songr.softonic.it

Softonic International SA

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Barcelona, Catalonia within Spain which resides on the RIPE Network Coordination Centre network.
Server location:
Catalonia, Spain (ES)

ASN:
AS51773 SOFTONIC-AS SOFTONIC INTERNATIONAL S.L.

Root domain:

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
Bundler.PPI.Softonic.CC, Bundler.PPI.Softonic.m, Bundler.PPI.Softonic.FF, PUP.Softonic.Bundler (M), Bundler.SoftonicDownloader (M)
89.47%

ESET NOD32
Win32/DownWare, Win32/SoftonicDownloader (variant)
68.42%

Rising Antivirus
PE:Trojan.Dropper!6.3CE, PE:Malware.Obscure/Huer!1.9E03, PE:Malware.Obscure/Heur!1.9E03
63.16%

Malwarebytes
PUP.Optional.Softonic.A
63.16%

Dr.Web
Adware.Downware.1515, Adware.Downware.1328, Adware.Downware.2454, Adware.Downware.2760, Adware.Downware.1132, Adware.Downware.1657, Adware.Downware.910
63.16%

VIPRE Antivirus
Softonic Downloader, Trojan.Win32.Generic
63.16%

Baidu Antivirus
Adware.Win32.SoftonicDownloader, Trojan.Win32.SoftonicDownloader, Hacktool.Win32.Downloader
47.37%

Trend Micro House Call
TROJ_GEN.F47V1027, TROJ_GEN.F47V0326, TROJ_GEN.F47V0511, TROJ_GEN.F47V1201, TROJ_GEN.F47V0411, TROJ_GEN.F47V0218
42.11%

SUPERAntiSpyware
PUP.SoftonicDownloader/Variant, Adware.SoftonicDownloader
36.84%

Agnitum Outpost
PUA.Softonic, PUA.Downloader
31.58%

McAfee
Artemis!EA3569D5E706, Artemis!83946B74983C, Artemis!5B59B9230E6F
26.32%

K7 AntiVirus
Unwanted-Program
26.32%

Bkav FE
W32.Clod543.Trojan, HW32.CDB
21.05%

Comodo Security
Application.Win32.Agent.SOFE
15.79%

Fortinet FortiGate
Riskware/Softonicdownloader, Adware/SoftonicDownloader
15.79%

The domain songr.softonic.it has been seen to resolve to the following 2 IP addresses.

commoncobs.softonic.com
April 10, 2016

www.softonic.it
April 14, 2014

File downloads found at URLs served by songr.softonic.it.

1 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

2 / 68      (false positives)

1 / 68      (Adware)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

17 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

1 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

1 / 68      (Adware)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

6 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

15 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

21 / 68    (Adware)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

1 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

21 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

12 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

12 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

11 / 68    (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

9 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

7 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

7 / 68      (PUP)
http://songr.softonic.it/universaldownloader-launch  (softonicdownloader_per_songr.exe)

13 / 68    (PUP)

The following 10 files have been seen to comunicate with songr.softonic.it in live environments.

URL:
http://songr.softonic.it/

Google Analytics:
UA-43493347

Title:
“Download video e audio - Softonic”

Description:
“Scarica Download video e audio degli utenti su Softonic. Download software.”

Web server:
Apache