cdn.softobase.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain cdn.softobase.com is registered by proxy through ENOM, INC. and was originally registered in April of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Gunzenhausen, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Bayern, Germany (DE)

Create date:
Wednesday, April 18, 2012

Expires date:
Sunday, April 18, 2021

Updated date:
Friday, March 25, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online AG,DE

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Trend Micro House Call
Suspicious_GEN.F47V0413, TROJ_GEN.R00UH05DI15
66.67%

Kaspersky
UDS:DangerousObject.Multi.Generic
66.67%

McAfee
Artemis!98F8448A6C91, RDN/Generic.dx!dpx
66.67%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
66.67%

Baidu Antivirus
PUA.Win32.Softobase
66.67%

ESET NOD32
Win32/Softobase.C potentially unwanted
66.67%

Reason Heuristics
PUP.INSITEGROUP.Installer (M)
33.33%

Sophos
Generic PUA PL
33.33%

The domain cdn.softobase.com has been seen to resolve to the following 4 IP addresses.

static.125.148.243.136.clients.your-server.de
April 17, 2016

static.158.40.63.178.clients.your-server.de
July 7, 2015

85-10-200-21.clients.your-server.de
July 7, 2015

static.85-10-196-94.clients.your-server.de
July 7, 2015

File downloads found at URLs served by cdn.softobase.com.

7 / 68      (PUP)
http://cdn.softobase.com/Total_Commander_Rus_Setup.exe  (2765b51d8b1d4fea4f6b3b327a64e37c)

6 / 68      (PUP)
http://cdn.softobase.com/VirtualDub_x32_Rus_Setup.exe  (98f8448a6c919b9cd6f763a85be8ad2d)

1 / 68      (Adware)
http://cdn.softobase.com/PhotoScape_Rus_Setup.exe  (6ea7fe35661c9ccb30e90293eaeac88b)

The following 13 files have been seen to comunicate with cdn.softobase.com in live environments.

 
Latest 20 of 20 files

URL:
http://cdn.softobase.com/

Web server:
nginx/1.8.0