ttb.qwb9j4zu.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain ttb.qwb9j4zu.com is registered by proxy through NAME.COM, INC. and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Tuesday, December 2, 2014

Expires date:
Wednesday, December 2, 2015

Updated date:
Tuesday, December 2, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Softpulse.Bundler, PUP.InstallCore.Internet.Installer.Meta (M), PUP.Softpulse.DigitalPlugin.Bundler (M), Win32.Generic, PUP.Softpulse.DigitalP.Bundler (M), PUP.Softpulse.VideoPlu.Bundler (M), PUP.Softpulse (M)
100.00%

Qihoo 360 Security
Malware.QVM17.Gen, HEUR/QVM42.1.Malware.Gen
27.27%

avast!
Win32:SoftPulse-BE [PUP], SoftPulse-EN [PUP]
18.18%

Dr.Web
Trojan.Domaiq.175, Adware.SoftPules.3, Trojan.Domaiq.21
18.18%

VIPRE Antivirus
Threat.5064683, Threat.4783235
18.18%

ESET NOD32
Win32/SoftPulse.S potentially unwanted application
18.18%

AVG
Win.Threat.High, Found Win32/DH{gRIxfX5QgQd5VE8VUYEVgQkcU4ETQYEP}
18.18%

MicroWorld eScan
Adware.Agent.PBC, Gen:Variant.Adware.Kazy.494201
18.18%

McAfee
Program.SoftPulse
18.18%

Malwarebytes
PUP.Optional.SmartSec, PUP.Optional.SoftPulse
18.18%

Kaspersky
not-a-virus:Downloader.Win32.DriverUpd, not-a-virus:HEUR:AdWare.Win32.SoftPulse
18.18%

Bitdefender
Adware.Agent.PBC, Gen:Variant.Adware.Kazy.494201
18.18%

Lavasoft Ad-Aware
Application.Bundler.SoftPulse.N, Application.Bundler.SoftPulse.P
18.18%

Comodo Security
Application.Win32.SoftPulse.D
18.18%

Sophos
PUA 'SoftPulse' (of type Adware)
18.18%

The domain ttb.qwb9j4zu.com has been seen to resolve to the following IP address.

unallocated.barefruit.co.uk
June 19, 2015

File downloads found at URLs served by ttb.qwb9j4zu.com.

The following 230 files have been seen to comunicate with ttb.qwb9j4zu.com in live environments.

 
Latest 20 of 230 files

URL:
http://ttb.qwb9j4zu.com/

Web server:
nginx/1.0.15