sb.sftwr.ru

Private Person  (Proxy Registrant)

Domain Information

The domain sb.sftwr.ru is registered by proxy through R01-RU and was originally registered in August of 2015. The hosted servers are located in Gunzenhausen, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
R01-RU

Server location:
Bayern, Germany (DE)

Create date:
Wednesday, August 26, 2015

Expires date:
Friday, August 26, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online AG,DE

Root domain:

The domain sb.sftwr.ru has been seen to resolve to the following 3 IP addresses.

85-10-200-21.clients.your-server.de
October 26, 2015

static.85-10-196-94.clients.your-server.de
October 26, 2015

static.158.40.63.178.clients.your-server.de
October 26, 2015

File downloads found at URLs served by sb.sftwr.ru.

0 / 68
http://sb.sftwr.ru/360TotalSecurity_Rus_Setup_sb.exe  (16f5b0422d197710dec93a908af86c41)

1 / 68      (Adware)
http://sb.sftwr.ru/BlueStacks_Rus_Setup.exe  (2b5ec1747b32d7c65fc083271446a3db)

0 / 68

1 / 68

0 / 68

0 / 68
http://sb.sftwr.ru/SkypePortable_Rus_Online.exe  (SkypePortable_7.18.0.103_online.paf.exe)

1 / 68
http://sb.sftwr.ru/Directx_9.10.11.exe  (directx_9c.10.1.11.exe)

1 / 68      (PUP)

2 / 68
http://sb.sftwr.ru/Zona_Rus_Setup_Online.exe  (zona_russian_setup_online.exe)

1 / 68      (Malware)
http://sb.sftwr.ru/VLC_MediaPlayer_x64_Rus_Setup.exe  (vlc-2.2.2-win64_[www.programosy.pl].exe)

0 / 68
http://sb.sftwr.ru/Volume2_Rus_Setup.exe  (setup_volume2_1_1_3_247.exe)

1 / 68      (inconclusive)

0 / 68
http://sb.sftwr.ru/SweetHome3D_Setup.exe  (sweethome3d-5.2-windows.exe)

1 / 68

3 / 68      (inconclusive)

0 / 68
http://sb.sftwr.ru/Adobe_Flash_Player_Firefox.exe  (adobe flash player21.0.0.197.exe)

0 / 68
http://sb.sftwr.ru/PrivateTunnel_Setup.exe  (privatetunnel-win-2.4.exe)

0 / 68
http://sb.sftwr.ru/LockHunter_x32_Setup.exe  (lockhuntersetup32_2-0-beta2.exe)

1 / 68      (inconclusive)

5 / 68      (inconclusive)
http://sb.sftwr.ru/InstAllAPK_Rus_Setup.exe  (8a1e5d8f5c75573aa2deaf249e790771)

0 / 68

0 / 68
http://sb.sftwr.ru/Warface_Rus_Loader.exe  (warfaceloader_0bede50cc7f273f4bd984b99ef917452.exe)

 
Latest 30 of 140 download URLs

The following 7 files have been seen to comunicate with sb.sftwr.ru in live environments.

URL:
http://sb.sftwr.ru/

Web server:
nginx/1.9.10