3d-soft-32.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain 3d-soft-32.com is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Manassas, Virginia within the United States which resides on the Leaseweb USA, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Thursday, October 30, 2014

Expires date:
Sunday, October 30, 2016

Updated date:
Saturday, October 31, 2015

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Bundler.installCore, PUP.installCore.OOOTehSnab.Installer (M), PUP.installCore.DownloadGuru.Installer (M), PUP.installCore.OOOTehSn.Installer (M), PUP.InstallCore.FC.Installer (M), PUP.installCore (M)
97.50%

Avira AntiVirus
Adware/InstallCore.rfaw, ADWARE/InstallCore.Gen9, Adware/InstallCo.zlz
12.50%

Malwarebytes
PUP.Optional.TehSnab, PUP.Optional.Installcore
7.50%

ESET NOD32
Win32/InstallCore.QF (variant), Win32/InstallCore.RB (variant)
7.50%

VIPRE Antivirus
Threat.4150696
7.50%

K7 AntiVirus
Trojan , Adware
7.50%

AVG
Generic11_c, Adware InstallCore
7.50%

F-Secure
Application:W32/Generic.70053c248f!Online, Adware.Linkury.M
5.00%

avast!
Malware-gen
5.00%

Dr.Web
Trojan.InstallCore.38, Trojan.InstallCore.217
5.00%

ESET NOD32
Win32/InstallCore.RB potentially unwanted application, Win32/InstallCore.WQ potentially unwanted application
5.00%

NANO AntiVirus
Riskware.Win32.InstallCore.dlaygl, Riskware.Win32.InstallCore.drfvwt
5.00%

Agnitum Outpost
PUA.InstallCore
5.00%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.50%

Total Defense
Win32/Tnega.JbTPVR
2.50%

The domain 3d-soft-32.com has been seen to resolve to the following IP address.

November 10, 2014

File downloads found at URLs served by 3d-soft-32.com.

 
Latest 30 of 41 download URLs