dl.softohqimjjedf0jq.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.softohqimjjedf0jq.net is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the nLayer Communications Internal/Backbone network.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Thursday, September 19, 2013

Expires date:
Saturday, September 19, 2015

Updated date:
Tuesday, October 7, 2014

ASN:
AS4436 AS-GTT-4436 - nLayer Communications, Inc.,US

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SETUPPROCESS.V, PUP.Solimba.PortalPr.Installer (M), PUP.Solimba.FIRSERIA.Bundler (M), PUP.Solimba.RAPIDDOW (M), PUP.Solimba.AppsInst.Bundler (M), PUP.Solimba.SETUPPRO.Bundler (M), PUP.Solimba.RAPIDDOW.Bundler (M), PUP.Solimba.PortalPr (M), PUP.Solimba (M)
98.00%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.00%

F-Secure
Application:W32/Generic.70053c248f!Online
2.00%

Malwarebytes
PUP.Optional.Bundler
2.00%

VIPRE Antivirus
DownloadMR
2.00%

K7 AntiVirus
Unwanted-Program
2.00%

avast!
Win32:PUP-gen [PUP]
2.00%

Agnitum Outpost
PUA.Firseria
2.00%

Sophos
Solimba Installer
2.00%

Comodo Security
Application.Win32.FirseriaInstaller.EAB
2.00%

Dr.Web
Adware.Downware.2167
2.00%

Avira AntiVirus
TR/Spy.AI.14318.9
2.00%

G Data
Win32.Application.Morstar
2.00%

Vba32 AntiVirus
Downware.Morstar
2.00%

ESET NOD32
Win32/FirseriaInstaller (variant)
2.00%

The domain dl.softohqimjjedf0jq.net has been seen to resolve to the following 48 IP addresses.

ip-69-31-29-191.nlayer.net
October 24, 2014

ip-69-31-29-198.gtt.net
October 24, 2014

a184-51-126-24.deploy.static.akamaitechnologies.com
September 7, 2014

a184-51-126-25.deploy.static.akamaitechnologies.com
September 7, 2014

a23-0-160-64.deploy.static.akamaitechnologies.com
September 3, 2014

a23-0-160-58.deploy.static.akamaitechnologies.com
September 3, 2014

a23-0-160-67.deploy.static.akamaitechnologies.com
September 3, 2014

a23-0-160-65.deploy.static.akamaitechnologies.com
September 3, 2014

a23-62-7-10.deploy.static.akamaitechnologies.com
August 20, 2014

a23-62-7-41.deploy.static.akamaitechnologies.com
August 20, 2014

a23-67-243-27.deploy.static.akamaitechnologies.com
August 13, 2014

a23-67-243-43.deploy.static.akamaitechnologies.com
August 13, 2014

a23-67-243-34.deploy.static.akamaitechnologies.com
August 13, 2014

a23-67-243-75.deploy.static.akamaitechnologies.com
August 13, 2014

August 13, 2014

a23-67-243-98.deploy.static.akamaitechnologies.com
August 13, 2014

August 13, 2014

a23-67-250-99.deploy.static.akamaitechnologies.com
May 5, 2014

a23-67-250-98.deploy.static.akamaitechnologies.com
May 5, 2014

May 1, 2014

a23-67-243-83.deploy.static.akamaitechnologies.com
May 1, 2014

May 1, 2014

May 1, 2014

a23-67-243-24.deploy.static.akamaitechnologies.com
May 1, 2014

a23-67-243-65.deploy.static.akamaitechnologies.com
May 1, 2014

a23-67-242-123.deploy.static.akamaitechnologies.com
April 20, 2014

April 20, 2014

a23-67-250-112.deploy.static.akamaitechnologies.com
April 16, 2014

a23-67-250-136.deploy.static.akamaitechnologies.com
April 16, 2014

a23-67-250-120.deploy.static.akamaitechnologies.com
April 16, 2014

 
Showing 30 of 48 IP Addresses

File downloads found at URLs served by dl.softohqimjjedf0jq.net.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.softohqimjjedf0jq.net/g/.../tango_dsetup.exe  (9f7a93461bda83ccb4cffa86303d84de)

1 / 68      (Adware)
http://dl.softohqimjjedf0jq.net/n/.../uTorrent.exe  (18ac6a3d41f60fb2ceb3653b8c3b70f0)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.softohqimjjedf0jq.net/g/.../viber_dsetup.exe  (06f9a0297f1e1f58d27632c1481e2fb6)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.softohqimjjedf0jq.net/n/3.0.21/.../AutoCAD.exe  (5cb518443f6b2c2f581aa0435ae1815e)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

 
Latest 30 of 83 download URLs

The following 834 files have been seen to comunicate with dl.softohqimjjedf0jq.net in live environments.

 
Latest 20 of 869 files

URL:
http://dl.softohqimjjedf0jq.net/

Web server:
AkamaiGHost