paint-net.soft32.com

I.T.N.T. SRL

Domain Information

The domain paint-net.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Seattle, Washington within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program paint net as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Washington, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Friday, September 29, 2023

Updated date:
Wednesday, August 06, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZuluSoftSRL.P, PUP.Installer.ITNTSRL.P, PUP.Downloader.Bundler.Soft32.Installer (M), PUP.Downloader.Bundler.Soft32 (M)
100.00%

Malwarebytes
PUP.Optional.Soft32.A, PUP.Optional.AdBundle
77.78%

NANO AntiVirus
Riskware.Nsis.Downloader.cvxhzw, Riskware.Html.SoftDownload.cvvset
77.78%

Dr.Web
Adware.Downware.2152, Worm.Siggen.9964
77.78%

VIPRE Antivirus
Soft32Downloader, Threat.4783370
77.78%

ESET NOD32
MSIL/Soft32Downloader (variant)
66.67%

McAfee
Downloader-FMA
11.11%

F-Prot
W32/Soft32Download.C.gen
11.11%

Agnitum Outpost
PUA.Soft32Downloader
11.11%

Comodo Security
Application.Win32.Agent.S
11.11%

Avira AntiVirus
APPL/Downloader.Gen
11.11%

Antiy Labs AVL
Trojan/Win32.Tgenic
11.11%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
11.11%

ESET NOD32
Win32/Soft32Downloader.D potentially unwanted application
11.11%

Rising Antivirus
PE:PUF.Soft32Downloader!1.9C52
11.11%

The domain paint-net.soft32.com has been seen to resolve to the following 21 IP addresses.

server-52-84-127-236.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-224.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-112.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-105.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-87.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-85.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-68.iad16.r.cloudfront.net
September 13, 2016

server-52-84-127-20.iad16.r.cloudfront.net
September 13, 2016

May 19, 2016

May 19, 2016

August 17, 2014

August 17, 2014

a23-67-242-10.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-8.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-65.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-59.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-43.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-57.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-48.deploy.static.akamaitechnologies.com
April 14, 2014

April 14, 2014

April 14, 2014

File downloads found at URLs served by paint-net.soft32.com.

The following 1020 files have been seen to comunicate with paint-net.soft32.com in live environments.

 
Latest 20 of 1,021 files

URL:
http://paint-net.soft32.com/

Google Analytics:
UA-110868

Title:
“Download Paint.NET 4.0.1”

Description:
“Paint.NET free download. Get the latest version now. Paint.NET is image and photo editing software for computers that run Windows.”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  1
Shares:  9

Twitter:
Shares:  3

Statistics are for the previous month.