download.performersoft.com

Performersoft LLC

Domain Information

The domain download.performersoft.com registered by iBario LTD was initially registered in April of 2010 through Moniker Online Services. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Washington, Virginia within the United States which resides on the SoftLayer Technologies Inc. network. The domain is associated with the publisher Performersoft LLC who is located in Beaverton, Oregon in the United States.
Registrar:
Moniker Online Services

Server location:
Virginia, United States (US)

Create date:
Wednesday, April 14, 2010

Expires date:
Friday, April 14, 2017

Updated date:
Sunday, April 3, 2016

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Performersoft.InstallBrain.Installer (M), PUP.Performersoft.InstallB.Installer (M), PUP.Performersoft.Bundler (M), PUP.Performersoft (M), PUP.InstallBrain (M)
100.00%

MicroWorld eScan
Application.Bundler.InstallBrain.A
12.50%

McAfee
Artemis!804183060EDF
12.50%

Malwarebytes
PUP.BundleInstaller.IB
12.50%

Agnitum Outpost
Trojan.Strictor
12.50%

F-Prot
W32/IBrain.B.gen
12.50%

Trend Micro House Call
TROJ_SPNR.0BIP12
12.50%

avast!
Win32:PUP-gen [PUP]
12.50%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.BrainInst
12.50%

Bitdefender
Application.Bundler.InstallBrain.A
12.50%

NANO AntiVirus
Riskware.Win32.Downware.vpsbt
12.50%

SUPERAntiSpyware
PUP.InstallBrain
12.50%

Lavasoft Ad-Aware
Application.Bundler.InstallBrain.A
12.50%

Sophos
InstallBrain
12.50%

Comodo Security
ApplicUnwnt.Win32.AdWare.IBrain.B
12.50%

The domain download.performersoft.com has been seen to resolve to the following 4 IP addresses.

50.97.57.37-static.reverse.softlayer.com
July 16, 2015

50.97.56.109-static.reverse.softlayer.com
July 16, 2015

50.23.135.221-static.reverse.softlayer.com
July 16, 2015

50.23.133.69-static.reverse.softlayer.com
July 16, 2015

File downloads found at URLs served by download.performersoft.com.

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

41 / 68    (PUP)

1 / 68      (PUP)

The following 2 files have been seen to comunicate with download.performersoft.com in live environments.

URL:
http://download.performersoft.com/

Title:
“PerformerSoft”

Web server:
nginx (PHP/5.4.17)