osdsoft.com

OSDSoft Ltd.

Domain Information

The domain osdsoft.com registered by OSDSoft Ltd. was initially registered in April of 2011 through GODADDY.COM, LLC. Currently this domain has been known to host various forms of malware. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Friday, April 1, 2011

Expires date:
Saturday, April 1, 2017

Updated date:
Thursday, April 7, 2016

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC

Scanner detections:
Malware distribution  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, Threat.Generic.Variant, PUP.Amonetize (M), Adware.Amonetize.Installer, Adware.Amonetize.123.Meta (M), Adware.Amonetize.ITsystem
70.00%

ESET NOD32
Win32/Amonetize.HC potentially unwanted application, Win32/Amonetize.ET potentially unwanted application, Win32/Ramnit.A virus, Win32/Amonetize.PN potentially unwanted application
46.00%

Kaspersky
Trojan-Dropper.Win32.Agent.bjpeuu, Trojan-Dropper.Win32.Agent.bjphvz, not-a-virus:AdWare.Win32.Amonetize, not-a-virus:Downloader.Win32.Agent, not-a-virus:HEUR:AdWare.Win32.Amonetize
42.00%

Emsisoft Anti-Malware
Trojan.GenericKD.2639259, Trojan.GenericKD.2705635, Gen:Heur.Zygug, Trojan.GenericKD.2790526, Gen:Variant.Mikey.27312, Trojan.GenericKD.2862718, Gen:Variant.Adware.Mikey.28454, Win32.Ramnit, Gen:Variant.Razy.8770
42.00%

avast!
Win32:Amonetize-KC [PUP], Win32:Malware-gen, Win32:Dropper-gen [Drp], Win32:RmnDrp, Win32:Ramnit-CY, Win32:Adware-gen [Adw]
38.00%

Dr.Web
Trojan.Amonetize.6408, Trojan.Amonetize.9717, Trojan.Amonetize.10992, Win32.Rmnet, Trojan.Amonetize.12412, Trojan.Amonetize.12442
36.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic.pak!cobra, Amonetize, Threat.4726519
34.00%

AVG
BundleApp, Adware Generic_r.AXL, Win32/Ramnit.A, Adware BundleApp.WGP, Generic6
32.00%

Norman
Trojan.GenericKD.2705635, Gen:Variant.Adware.Mikey.28454, Win32.Ramnit, Gen:Variant.Razy.8770
30.00%

McAfee
Artemis!76E6E93C6F80, RDN/Generic.grp, Trojan.RDN/Generic Downloader.x, Trojan.RDN/Generic.hra, RDN/Generic Dropper
30.00%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A, Threat.Undefined
22.00%

Sophos
Generic PUA LI (PUA), Generic PUA HO (PUA), Generic PUA LC (PUA), Generic PUA BE (PUA), Virus 'W32/Patched-I', Mal/Generic-S
18.00%

Bitdefender
Trojan.GenericKD.2639259, Trojan.GenericKD.2705635, Gen:Heur.Zygug.6, Trojan.GenericKD.2790526, Gen:Variant.Mikey.27312
16.00%

MicroWorld eScan
Trojan.GenericKD.2639259, Trojan.GenericKD.2705635, Gen:Heur.Zygug.6, Trojan.GenericKD.2790526, Trojan.GenericKD.2862718, Gen:Variant.Adware.Kazy.723691
14.00%

Arcabit
Trojan.Generic.D28459B, Trojan.Zygug.6, Trojan.Generic.D2A947E, Trojan.Mikey.D6AB0, Trojan.Generic.D2BAE7E, Trojan.Adware.Mikey.D6F26
14.00%

The domain osdsoft.com has been seen to resolve to the following 5 IP addresses.

ip-184-168-221-87.ip.secureserver.net
April 6, 2016

February 1, 2016

February 1, 2016

ec2-54-148-148-252.us-west-2.compute.amazonaws.com
January 4, 2016

p3nw8shg381.shr.prod.phx3.secureserver.net
June 21, 2014

File downloads found at URLs served by osdsoft.com.

26 / 68    (PUP)
http://osdsoft.com/.../FastoplayerSetup.exe  (1718623ee35fc75557722945971ccf73)

1 / 68      (Malware)

The following 31 files have been seen to comunicate with osdsoft.com in live environments.

 
Latest 20 of 39 files

January 4, 2016

URL:
http://osdsoft.com/

Web server:
nginx

Facebook:
Likes:  1
Shares:  1

Statistics above are for the previous month of March 2024.