installer.betterinstaller.com

Somoto Ltd.  (via a Proxy Registrant)

Domain Information

The domain installer.betterinstaller.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2011. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Steele, Nordrhein-Westfalen within Germany which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Somoto Ltd. who is located in Tel Aviv, Israel.
Remove Malware from installer.betterinstaller.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Nordrhein-Westfalen, Germany (DE)

Create date:
Friday, May 27, 2011

Expires date:
Friday, May 27, 2016

Updated date:
Sunday, May 10, 2015

ASN:
AS25074 INETBONE-AS MESH GmbH

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Clam AntiVirus
Adware.Somoto-1, Win.Adware.Somoto
100.00%

VIPRE Antivirus
BetterInstaller, Threat.4150696
100.00%

Sophos
Somoto BetterInstaller
100.00%

Reason Heuristics
PUP.BetterInstaller.Somoto.BB, PUP.Somoto.I, PUP.Somoto.Bundler (M)
100.00%

Dr.Web
Adware.Somoto.17, Adware.Somoto.8, Trojan.Packed.28357
100.00%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.Somoto.A
87.50%

K7 AntiVirus
Unwanted-Program , Trojan
87.50%

F-Prot
W32/SomotoBetterInstaller.A
87.50%

Comodo Security
Application.Win32.Somoto.A, Application.Win32.Somoto.CK
87.50%

Avira AntiVirus
Adware/BetterInstaller.QB, APPL/Somoto.itv.526, Adware/Instoolbar.A, APPL/Somoto.JBL, APPL/Somoto.Gen2, APPL/Somoto.itv.331
87.50%

SUPERAntiSpyware
Adware.Somoto, Adware.Somoto/Variant, PUP.Somoto/Variant
87.50%

ESET NOD32
Win32/Somoto, Win32/Somoto (variant)
87.50%

AVG
AdInstaller.Somoto, Generic
87.50%

K7 Gateway Antivirus
Unwanted-Program , Trojan
75.00%

avast!
Win32:Somoto-F [PUP], Win32:PUP-gen [PUP]
75.00%

The domain installer.betterinstaller.com has been seen to resolve to the following IP address.

December 26, 2013

File downloads found at URLs served by installer.betterinstaller.com.

 
Latest 30 of 66 download URLs

URL:
http://installer.betterinstaller.com/

Web server:
nginx

Remove Malware from installer.betterinstaller.com - Powered by Reason Core Security