media-player-classic.soft32.com

I.T.N.T. SRL

Domain Information

The domain media-player-classic.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Dulles, Virginia within the United States. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program media player classic as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Sunday, September 29, 2024

Updated date:
Monday, October 06, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZuluSoftSRL.AA, PUP.Installer.ITNTSRL.AA, PUP.Downloader.Bundler.Soft32.Installer, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
100.00%

Malwarebytes
PUP.Optional.Soft32.A, PUP.Optional.AdBundle
20.00%

Dr.Web
Adware.Downware.2152, Threat.Undefined
20.00%

VIPRE Antivirus
Soft32Downloader, Threat.4783370
20.00%

ESET NOD32
Win32/Soft32Downloader.B potentially unwanted application, MSIL/Soft32Downloader.C potentially unwanted application
13.33%

NANO AntiVirus
Riskware.Win32.Downloader.cvxhzw, Riskware.Nsis.Downloader.cvxhzw
13.33%

McAfee Web Gateway
BehavesLike.Win32.Anasayfa.cc, BehavesLike.Win32.Downloader.hc
13.33%

Avira AntiVirus
APPL/Downloader.Gen
13.33%

ESET NOD32
MSIL/Soft32Downloader (variant)
6.67%

F-Prot
W32/Soft32Download.A.gen
6.67%

Trend Micro House Call
HV_ZYX_BG260344.TOMC
6.67%

Comodo Security
Application.Win32.Agent.S
6.67%

Antiy Labs AVL
Trojan/Win32.Tgenic
6.67%

Kingsoft AntiVirus
Win32.Troj.Generic.(kcloud)
6.67%

AhnLab V3 Security
Adware/Win32.Bundler
6.67%

The domain media-player-classic.soft32.com has been seen to resolve to the following 42 IP addresses.

server-52-84-127-68.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-236.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-224.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-205.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-182.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-96.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-87.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-85.iad16.r.cloudfront.net
September 16, 2016

server-52-84-127-137.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-94.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-83.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-49.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-23.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-171.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-165.iad16.r.cloudfront.net
August 21, 2016

server-52-84-127-143.iad16.r.cloudfront.net
August 21, 2016

server-54-230-194-250.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-245.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-222.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-69.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-47.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-21.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-20.iad53.r.cloudfront.net
August 9, 2016

server-54-230-194-6.iad53.r.cloudfront.net
August 9, 2016

server-52-84-127-177.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-124.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-75.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-60.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-29.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-226.iad16.r.cloudfront.net
August 2, 2016

 
Showing 30 of 42 IP Addresses

File downloads found at URLs served by media-player-classic.soft32.com.

The following 66 files have been seen to comunicate with media-player-classic.soft32.com in live environments.

 
Latest 20 of 67 files

URL:
http://media-player-classic.soft32.com/

Google Analytics:
UA-110868

Title:
“Download Media Player Classic 6.4.9.1”

Description:
“Media Player Classic free download. Get the latest version now. Window Media Player Classic is an enhanced version of Windows Media Player 6.4.”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  1
Shares:  3

Statistics are for the previous month.