downloads.updatesoftnow.com

PERFECT PRIVACY, LLC  (Proxy Registrant)

Domain Information

The domain downloads.updatesoftnow.com is registered by proxy through DUCKBILLEDDOMAINS.COM LLC and was originally registered in November of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Registrar:
DUCKBILLEDDOMAINS.COM LLC

Server location:
New York, United States (US)

Create date:
Tuesday, November 10, 2015

Expires date:
Thursday, November 10, 2016

Updated date:
Tuesday, November 10, 2015

ASN:
AS14061 DIGITALOCEAN-ASN - Digital Ocean, Inc.

Root domain:

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore.Compiler.Installer (M), PUP.Adknowledge.InstallM.Installer (M), PUP.Air Software.Download.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.SecurePCCleaner.SUPERTUN.Installer.Meta (M), PUP.Air Software (M), PUP.Adknowledge (M), Win32.Generic, PUP.Tightrope (M)
97.92%

F-Secure
Riskware.Application.Bundler.AirInstaller
2.08%

The domain downloads.updatesoftnow.com has been seen to resolve to the following 25 IP addresses.

60-80-162-69.static.reverse.lstn.net
August 26, 2016

August 25, 2016

August 20, 2016

August 12, 2016

59-80-162-69.static.reverse.lstn.net
August 7, 2016

55-80-162-69.static.reverse.lstn.net
August 7, 2016

58-80-162-69.static.reverse.lstn.net
August 6, 2016

hosted-by.snel.com
August 4, 2016

61-80-162-69.static.reverse.lstn.net
August 3, 2016

December 7, 2015

November 23, 2015

November 18, 2015

ns513839.ip-167-114-156.net
November 12, 2015

November 12, 2015

August 27, 2015

173.192.195.228-static.reverse.softlayer.com
May 16, 2014

empire.airinstaller.com
May 13, 2014

108.168.218.35-static.reverse.softlayer.com
May 1, 2014

chicago.airinstaller.com
April 23, 2014

justice.airinstaller.com
April 23, 2014

uswestmeganode1.airinstaller.com
April 16, 2014

50.23.68.85-static.reverse.softlayer.com
April 14, 2014

173.192.195.226-static.reverse.softlayer.com
April 13, 2014

babar.airinstaller.com
March 6, 2014

108.168.218.34-static.reverse.softlayer.com
February 24, 2014

File downloads found at URLs served by downloads.updatesoftnow.com.

1 / 68      (Adware)

 
Latest 30 of 951 download URLs

The following 47 files have been seen to comunicate with downloads.updatesoftnow.com in live environments.

 
Latest 20 of 63 files

URL:
http://downloads.updatesoftnow.com/

Google Analytics:
UA-19309218

Title:
“updatesoftnow.com - This website is for sale! - updatesoftnow Resources and Information.”

Title (2/24/2014):
“Air Installer ™”

Title (8/27/2015):
“Updatesoftnow.com”

Description:
“This website is for sale! updatesoftnow.com is your first and best source for information about updatesoftnow . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

30 of 93 related domains