openoffice.soft32.com

I.T.N.T. SRL

Domain Information

The domain openoffice.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Dulles, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program openoffice as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Sunday, September 29, 2024

Updated date:
Monday, October 6, 2014

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZuluSoftSRL.Q, PUP.Installer.ITNTSRL.Q, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
100.00%

Malwarebytes
PUP.Optional.Soft32.A, PUP.AdBundle
56.52%

NANO AntiVirus
Riskware.Nsis.Downloader.cvxhzw, Riskware.Html.SoftDownload.cvvset, Riskware.Win32.Downloader.cvxhzw
56.52%

Dr.Web
Adware.Downware.2152, Trojan.Damaged.1, Adware.Downware.971, Adware.Downware.412, Adware.Downware.8288
56.52%

VIPRE Antivirus
Soft32Downloader, Threat.4783370, Threat.4150696
56.52%

ESET NOD32
MSIL/Soft32Downloader (variant), Win32/Soft32Downloader (variant)
39.13%

Avira AntiVirus
TR/Trash.Gen, APPL/Downloader.Gen
26.09%

K7 AntiVirus
Unwanted-Program , Adware
21.74%

Agnitum Outpost
PUA.Soft32Downloader
21.74%

Comodo Security
Application.Win32.Agent.S, UnclassifiedMalware
17.39%

ESET NOD32
MSIL/Soft32Downloader.C potentially unwanted application, Win32/Soft32Downloader.C potentially unwanted application
17.39%

McAfee
SoftDropper, Trojan.Artemis!748E9F78CD3A, Program.SoftDropper
17.39%

SUPERAntiSpyware
Trojan.Agent/Gen-Downloader, PUP.SoftDownloader, PUP.Morstar/Variant
13.04%

herdProtect (fuzzy)
a variant of 2419d81d7f759895909b4074028a18b5f8ed622a, a variant of f08115da5aefcdca1b7d2fc260b920e3ef49816c, a variant of 0f1905d0ffcfdfaa70f40a42169fae5f4b52023a
13.04%

F-Prot
W32/Soft32Download.A.gen
8.70%

The domain openoffice.soft32.com has been seen to resolve to the following 19 IP addresses.

server-52-84-127-214.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-193.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-150.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-112.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-100.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-72.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-248.iad16.r.cloudfront.net
August 14, 2016

server-52-84-127-235.iad16.r.cloudfront.net
August 14, 2016

January 27, 2016

December 19, 2015

December 19, 2015

November 1, 2014

November 1, 2014

August 17, 2014

August 17, 2014

August 12, 2014

August 12, 2014

April 14, 2014

April 14, 2014

File downloads found at URLs served by openoffice.soft32.com.

0 / 68
http://openoffice.soft32.com/goto/file/id/.../  (apache_openoffice_4.1.2_win_x86_install_en-us.exe)

1 / 68      (Adware)

The following 43 files have been seen to comunicate with openoffice.soft32.com in live environments.

 
Latest 20 of 43 files

URL:
http://openoffice.soft32.com/

Google Analytics:
UA-110868

Title:
“Download OpenOffice 4.1.2”

Title (4/14/2014):
“Download OpenOffice 4.0.1”

Title (8/12/2014):
“Download OpenOffice 4.1.0”

Description:
“OpenOffice free download. Get the latest version now. Word processing, spreadsheets, presentations, graphics, databases and more.”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  11
Shares:  12
Comments:  6

Statistics are for the previous month.