d45ruy84rry.softpicks-s.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain d45ruy84rry.softpicks-s.net is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Wednesday, May 29, 2013

Expires date:
Friday, May 29, 2015

Updated date:
Friday, March 14, 2014

ASN:
AS32475 SINGLEHOP-INC - SingleHop

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.FIRSERIASL.a, PUP.Installer.AppsInstallerSL.O, PUP.Installer.AppsInstallerSL.M
100.00%

ESET NOD32
Win32/FirseriaInstaller (variant)
100.00%

AVG
AdInstaller.Firseria, BundleApp, Generic_r
100.00%

Malwarebytes
PUP.Optional.Firseria, PUP.Optional.InstallCore
100.00%

Sophos
Solimba Installer
100.00%

VIPRE Antivirus
Trojan.Win32.Generic, DownloadMR
100.00%

K7 AntiVirus
Unwanted-Program , Trojan
100.00%

G Data
Gen:Application.Bundler.Firseria, Win32.Application.Morstar
100.00%

Vba32 AntiVirus
Downware.Morstar
100.00%

Rising Antivirus
PE:PUA.FirseriaInstaller@CV!1.9C54, PE:Malware.FirseriaInstaller!6.17AF
90.91%

AhnLab V3 Security
PUP/Win32.Firseria, PUP/Win32.AppsInstaller
18.18%

Comodo Security
TrojWare.Win32.Trojan.Obfuscated.~EN, Application.Win32.FirseriaInstaller.RRB
18.18%

Dr.Web
Adware.Downware.1433, Trojan.DownLoader11.4114
18.18%

Avira AntiVirus
APPL/Firseria.Gen, APPL/Firseria.A.15
18.18%

MicroWorld eScan
Gen:Application.Bundler.Firseria.1, Gen:Variant.Strictor.55064
18.18%

The domain d45ruy84rry.softpicks-s.net has been seen to resolve to the following IP address.

softpicks.net
February 6, 2014

File downloads found at URLs served by d45ruy84rry.softpicks-s.net.

URL:
http://d45ruy84rry.softpicks-s.net/

Web server:
nginx