winrar.soft32.com

I.T.N.T. SRL

Domain Information

The domain winrar.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Dulles, Virginia within the United States. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program winrar as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Sunday, September 29, 2024

Updated date:
Monday, October 6, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (82% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Win.Reputation, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
97.37%

herdProtect (fuzzy)
a variant of 5860feafe343ee0b26fe68d3d3c433dd888772e2, a variant of c5a8bf62a16b6a52670dcca35ff4c2fe73ec2d36
5.26%

McAfee
Downloader-FMA, SoftDropper
5.26%

Malwarebytes
PUP.Optional.AdBundle, PUP.Optional.Soft32.A
5.26%

K7 AntiVirus
Unwanted-Program
5.26%

Comodo Security
Application.Win32.Agent.S, UnclassifiedMalware
5.26%

Dr.Web
Worm.Siggen.9820, Adware.Downware.2152
5.26%

VIPRE Antivirus
Soft32Downloader, Threat.4783370
5.26%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
2.63%

F-Secure
Application:W32/Generic.70053c248f!Online
2.63%

Agnitum Outpost
PUA.Soft32Downloader
2.63%

F-Prot
W32/Soft32Download.A.gen
2.63%

Trend Micro House Call
TROJ_GEN.R0CBB01L513
2.63%

ESET NOD32
MSIL/Soft32Downloader.C potentially unwanted application
2.63%

NANO AntiVirus
Riskware.Nsis.Downloader.cvxhzw
2.63%

The domain winrar.soft32.com has been seen to resolve to the following 97 IP addresses.

server-52-84-127-205.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-182.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-96.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-87.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-85.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-68.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-236.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-224.iad16.r.cloudfront.net
September 17, 2016

server-54-192-192-161.iad53.r.cloudfront.net
September 17, 2016

server-54-192-192-108.iad53.r.cloudfront.net
September 17, 2016

server-54-192-192-29.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-15.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-125.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-90.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-54.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-38.iad53.r.cloudfront.net
September 13, 2016

server-54-192-192-123.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-97.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-87.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-53.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-24.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-205.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-199.iad53.r.cloudfront.net
September 1, 2016

server-54-192-192-179.iad53.r.cloudfront.net
September 1, 2016

server-52-84-127-80.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-238.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-161.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-157.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-146.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-95.iad16.r.cloudfront.net
September 1, 2016

 
Showing 30 of 97 IP Addresses

File downloads found at URLs served by winrar.soft32.com.

1 / 68      (Adware)

 
Latest 30 of 99 download URLs

The following 417 files have been seen to comunicate with winrar.soft32.com in live environments.

 
Latest 20 of 516 files

URL:
http://winrar.soft32.com/

Google Analytics:
UA-110868

Title:
“Download WinRAR 5.31”

Description:
“WinRAR free download. Get the latest version now. Complete support for RAR and ZIP, compress 8 to 30 percent better than ZIP!”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  81
Shares:  53
Comments:  41

Statistics are for the previous month.