winzip.soft32.com

I.T.N.T. SRL

Domain Information

The domain winzip.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Seattle, Washington within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program winzip as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Washington, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Sunday, September 29, 2024

Updated date:
Monday, October 6, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallCore.ENG (M), PUP.Installer.ITNTSRL.M, PUP.Downloader.Bundler.Soft32.Installer, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
100.00%

Comodo Security
Application.Win32.InstallCore.BWAN, Application.Win32.Agent.S
60.00%

VIPRE Antivirus
InstallCore.b, Threat.4783370, Soft32Downloader
60.00%

Trend Micro House Call
TROJ_GEN.F47V0411, TROJ_GEN.F47V1025
40.00%

Malwarebytes
PUP.AdBundle
40.00%

NANO AntiVirus
Riskware.Win32.Downloader.cvxhzw, Riskware.Html.SoftDownload.cvvset
40.00%

F-Prot
W32/Soft32Download.A.gen
40.00%

Agnitum Outpost
PUA.Soft32Downloader
40.00%

SUPERAntiSpyware
PUP.SoftDownloader, Trojan.Agent/Gen-Downloader
40.00%

Dr.Web
Adware.Downware.412, Trojan.Damaged.1
40.00%

Rising Antivirus
PE:PUF.Soft32Downloader!1.9C52
40.00%

Fortinet FortiGate
Riskware/Soft32Downloader
40.00%

K7 AntiVirus
Unwanted-Program
40.00%

Avira AntiVirus
TR/Trash.Gen
40.00%

ESET NOD32
Win32/Soft32Downloader.C potentially unwanted application
20.00%

The domain winzip.soft32.com has been seen to resolve to the following 15 IP addresses.

server-52-84-127-182.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-96.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-87.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-85.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-68.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-236.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-224.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-205.iad16.r.cloudfront.net
September 17, 2016

February 27, 2016

May 4, 2015

May 4, 2015

October 20, 2014

October 20, 2014

June 21, 2014

June 21, 2014

File downloads found at URLs served by winzip.soft32.com.

0 / 68
http://winzip.soft32.com/get/file/id/.../  (winzip-19-5-11532-0-multi-win.exe)

0 / 68

4 / 68      (PUP)

The following 45 files have been seen to comunicate with winzip.soft32.com in live environments.

 
Latest 20 of 45 files

URL:
http://winzip.soft32.com/

Google Analytics:
UA-110868

Title:
“Download WinZip 20.0.11659.0”

Description:
“WinZip free download. Get the latest version now. Compress, encrypt, manage and share with WinZip, the world's #1 Zip utility.”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  8
Shares:  6

Statistics are for the previous month.