download.ursoftware.com

URSoft, Inc

Domain Information

The domain download.ursoftware.com registered by URSoft, Inc was initially registered in July of 2002 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the Linode network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Monday, July 15, 2002

Expires date:
Wednesday, July 15, 2020

Updated date:
Tuesday, April 14, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Toolbar.Babylon, Win32/MyPCBackup, Win32/Toolbar.Babylon (variant), Win32/Toolbar.Conduit.AB (variant), Win32/StartPage.NWN
100.00%

Baidu Antivirus
Trojan.Win32.Agent, Adware.Win32.Toolbar, Trojan.Win32.Toolbar, Adware.Win32.Conduit
66.67%

K7 AntiVirus
Trojan , Unwanted-Program , Riskware
66.67%

Trend Micro House Call
TROJ_GEN.F47V1113, TROJ_GEN.F47V0328, Suspicious_GEN.F47V0624, TROJ_GEN.R11H1GS
66.67%

Dr.Web
Trojan.DownLoader10.19818, Adware.Babylon.15, Adware.Conduit.96, Trojan.Click.28608
66.67%

McAfee
Artemis!DC5688A33D8F, Artemis!C58BD0DD45D8, Artemis!A65E51EF01AB
50.00%

Fortinet FortiGate
W32/MyPCBackup.A, Riskware/Toolbar_Conduit, Adware/Clicker
50.00%

F-Prot
W32/Backdoor2.HTIG, W32/Undefined.Threat
33.33%

Reason Heuristics
PUP.Optional.URSoft.Installer, PUP.Installer.ClientConnect.Q
33.33%

Agnitum Outpost
PUA.Toolbar.Conduit, Trojan.StartPage
33.33%

VIPRE Antivirus
Conduit, Trojan.Win32.Generic
33.33%

AVG
Generic, Generic2_c
33.33%

Bkav FE
W32.Clod181.Trojan
16.67%

Malwarebytes
PUP.Optional.Conduit.A
16.67%

avast!
Win32:Adware-BRM [PUP]
16.67%

The domain download.ursoftware.com has been seen to resolve to the following IP address.

mail.ursoftware.com
May 30, 2014

File downloads found at URLs served by download.ursoftware.com.

2 / 68      (PUP)

12 / 68    (PUP)
http://download.ursoftware.com/.../openurl-yu.exe  (9a5c1177af532738b256a206f135b425)

6 / 68      (false positives)

14 / 68    (Adware)

3 / 68      (PUP)
http://download.ursoftware.com/.../dl.php?pid=yu2010  (diendanbaclieu.net_yusetup7.5.exe)

9 / 68      (PUP)

The following 4 files have been seen to comunicate with download.ursoftware.com in live environments.

URL:
http://download.ursoftware.com/

Google Analytics:
UA-121948

Title:
“Your Uninstaller! 7 - Uninstall any unwanted software/program completely. Download for free.”

Description:
“Your Uninstaller! - Free download, award winning uninstaller suite to remove programs, uninstall software completely and easily. Remove every trace of unwanted programs.”

Web server:
Apache/2.2.15 (CentOS) (PHP/5.3.3)