140-static.reverse.softlayer.com
December 26, 2013

50.22.188.88-static.reverse.softlayer.com
December 26, 2013

December 26, 2013

December 26, 2013

File downloads found at URLs served by b.softologic.com.

 
Latest 30 of 39 download URLs

The following 21 files have been seen to comunicate with b.softologic.com in live environments.

 
Latest 20 of 26 files

URL:
http://b.softologic.com/

Title:
“Non-Existent Domain”

Web server:
nginx/1.8.0 (PHP/5.3.29)