opensoftwaredownload.com

PERFECT PRIVACY, LLC  (Proxy Registrant)

Domain Information

The domain opensoftwaredownload.com is registered by proxy through TLDS, LLC DBA SRSPLUS and was originally registered in April of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in West McLean, Virginia within the United States which resides on the Latin American and Caribbean IP address Regional Registry network.
Registrar:
TLDS, LLC DBA SRSPLUS

Server location:
Virginia, United States (US)

Create date:
Tuesday, April 29, 2014

Expires date:
Saturday, April 29, 2017

Updated date:
Saturday, April 30, 2016

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Scanner detections:
Detections  (84% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.INSTALLERTECHNOLOGYCO.J, PUP.Optional.Installer.I, PUP.INSTALLERTECHNOLOGYCO.P, PUP.INSTALLERTECHNOLOGYCO.S, PUP.Installer.InstallerTechCorp, PUP.InstallerTechCorp (M), PUP.InstallCore.Installer.Installer (M), PUP.Downloadius.Downloadious.Installer (M), PUP.InstallerTech.InstallerTechnologyCo.Installer.Meta (M), PUP.Bundlore.UKRREMBUDSERVIS.Bundler (M), PUP.Dowloader.Installer.Meta (M), PUP.INSTALLERTECHNOLOGYCO (M), PUP.Softpulse.SmartSecuresoftware.Bundler (M), PUP.Installer.InstallerTechCorp.Meta (M), PUP.InstallerTech.Optimizer.Meta (L), PUP.Air Software.Installe.Installer (M), PUP.Softpulse.SmartSec.Bundler (M), PUP.DownloadAdmin.EBooksMe.Installer (M), PUP.installCore.Compiler.Installer (M), PUP.Softpulse (M)
93.33%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF, NS:PUF.SilenceInstaller!1.9DDF[F1]
37.78%

VIPRE Antivirus
InstallerTech, Threat.4786240, Threat.5063288
33.33%

Dr.Web
Adware.Downware.2519, Adware.Downware.2185, Adware.Downware.9881, Adware.Downware.10482, Adware.Downware.14087
22.22%

Trend Micro House Call
Suspicious_GEN.F47V1106, Suspicious_GEN.F47V1201, Suspicious_GEN.F47V1215, Suspicious_GEN.F47V0304, Suspicious_GEN.F47V0315, Suspicious_GEN.F47V0322, Suspicious_GEN.F47V0330, Suspicious_GEN.F47V0403
20.00%

Qihoo 360 Security
HEUR/QVM21.1.Malware.Gen, HEUR/QVM40.1.Malware.Gen, HEUR/QVM42.0.Malware.Gen, HEUR/QVM42.1.Malware.Gen
15.56%

Sophos
Installer Technology Co, Mal/Generic-S
8.89%

MicroWorld eScan
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

Bitdefender
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

Lavasoft Ad-Aware
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

Emsisoft Anti-Malware
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

F-Secure
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

G Data
Generic.Malware.FPVPk!g.CCAD37B3, Gen:Variant.Graftor.160504, Gen:Variant.Graftor.179595
6.67%

Kaspersky
Trojan-FakeAV.Win32.Agent, Hoax.Win32.ArchSMS
6.67%

Panda Antivirus
Generic Suspicious
6.67%

The domain opensoftwaredownload.com has been seen to resolve to the following 31 IP addresses.

December 23, 2015

December 23, 2015

December 23, 2015

December 23, 2015

December 23, 2015

November 7, 2015

November 7, 2015

November 7, 2015

November 7, 2015

November 7, 2015

August 28, 2015

August 28, 2015

August 28, 2015

August 28, 2015

August 28, 2015

May 2, 2015

May 2, 2015

May 2, 2015

May 2, 2015

May 2, 2015

cf-190-93-250-52.cloudflare.com
November 29, 2014

cf-190-93-251-52.cloudflare.com
November 29, 2014

November 29, 2014

November 29, 2014

November 29, 2014

November 29, 2014

November 29, 2014

cf-190-93-253-52.cloudflare.com
November 10, 2014

cf-190-93-252-52.cloudflare.com
November 10, 2014

September 30, 2014

 
Showing 30 of 31 IP Addresses

File downloads found at URLs served by opensoftwaredownload.com.

1 / 68      (Adware)

1 / 68      (inconclusive)

5 / 68      (Adware)

URL:
http://opensoftwaredownload.com/

SSL certificate subject:
CN=ssl357758.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx

Facebook:
Shares:  7

Statistics above are for the previous month of March 2024.