dl.softohqimjjedf0jq.net
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain dl.softohqimjjedf0jq.net is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the nLayer Communications Internal/Backbone network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
New York, United States (US)
Create date:
Thursday, September 19, 2013
Expires date:
Saturday, September 19, 2015
Updated date:
Tuesday, October 7, 2014
ASN:
AS4436 AS-GTT-4436 - nLayer Communications, Inc.,US
Scanner detections:
Detections (98% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.SETUPPROCESS.V, PUP.Solimba.PortalPr.Installer (M), PUP.Solimba.FIRSERIA.Bundler (M), PUP.Solimba.RAPIDDOW (M), PUP.Solimba.AppsInst.Bundler (M), PUP.Solimba.SETUPPRO.Bundler (M), PUP.Solimba.RAPIDDOW.Bundler (M), PUP.Solimba.PortalPr (M), PUP.Solimba (M)
98.00%
Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.00%
F-Secure
Application:W32/Generic.70053c248f!Online
2.00%
Malwarebytes
PUP.Optional.Bundler
2.00%
VIPRE Antivirus
DownloadMR
2.00%
K7 AntiVirus
Unwanted-Program
2.00%
avast!
Win32:PUP-gen [PUP]
2.00%
Agnitum Outpost
PUA.Firseria
2.00%
Sophos
Solimba Installer
2.00%
Comodo Security
Application.Win32.FirseriaInstaller.EAB
2.00%
Dr.Web
Adware.Downware.2167
2.00%
Avira AntiVirus
TR/Spy.AI.14318.9
2.00%
G Data
Win32.Application.Morstar
2.00%
Vba32 AntiVirus
Downware.Morstar
2.00%
ESET NOD32
Win32/FirseriaInstaller (variant)
2.00%
The domain dl.softohqimjjedf0jq.net has been seen to resolve to the following 48 IP addresses.
ip-69-31-29-191.nlayer.net
October 24, 2014
ip-69-31-29-198.gtt.net
October 24, 2014
a184-51-126-24.deploy.static.akamaitechnologies.com
September 7, 2014
a184-51-126-25.deploy.static.akamaitechnologies.com
September 7, 2014
a23-0-160-64.deploy.static.akamaitechnologies.com
September 3, 2014
a23-0-160-58.deploy.static.akamaitechnologies.com
September 3, 2014
a23-0-160-67.deploy.static.akamaitechnologies.com
September 3, 2014
a23-0-160-65.deploy.static.akamaitechnologies.com
September 3, 2014
a23-62-7-10.deploy.static.akamaitechnologies.com
August 20, 2014
a23-62-7-41.deploy.static.akamaitechnologies.com
August 20, 2014
a23-67-243-27.deploy.static.akamaitechnologies.com
August 13, 2014
a23-67-243-43.deploy.static.akamaitechnologies.com
August 13, 2014
a23-67-243-34.deploy.static.akamaitechnologies.com
August 13, 2014
a23-67-243-75.deploy.static.akamaitechnologies.com
August 13, 2014
a23-67-243-98.deploy.static.akamaitechnologies.com
August 13, 2014
a23-67-250-99.deploy.static.akamaitechnologies.com
May 5, 2014
a23-67-250-98.deploy.static.akamaitechnologies.com
May 5, 2014
a23-67-243-83.deploy.static.akamaitechnologies.com
May 1, 2014
a23-67-243-24.deploy.static.akamaitechnologies.com
May 1, 2014
a23-67-243-65.deploy.static.akamaitechnologies.com
May 1, 2014
a23-67-242-123.deploy.static.akamaitechnologies.com
April 20, 2014
a23-67-250-112.deploy.static.akamaitechnologies.com
April 16, 2014
a23-67-250-136.deploy.static.akamaitechnologies.com
April 16, 2014
a23-67-250-120.deploy.static.akamaitechnologies.com
April 16, 2014
Showing 30 of 48 IP Addresses
File downloads found at URLs served by dl.softohqimjjedf0jq.net.
Latest 30 of 83 download URLs
The following 834 files have been seen to comunicate with dl.softohqimjjedf0jq.net in live environments.
URL:
http://dl.softohqimjjedf0jq.net/