mp3-rocket.soft32.com

I.T.N.T. SRL

Domain Information

The domain mp3-rocket.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Seattle, Washington within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program mp3 rocket as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Washington, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Sunday, September 29, 2024

Updated date:
Monday, October 6, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Downloader.Bundler.Soft32.Installer, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
100.00%

McAfee
Downloader-FMA
11.11%

Malwarebytes
PUP.Optional.AdBundle
11.11%

K7 AntiVirus
Unwanted-Program
11.11%

F-Prot
W32/Soft32Download.A.gen
11.11%

Agnitum Outpost
PUA.Soft32Downloader
11.11%

Emsisoft Anti-Malware
Gen:Variant.Graftor.54034
11.11%

Comodo Security
Application.Win32.Agent.S
11.11%

Dr.Web
Adware.Downware.971
11.11%

VIPRE Antivirus
Soft32Downloader
11.11%

ESET NOD32
Win32/Soft32Downloader.D potentially unwanted application
11.11%

Rising Antivirus
PE:PUF.Soft32Downloader!1.9C52
11.11%

Fortinet FortiGate
Adware/Softdownmgr
11.11%

NANO AntiVirus
Riskware.Html.SoftDownload.cvvset
11.11%

Zillya! Antivirus
Adware.Agent.Win32.12784
11.11%

The domain mp3-rocket.soft32.com has been seen to resolve to the following 20 IP addresses.

server-52-84-127-85.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-68.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-236.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-224.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-205.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-182.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-96.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-87.iad16.r.cloudfront.net
September 17, 2016

server-52-84-127-49.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-238.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-171.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-161.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-157.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-146.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-95.iad16.r.cloudfront.net
September 3, 2016

server-52-84-127-80.iad16.r.cloudfront.net
September 3, 2016

July 14, 2016

April 8, 2016

May 7, 2015

May 7, 2015

File downloads found at URLs served by mp3-rocket.soft32.com.

1 / 68      (Adware)
http://mp3-rocket.soft32.com/get/file/id/.../  (mp3 rocket downloader setup.exe)

1 / 68      (Adware)
http://mp3-rocket.soft32.com/get/file/id/.../  (mp3 rocket downloader setup.exe)

1 / 68      (Adware)
http://mp3-rocket.soft32.com/get/file/id/.../  (mp3 rocket downloader setup.exe)

1 / 68      (Adware)
http://mp3-rocket.soft32.com/get/file/id/.../  (mp3 rocket downloader setup.exe)

1 / 68      (Adware)
http://mp3-rocket.soft32.com/get/file/id/.../  (mp3 rocket downloader setup.exe)

1 / 68      (Adware)

The following 8 files have been seen to comunicate with mp3-rocket.soft32.com in live environments.

URL:
http://mp3-rocket.soft32.com/

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  73
Shares:  30
Comments:  5

Statistics are for the previous month.