winrar.softonic.fr

Tomas Diago

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Barcelona, Catalonia within Spain which resides on the RIPE Network Coordination Centre network.
Remove Malware from winrar.softonic.fr - Powered by Reason Core Security
Registrar:
Ascio Technologies Inc. Danmark - filial af Ascio Technologies Inc. USA

Server location:
Catalonia, Spain (ES)

ASN:
AS51773 SOFTONIC-AS SOFTONIC INTERNATIONAL S.L.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Malwarebytes
PUP.Optional.Softonic.A
100.00%

Dr.Web
Adware.Downware.1657, Adware.Downware.2454, Adware.Downware.1132, Adware.Downware.4164, Adware.Downware.8646
100.00%

VIPRE Antivirus
Softonic Downloader
100.00%

ESET NOD32
Win32/SoftonicDownloader (variant)
100.00%

Reason Heuristics
Bundler.PPI.Softonic.EE, Bundler.PPI.Softonic.m, Bundler.PPI.Installer
100.00%

McAfee
Artemis!2105458A6299, Artemis!24C434F566F3, Artemis!212FDD731D66, Artemis!21B1FD2B8F6B, Trojan.Artemis!40008665A794
100.00%

McAfee Web Gateway
Artemis!2105458A6299, Artemis!24C434F566F3, Artemis!212FDD731D66, Artemis!21B1FD2B8F6B, BehavesLike.Win32.Downloader.fc
100.00%

Trend Micro House Call
TROJ_GEN.F47V1214, TROJ_GEN.F47V0326, TROJ_GEN.R047H0AI913, TROJ_GEN.F47V0328
80.00%

Rising Antivirus
PE:Malware.Obscure/Huer!1.9E03, PE:Malware.Obscure/Heur!1.9E03
80.00%

herdProtect (fuzzy)
a variant of aafbf27f83419e7eb5752333dc5a6c2f53033e05, a variant of 7c27ff3825dc86c26cedb085ad118bc507231a62, a variant of d2f55ccd6c1956bafd941a6db69c5923cfd8cf59
80.00%

Fortinet FortiGate
Adware/SoftonicDownloader, Riskware/Softonicdownloader
60.00%

Bkav FE
W32.Clod543.Trojan, W32.Clodf49.Trojan
60.00%

Comodo Security
Application.Win32.Agent.SOFE, Application.Win32.SoftonicDownloader.A
60.00%

Baidu Antivirus
Adware.Win32.SoftonicDownloader, Hacktool.Win32.Downloader
60.00%

Agnitum Outpost
PUA.Softonic
40.00%

The domain winrar.softonic.fr has been seen to resolve to the following IP address.

www.softonic.fr
January 26, 2014

File downloads found at URLs served by winrar.softonic.fr.

22 / 68    (PUP)
http://winrar.softonic.fr/universaldownloader-launch  (softonicdownloader_pour_winrar.exe)

29 / 68    (Adware)
http://winrar.softonic.fr/universaldownloader-launch  (softonicdownloader_pour_winrar.exe)

10 / 68    (PUP)
http://winrar.softonic.fr/universaldownloader-launch  (softonicdownloader_pour_winrar.exe)

14 / 68    (PUP)

12 / 68    (PUP)
http://winrar.softonic.fr/universaldownloader-launch  (softonicdownloader_pour_winrar.exe)

The following file have been seen to comunicate with winrar.softonic.fr in live environments.

URL:
http://winrar.softonic.fr/

Web server:
Apache

Facebook:
Likes:  4
Shares:  23
Comments:  11

Statistics are for the previous month.

Remove Malware from winrar.softonic.fr - Powered by Reason Core Security