coolsoftwaredownloads.com

United Privacy Corp

Domain Information

The domain coolsoftwaredownloads.com registered by United Privacy Corp was initially registered in August of 2015 through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
NAMEPAL.COM #8010.

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Friday, August 21, 2015

Expires date:
Sunday, August 21, 2016

Updated date:
Friday, August 21, 2015

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Coolapptech.O, PUP.Installer.BestFreeDownloads.O, PUP.Installer.Bestopapp.O, PUP.installCore.Coolapptech.Installer (M), PUP.installCore.BestFreeDownloads.Installer (M), PUP.installCore.Coolappt.Installer (M)
70.21%

Dr.Web
Trojan.Packed.24524, Trojan.Packed.31388, Trojan.MulDrop5.53987, Adware.InstallCore.132
53.19%

ESET NOD32
Win32/InstallCore.D potentially unwanted application, Win32/InstallCore.TU potentially unwanted application, Win32/Kryptik.BWJC trojan
53.19%

avast!
Win32:Adware-gen [Adw], Win32:Dropper-gen [Drp]
51.06%

AVG
MalSign.Generic, Adware InstallCore.VH
40.43%

VIPRE Antivirus
InstallCore, Threat.4150696, Threat.4786018
27.66%

Norman
InstallCore.UMFM, Application.Generic.931548, Gen:Variant.Adware.Strictor.66006
25.53%

Malwarebytes
PUP.Optional.InstallCore, PUP.Optional.InstallCore.A, PUP.Optional.BundleInstaller.A
23.40%

Sophos
Install Core Click run software, PUA 'Install Core Click run software'
21.28%

Emsisoft Anti-Malware
Application.Generic.931548, Gen:Variant.Adware.Strictor.66006
17.02%

K7 AntiVirus
Unwanted-Program , Riskware
12.77%

K7 Gateway Antivirus
Unwanted-Program , Riskware
12.77%

Avira AntiVirus
ADWARE/InstallCore.Gen7, Adware/InstallCo.CI, Adware/InstallCo.zkp, ADWARE/InstallCo.CI
12.77%

F-Prot
W32/A-42c63c6c, W32/A-35c0f8d2
10.64%

Vba32 AntiVirus
Downware.InstallCore
10.64%

The domain coolsoftwaredownloads.com has been seen to resolve to the following 24 IP addresses.

July 13, 2016

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
June 2, 2016

February 28, 2016

lb-182-241.above.com
February 24, 2016

November 9, 2015

unallocated.barefruit.co.uk
May 7, 2015

ec2-54-194-169-19.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-72-121-228.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-229-24-120.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-76-8-76.eu-west-1.compute.amazonaws.com
August 12, 2014

ec2-54-77-109-225.eu-west-1.compute.amazonaws.com
August 12, 2014

ec2-54-77-87-192.eu-west-1.compute.amazonaws.com
August 12, 2014

ec2-54-76-179-126.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-176-34-134-148.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-54-229-43-71.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-54-229-96-115.eu-west-1.compute.amazonaws.com
June 26, 2014

ec2-54-229-230-101.eu-west-1.compute.amazonaws.com
June 26, 2014

ec2-54-72-168-34.eu-west-1.compute.amazonaws.com
June 26, 2014

ec2-54-229-74-109.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-229-130-160.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-229-168-240.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-246-208-251.eu-west-1.compute.amazonaws.com
April 6, 2014

ec2-54-72-141-38.eu-west-1.compute.amazonaws.com
April 6, 2014

ec2-54-72-149-41.eu-west-1.compute.amazonaws.com
April 6, 2014

File downloads found at URLs served by coolsoftwaredownloads.com.

1 / 68      (inconclusive)

1 / 68      (inconclusive)

4 / 68      (Adware)

4 / 68      (Adware)

5 / 68      (Adware)

1 / 68      (Adware)

7 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

7 / 68      (Adware)

8 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

4 / 68      (Adware)

1 / 68      (Adware)

5 / 68      (Adware)

5 / 68      (Adware)

1 / 68      (Adware)

5 / 68      (Adware)

 
Latest 30 of 47 download URLs

The following 456 files have been seen to comunicate with coolsoftwaredownloads.com in live environments.

TCP » 54.72.9.51:80

 
Latest 20 of 462 files

URL:
http://coolsoftwaredownloads.com/

Google Analytics:
UA-19309218

Title:
“coolsoftwaredownloads.com - This website is for sale! - coolsoftwaredownloads Resources and Information.”

Title (2/14/2014):
“File-Extractor”

Title (6/26/2014):
“Video Converter”

Description:
“This website is for sale! coolsoftwaredownloads.com is your first and best source for information about coolsoftwaredownloads . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

Facebook:
Shares:  1

Statistics above are for the previous month of July 2017.

30 of 93 related domains