dl.softservers.net

Subeo Tech, Inc.

Domain Information

The domain dl.softservers.net registered by Subeo Tech, Inc. was initially registered in August of 2012 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the SingleHop, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Tuesday, August 28, 2012

Expires date:
Sunday, August 28, 2016

Updated date:
Monday, August 31, 2015

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PCUtilities.V, PUP.PCUtilities.M, PUP.PC Utilities.PCUtilities.Installer (M), PUP.PC Utilities.PCUtilities (M), PUP.PC Utilities.PCUtilit (M), PUP.PC Utilities.PCUtilit.Installer (M), PUP.OptimizerPro (M), PUP.PC Utilities (M)
100.00%

AVG
MalSign.Generic, Generic5, OptimizerPro
22.00%

G Data
Win32.Application.OptimizerPro, Gen:Variant.Graftor.153741
20.00%

Agnitum Outpost
Trojan.Agent, PUA.SpeedingUpMyPC, Riskware.Agent
18.00%

Dr.Web
riskware program Program.Unwanted.29, Trojan.Fakealert.44938, Trojan.NtRootKit.17026, Trojan.PWS.Tibia.2625, Trojan.NtRootKit.17528
18.00%

Kaspersky
not-a-virus:RiskTool.Win32.Agent, HEUR:Trojan.Win32.Generic
18.00%

McAfee
Artemis!D84B92824CEE, Artemis!FF5A9EEB0F0F, Artemis!AEF5C6E10AE4, Artemis!AB29E25D2130, Artemis!D411CFDE04D2, Artemis!B1512B5D5762
16.00%

IKARUS anti.virus
PUA.SpeedingUpMyPC, AdWare.Bprotector, AdWare.SpeedingUpMyPC
16.00%

NANO AntiVirus
Riskware.Win32.Unwanted.ccmwkx, Trojan.Win32.Generic.dbyggq, Trojan.Win32.SpeedingUpMyPC.ctyqqg, Riskware.Win32.Agent.denosn
12.00%

herdProtect (fuzzy)
a variant of 962f8feb6bcbd3dd47483fd99c70cecca5a66889, a variant of f9f16a6d4aafa6c1706935c3ba60b873db0cd72b, a variant of 8bc7824567c052a18548dd8b3766dc407d20e4a4
12.00%

Malwarebytes
PUP.Optional.OptimizePro.A, PUP.Optional.OptimizerPro.A
10.00%

Trend Micro House Call
TROJ_GEN.F47V0809, TROJ_GEN.F47V1010, TROJ_GEN.F47V0402, Suspicious_GEN.F47V0909
10.00%

Fortinet FortiGate
W32/SpeedingUpMyPC.B, Riskware/SpeedingUpMyPC, Riskware/Agent, Riskware/OptimizerPro
10.00%

Qihoo 360 Security
Malware.QVM06.Gen, Win32/Trojan.f2e, Win32/Trojan.845, Win32/Application.091
10.00%

ESET NOD32
Win32/AdWare.SpeedingUpMyPC (variant), Win32/SpeedingUpMyPC, Win32/SpeedingUpMyPC (variant)
10.00%

The domain dl.softservers.net has been seen to resolve to the following 6 IP addresses.

st-sh-us-dc1-002.s.dss.vg
September 2, 2014

st-sh-us-dc3-002.s.dss.vg
September 2, 2014

st-sh-us-dc1-001.s.dss.vg
February 7, 2014

st-sh-us-dc1-002.s.dss.vg
February 7, 2014

st-sh-us-dc3-002.s.dss.vg
February 7, 2014

st-sh-us-dc3-001.s.dss.vg
February 7, 2014

File downloads found at URLs served by dl.softservers.net.

1 / 68      (PUP)
http://dl.softservers.net/.../optimizerpro.exe  (1d6b400b90c3ef1cdf24262a77d0ff9f)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (163c7010b00ea1b249891908b2ef7630)

1 / 68      (PUP)

8 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (d0f161fdacac0e8893044552f837fcb3)

21 / 68    (PUP)
http://dl.softservers.net/.../optimizerpro.exe  (optimizerproinstaller.exe)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (1b9b6302fcfec534ff4bdf6836a1fe43)

1 / 68      (PUP)
http://dl.softservers.net/.../DriverPro.exe  (0ef39db71960751e1db3a8b99ce5d2f7)

8 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (9a1fc8d6b861cbdae420eaabb3951551)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (492f1e1b5f505f94b06a95f486bcd441)

1 / 68      (PUP)
http://dl.softservers.net/.../DriverPro.exe  (livesupport-894ed7b5-04e3-4980-99f2-c6217e2b5af3.exe)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (600dd588fdb5d165a443f996dbed5ebf)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (optimizerproinstaller.exe)

12 / 68    (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (5054b53f0b0d686cc400fcc640ac640c)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (5dccaf236d6d555e787fae351d29e120)

1 / 68      (PUP)
http://dl.softservers.net/111000874/.../OptimizerPro.exe  (ceb4f52cf835d9a4759e8e803fb8d3d4)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (a1fd5674205b087e36efc097c501a318)

1 / 68      (PUP)
http://dl.softservers.net/111000874/.../OptimizerPro.exe  (eeacc2bd41636c48569e4cbbaeb57245)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (e9e146efdc6b398d4587fbbdfec8c890)

1 / 68      (PUP)
http://dl.softservers.net/.../OptimizerPro.exe  (0342e0c26a3de098e9210490a1c1acd8)

The following 12 files have been seen to comunicate with dl.softservers.net in live environments.

URL:
http://dl.softservers.net/

Web server:
nginx/1.6.0