www.dllsoftultimate.com

United Privacy Corp

Domain Information

The domain www.dllsoftultimate.com registered by United Privacy Corp was initially registered in June of 2015 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Beaumaris, Victoria within Australia which resides on the Asia Pacific Network Information Centre network.
Registrar:
NAMEPAL.COM #8002

Server location:
Victoria, Australia (AU)

Create date:
Monday, June 22, 2015

Expires date:
Wednesday, June 22, 2016

Updated date:
Tuesday, June 23, 2015

ASN:
AS133618 TRELLIAN-AS-AP Trellian Pty. Limited,AU

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.PaymentsInteractiveSL.F, PUP.Installer.ClovermediaSL.F, PUP.Adknowledge.Fileangels.Bundler (M), PUP.Tuguu.Clovermedia.Bundler (M), PUP.Tuguu.Cloverme.Bundler (M), PUP.Softpulse.VideoPlu.Bundler (M), PUP.Tuguu (M)
100.00%

avast!
DomaIQ-CC [PUP], DomaIQ-CO [PUP], Win32:Adware-gen [Adw]
33.33%

VIPRE Antivirus
Threat.4783235, Threat.4783262, Threat.4778314
33.33%

MicroWorld eScan
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%

McAfee
PUP-FAO!ACB5E3C90ADC, PUP-FKG!2B2AA6931C37, CryptDomaIQ, IBryte-FRT
33.33%

Malwarebytes
PUP.Optional.DomalQ, PUP.Optional.DomaIQ, PUP.Optional.OptimunInstaller
33.33%

K7 Gateway Antivirus
Unwanted-Program
33.33%

K7 AntiVirus
Unwanted-Program
33.33%

Agnitum Outpost
PUA.Lollipop, PUA.DomaIQ, PUA.Agent
33.33%

Kaspersky
not-a-virus:HEUR:AdWare.MSIL.DomaIQ, Trojan.Win32.Badur
33.33%

Bitdefender
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%

Lavasoft Ad-Aware
Gen:Variant.Adware.Strictor.57415, Gen:Variant.Adware.Kazy.374465, Application.Bundler.DomaIQ.Q, Gen:Variant.Application.Graftor.152464
33.33%

Sophos
Generic PUA PF, Generic PUA AP, Generic PUA JG, iBryte Premium Installer
33.33%

F-Secure
Gen:Variant.Adware.Graftor.143716, Gen:Variant.Adware.Kazy.374465, Gen:Variant.Adware.Strictor.57415, Application.Bundler.DomaIQ
33.33%

Avira AntiVirus
APPL/DomaIQ.Gen, Adware/Kazy.374465.2, ADWARE/iBryte.Gen4
33.33%

The domain www.dllsoftultimate.com has been seen to resolve to the following 8 IP addresses.

July 19, 2016

lb-182-241.above.com
February 22, 2016

February 19, 2016

December 4, 2015

ec2-54-186-83-158.us-west-2.compute.amazonaws.com
August 22, 2014

ec2-54-244-30-115.us-west-2.compute.amazonaws.com
August 22, 2014

ec2-54-201-220-135.us-west-2.compute.amazonaws.com
June 9, 2014

ec2-54-201-153-98.us-west-2.compute.amazonaws.com
June 9, 2014

File downloads found at URLs served by www.dllsoftultimate.com.

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (6f05da8327165180c62cc9aeb7147f4e)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (65b1d38a64b74e58f330c58c7ff8e882)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (7571af25c0aa75d26bcb55a31b48530c)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (28263090cf6ac718bc09af2d33346a7f)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (450debc1bea9e6ff52cb3d8b4101a7bb)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (2d6a112ec1ebee631be08b0151f67ca0)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (1d3838511fa8cc314d7c387043a56a91)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (78ef07a135fec58446fb586e98b5d745)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (cd7d00035e547dba365e635de99baf10)

33 / 68    (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (786da5e5ac004c8769d05cf20e964e8d)

34 / 68    (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (6ddb8459b3288acc6eafb491915d74e1)

29 / 68    (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (8213b9ab82cd48ac8da086b4d242b229)

27 / 68    (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (de99d70b2cc6e5eadbf98940b84213ea)

27 / 68    (Adware)
http://www.dllsoftultimate.com/.../Setup.exe  (acb5e3c90adc7a11e8ee1c5742e9e02c)

The following 17 files have been seen to comunicate with www.dllsoftultimate.com in live environments.

URL:
http://www.dllsoftultimate.com/

Title:
“dllsoftultimate.com”

Web server:
nginx