www.ursoftware.com

URSoft, Inc

Domain Information

The domain www.ursoftware.com registered by URSoft, Inc was initially registered in July of 2002 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the Linode network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Monday, July 15, 2002

Expires date:
Wednesday, July 15, 2020

Updated date:
Tuesday, February 5, 2013

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (91% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ClientConnect.Q, PUP.Installer.ClientConnect.L, PUP.Optional.Installer.N, PUP.ClientConnect.AA, PUP.URSoft.Optional.Installer.Meta (L), PUP.Perion.Bundler (M), PUP.URSoft.Optional (L)
95.24%

VIPRE Antivirus
Conduit, Trojan.Win32.Generic, Threat.4786236
47.62%

AVG
MalSign.Generic
47.62%

McAfee
Artemis!CAE377F98911, Artemis!C58BD0DD45D8, Artemis!21A1F9DBFBF7, Artemis!39DA548D96E4, Artemis!93130B989ACD, Artemis!A65E51EF01AB, Artemis!F39E5147C1E0, Artemis!3CCD7070AF6F, Artemis!6ECED83EC0BC
42.86%

Malwarebytes
PUP.Optional.Conduit.A, PUP.Optional.ClientConnect
42.86%

Trend Micro House Call
TROJ_GEN.F47V0323, TROJ_GEN.F47V0328, TROJ_GEN.F47V0407, TROJ_GEN.F47V0504, TROJ_GEN.F47V0505, Suspicious_GEN.F47V0624, Suspicious_GEN.F47V0613
42.86%

ESET NOD32
Win32/Toolbar.Conduit.AB (variant), Win32/Toolbar.Babylon (variant), Win32/Toolbar.Conduit.AE, Win32/ClientConnect (variant)
42.86%

Dr.Web
Adware.Conduit.43, Adware.Babylon.15, Adware.Conduit.96, Adware.Conduit.87
38.10%

avast!
Win32:Adware-BRM [PUP]
28.57%

Fortinet FortiGate
Riskware/Toolbar_Conduit, Riskware/ClientConnect
23.81%

Baidu Antivirus
Trojan.Win32.Toolbar, Adware.Win32.Conduit, PUA.Win32.ClientConnect, Adware.Win32.Toolbar
23.81%

Zillya! Antivirus
Downloader.Agent.Win32.205734
19.05%

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
14.29%

Agnitum Outpost
PUA.Toolbar.Conduit
9.52%

K7 AntiVirus
Trojan , Unwanted-Program
9.52%

The domain www.ursoftware.com has been seen to resolve to the following 2 IP addresses.

li105-80.members.linode.com
September 2, 2016

mail.ursoftware.com
April 25, 2014

File downloads found at URLs served by www.ursoftware.com.

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Adware)
http://www.ursoftware.com/.../yusetup.exe  (your_uninstaller_tsa1wka1c.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.ursoftware.com/.../yusetup7cnetd.exe  (c85d1fa73677e1e4dd4320d251419b29)

1 / 68      (PUP)

1 / 68      (PUP)

6 / 68      (false positives)

11 / 68    (Adware)
http://www.ursoftware.com/.../yusetup.exe  (your_uninstaller_tsa1wcd3p.exe)

9 / 68      (Adware)
http://www.ursoftware.com/.../yusetup.exe  (your_uninstaller_tsa37ajr2.exe)

13 / 68    (Adware)
http://www.ursoftware.com/.../yusetup.exe  (your_uninstaller_tsv61csbf.exe)

13 / 68    (Adware)
http://www.ursoftware.com/.../yusetup.exe  (your_uninstaller_tsa3dpb6v.exe)

8 / 68      (Adware)

9 / 68      (Adware)

14 / 68    (Adware)

8 / 68      (Adware)

12 / 68    (Adware)

7 / 68      (Adware)

The following 57 files have been seen to comunicate with www.ursoftware.com in live environments.

 
Latest 20 of 63 files

URL:
http://www.ursoftware.com/

Google Analytics:
UA-121948

Title:
“Your Uninstaller! 7 - Uninstall any unwanted software/program completely. Download for free.”

Description:
“Your Uninstaller! - Free download, award winning uninstaller suite to remove programs, uninstall software completely and easily. Remove every trace of unwanted programs.”

Web server:
Apache/2.2.15 (CentOS) (PHP/5.3.3)

Facebook:
Likes:  140
Shares:  586
Comments:  65

Statistics are for the previous month.