www.softjuma.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.softjuma.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2014. Currently this domain has been known to host various forms of malware. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Sunday, February 16, 2014

Expires date:
Thursday, February 16, 2017

Updated date:
Tuesday, February 9, 2016

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.Generic.12520510
100.00%

nProtect
Trojan.Generic.12520510
100.00%

Norman
Suspicious_Gen2.WBULL
100.00%

Trend Micro House Call
TROJ_GEN.R000C0EAL15
100.00%

avast!
Win32:Evo-gen [Susp]
100.00%

Bitdefender
Trojan.Generic.12520510
100.00%

ViRobot
Trojan.Win32.S.Agent.65990[h]
100.00%

Lavasoft Ad-Aware
Trojan.Generic.12520510
100.00%

Emsisoft Anti-Malware
Trojan.Generic.12520510
100.00%

F-Secure
Trojan.Generic.12520510
100.00%

Dr.Web
Trojan.DownLoader11.25151
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Trend Micro
TROJ_GEN.R000C0EAL15
100.00%

Avira AntiVirus
TR/Agent.65990.1
100.00%

G Data
Trojan.Generic.12520510
100.00%

The domain www.softjuma.com has been seen to resolve to the following 2 IP addresses.

ec2-107-21-119-254.compute-1.amazonaws.com
February 26, 2016

ec2-23-23-218-1.compute-1.amazonaws.com
February 26, 2016

File downloads found at URLs served by www.softjuma.com.

URL:
http://www.softjuma.com/

Title:
“SoftJuma”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Apache/2.2.29 (Amazon) (PHP/5.3.29)