download.softiglu.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.softiglu.com is registered by proxy through GODADDY.COM, LLC and was originally registered in April of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dusseldorf, Nordrhein-Westfalen within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Nordrhein-Westfalen, Germany (DE)

Create date:
Monday, April 16, 2012

Expires date:
Sunday, April 16, 2017

Updated date:
Friday, April 17, 2015

ASN:
AS25074 INETBONE-AS MESH GmbH

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BetterInstaller.Somoto.CC, PUP.BetterInstaller.Somoto.W, PUP.BetterInstaller.Somoto.BB, PUP.BetterInstaller.Somoto.R, PUP.BetterInstaller.Somoto.HH, PUP.BetterInstaller.Somoto.X, PUP.Somoto.Bundler (M), PUP.Somoto (M), PUP.Somoto.BetterInstaller (M), Win32.Generic
100.00%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.Somoto.A
30.23%

avast!
Win32:Somoto-F [PUP], Win32:Somoto-O [PUP]
30.23%

Clam AntiVirus
Adware.Somoto-1, Win.Adware.Somoto, Trojan.Agent-267630
30.23%

Sophos
Somoto BetterInstaller
30.23%

Comodo Security
Application.Win32.Somoto.A, ApplicUnwnt.Win32.AdWare.Agent.~a, Application.Win32.Somoto.d, Application.Win32.Somoto.DTL
30.23%

Dr.Web
Adware.Somoto.17, Adware.Downware.1184, Trojan.MulDrop4.11744
30.23%

VIPRE Antivirus
BetterInstaller, Trojan.Win32.Generic
30.23%

AVG
AdInstaller.Somoto, Downloader
30.23%

F-Prot
W32/SomotoBetterInstaller.A
27.91%

Trend Micro House Call
TROJ_GEN.F47V0807, TROJ_SPNR.09KK13, TROJ_GEN.R0CBH0AHV13, TROJ_GEN.R0CBH0AJ613, TROJ_GEN.R0CCH07KE13, TROJ_GEN.F0C2C00A614
27.91%

SUPERAntiSpyware
Adware.Somoto/Variant
27.91%

Avira AntiVirus
APPL/Somoto.Gen2, APPL/Somoto.itv.360, Adware/BetterInstaller.QA, APPL/Somoto.itb.9, APPL/Somoto.itv.38, APPL/Somoto.ITD.14
27.91%

ESET NOD32
Win32/Somoto
27.91%

Vba32 AntiVirus
Downloader.Agent, Signed-AdWare.BetterInternet.SomotoLtd
25.58%

The domain download.softiglu.com has been seen to resolve to the following IP address.

July 21, 2013

File downloads found at URLs served by download.softiglu.com.

1 / 68      (Malware)
http://download.softiglu.com/nlp/g/smb/.../dl  (vlcmediaplayersetup-fyyhr0h.exe)

 
Latest 30 of 1,599 download URLs

URL:
http://download.softiglu.com/

Web server:
nginx

Facebook:
Likes:  1,200
Shares:  111
Comments:  13

Statistics are for the previous month.