Download
Community
knowledgeBase
» soft-archive-12.ru
Overview
Analysis
IPs Addresses (1)
Downloads (39)
Network (6)
Website Detail
Related Domains (9)
soft-archive-12.ru
Private Person (Proxy Registrant)
Domain Information
The domain soft-archive-12.ru is registered by proxy through REGRU-RU and was originally registered in March of 2016. Currently this domain has been known to host various forms of malware. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrant:
Private Person
Registrar:
REGRU-RU
Server location:
Moscow City, Russia (RU)
Create date:
Thursday, March 24, 2016
Expires date:
Friday, March 24, 2017
Whois:
1 soft-archive-12.ru record
Analysis
Scanner detections:
Malware distribution (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.ITLogist (M), PUP.Amonetize.ITBANKDN (M), PUP.Amonetize.ITProekt (M), PUP.SmartSol (M), PUP.SmartFin (M), PUP.SmartYUG (M), PUP.SmartAGR (M), PUP.PROFITTO (M), PUP.Amonetize (M), PUP (M)
100.00%
ESET NOD32
Win32/Kryptik.FCDI trojan
5.13%
Microsoft Security Essentials
Threat.Undefined
2.56%
IPs Addresses
The domain soft-archive-12.ru has been seen to resolve to the following IP address.
81.177.165.31
srv163-h-st.jino.ru
April 21, 2016
Downloads
File downloads found at URLs served by soft-archive-12.ru.
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../artmoney_pro_7.40.5.zip&name=ArtMoney PRO 7&size=2
(artmoney-pro-7.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../nero_express12.zip&name=Nero Express 12&size=41
(nero-express-12.exe)
2 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../3d_instruktor_2.2.10.zip&name=3d instruktor&size=497
(3d-instruktor.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../zenmate_chrome.zip&name=zenmate&size=66
(zenmate.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../distribsky.7z&name=Skymonk 2&size=1
(skymonk-2.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../radio.zip&name=?????? ?????&size=1
(skript-radio.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../diskdigger_pro_1.5.5.zip&name=DiskDigger Pro&size=2
(diskdigger-pro.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../ssdfresh_2013.zip&name=SSD FRESH 2013&size=7
(ssd-fresh-2013.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../hard_drive_inspector_pro_4.zip&name=HD Inspector Pro 4&size=6
(hd-inspector-pro-4.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../occt_4.4.0_portable.zip&name=OCCT Perestroika 4&size=23
(occt-perestroika-4.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../hddllfsetup.4.25.rus.zip&name=HDDLowLevelFormat&size=1
(hddlowlevelformat.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../toolwiz_care_2.zip&name=Toolwiz Care 2&size=8
(toolwiz-care-2.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../snooper_1.38.3.zip&name=Snooper Full&size=4
(snooper-full.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../easeus_partition_master_9.zip&name=Partition Master 9&size=157
(partition-master-9.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../master vizitok 5.17.zip&name=?????? ??????? 5&size=40
(master-vizitok-5.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../foto_na_dokumenty_3.61.zip&name=???? ?? ?????????&size=19
(foto-na-dokumenti.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../testdisk_6.11.zip&name=Test disk 6&size=2
(test-disk-6.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../promt_pro_9.5.rar&name=Promt Pro 9&size=451
(promt-pro-9.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../socrates_personal_5.rar&name=?????? 5&size=5
(sokrat-5.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../who_is_on_my_wifi_2.zip&name=Who Is On Wifi&size=5
(who-is-on-wifi.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../cyberlink_powerdvd_ultra_12.zip&name=Power DVD Ultra 12&size=347
(power-dvd-ultra-12.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../hddutil.zip&name=??????? ??? Hdd&size=30
(sbornik-dlya-hdd.exe)
1 / 68 (Malware)
http://soft-archive-12.ru/load.php?url=http://.../hard disk sentinel pro v4.20.zip&name=Hard Disk Sentinel&size=36
({blocked}.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../sony_vegas_pro_12.zip&name=Sony Vegas Pro 12&size=220
(sony-vegas-pro-12.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../ultraiso v9.zip&name=Ultra ISO 9&size=
(ultra-iso-9.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../?ity_?ar_driving.zip&name=?ity_?ar_driving&size=800
(sity-sar-driving.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../hideme_vpn.zip&name=hideme_vpn&size=5
(hideme-vpn.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/load.php?url=http://.../nvidia_inspector.zip&name=NVIDIA Inspector&size=1
(nvidia-inspector.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/start.php?url=http://.../chit_nevidimka.zip&name=??? ?????????&size=4
(chit-nevidimka.exe)
1 / 68 (PUP)
http://soft-archive-12.ru/start.php?url=http://.../angar_iz_luboi_tochki.zip&name=angar_lybou&size=1
(angar-lybou.exe)
Latest 30 of 39 download URLs
Network Communications
The following 6 files have been seen to comunicate with soft-archive-12.ru in live environments.
TCP »
81.177.165.31
:80
7eda.tmp.exe
TCP »
81.177.165.31
:80
produpd.exe (produpd.exe by Vested Development, Inc)
TCP »
81.177.165.31
:80
onlineguardian-v2.exe
TCP »
81.177.165.31
:80
chromesetup.exe (ProductNames by Software company)
TCP »
81.177.165.31
:80
produpd.exe (produpd.exe by Vested Development, Inc)
TCP »
81.177.165.31
:80
online-guardian-v2.0.9.exe
Website Details
URL:
http://soft-archive-12.ru/
Web server:
nginx
Related Domains
allchrome.ru
archive-2.ru
archive-3.ru
myjino.ru
new-mods-10.ru
new-mods-11.ru
new-mods-14.ru
soft-archive-13.ru
soft-archive-14.ru
X