The domain www.dllsoftultimate.com registered by United Privacy Corp was initially registered in June of 2015 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Beaumaris, Victoria within Australia which resides on the Asia Pacific Network Information Centre network.
Registrant:
United Privacy Corp
Registrar:
NAMEPAL.COM #8002
Server location:
Victoria, Australia (AU)
Create date:
Monday, June 22, 2015
Expires date:
Wednesday, June 22, 2016
Updated date:
Tuesday, June 23, 2015
ASN:
AS133618 TRELLIAN-AS-AP Trellian Pty. Limited,AU
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.PaymentsInteractiveSL.F, PUP.Installer.ClovermediaSL.F, PUP.Adknowledge.Fileangels.Bundler (M), PUP.Tuguu.Clovermedia.Bundler (M), PUP.Tuguu.Cloverme.Bundler (M), PUP.Softpulse.VideoPlu.Bundler (M), PUP.Tuguu (M)
100.00%
avast!
DomaIQ-CC [PUP], DomaIQ-CO [PUP], Win32:Adware-gen [Adw]
33.33%
VIPRE Antivirus
Threat.4783235, Threat.4783262, Threat.4778314
33.33%
MicroWorld eScan
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%
McAfee
PUP-FAO!ACB5E3C90ADC, PUP-FKG!2B2AA6931C37, CryptDomaIQ, IBryte-FRT
33.33%
Malwarebytes
PUP.Optional.DomalQ, PUP.Optional.DomaIQ, PUP.Optional.OptimunInstaller
33.33%
K7 AntiVirus
Unwanted-Program
33.33%
Agnitum Outpost
PUA.Lollipop, PUA.DomaIQ, PUA.Agent
33.33%
Kaspersky
not-a-virus:HEUR:AdWare.MSIL.DomaIQ, Trojan.Win32.Badur
33.33%
Bitdefender
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%
Lavasoft Ad-Aware
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%
Sophos
Generic PUA PF, Generic PUA AP, Generic PUA JG, iBryte Premium Installer
33.33%
F-Secure
Gen:Variant.Adware.Graftor.143716, Gen:Variant.Adware.Kazy.374465, Gen:Variant.Adware.Strictor.57415, Application.Bundler.DomaIQ
33.33%
Avira AntiVirus
APPL/DomaIQ.Gen, Adware/Kazy.374465.2, ADWARE/iBryte.Gen4
33.33%
G Data
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ, Win32.Adware.IBryte
33.33%
The domain www.dllsoftultimate.com has been seen to resolve to the following 8 IP addresses.
lb-182-241.above.com
February 22, 2016
ec2-54-186-83-158.us-west-2.compute.amazonaws.com
August 22, 2014
ec2-54-244-30-115.us-west-2.compute.amazonaws.com
August 22, 2014
ec2-54-201-220-135.us-west-2.compute.amazonaws.com
June 9, 2014
ec2-54-201-153-98.us-west-2.compute.amazonaws.com
June 9, 2014
File downloads found at URLs served by www.dllsoftultimate.com.
The following 17 files have been seen to comunicate with www.dllsoftultimate.com in live environments.
URL:
http://www.dllsoftultimate.com/
Title:
“dllsoftultimate.com”