realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com

I.T.N.T. SRL

Domain Information

The domain realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com registered by I.T.N.T. SRL was initially registered in September of 2003 through ENOM, INC.. The domain hosts various software downloads. The hosted servers are located in Dulles, Virginia within the United States. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).

This Soft32 domain (part of the Soft32.com site) displays information for the software program realtek rtl8168 8111 pci e gigabit ethernet nic as well as provides 'free' downloads managed through the Soft32's Download Manager (which might include potentially unwanted offers such as the AVG Toolbar).
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Monday, September 29, 2003

Expires date:
Monday, September 29, 2014

Updated date:
Monday, November 26, 2012

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZuluSoftSRL.v, PUP.Downloader.Bundler.Soft32 (M), PUP.Downloader.Bundler.Soft32.Installer (M)
100.00%

Malwarebytes
PUP.Optional.Soft32.A
25.00%

NANO AntiVirus
Riskware.Nsis.Downloader.cvxhzw
25.00%

Dr.Web
Adware.Downware.2152
25.00%

VIPRE Antivirus
Soft32Downloader
25.00%

ESET NOD32
MSIL/Soft32Downloader (variant)
25.00%

The domain realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com has been seen to resolve to the following 19 IP addresses.

server-52-84-127-157.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-146.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-95.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-80.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-49.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-238.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-171.iad16.r.cloudfront.net
September 1, 2016

server-52-84-127-161.iad16.r.cloudfront.net
September 1, 2016

server-54-230-194-245.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-222.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-158.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-155.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-135.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-47.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-21.iad53.r.cloudfront.net
August 11, 2016

server-54-230-194-250.iad53.r.cloudfront.net
August 11, 2016

July 10, 2016

April 14, 2014

April 14, 2014

File downloads found at URLs served by realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com.

1 / 68      (Adware)
http://realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com/get/file/id/.../  (realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.exe)

1 / 68      (Adware)
http://realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com/get/file/id/.../?rel=center  (realtek rtl8168 8111 pci e gigabit ethernet nic setup.exe)

1 / 68      (Adware)

6 / 68      (Adware)
http://realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com/get/file/id/.../  (realtek rtl8168 8111 pci e gigabit ethernet nic setup.exe)

The following 38 files have been seen to comunicate with realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com in live environments.

 
Latest 20 of 38 files

URL:
http://realtek-rtl8168-8111-pci-e-gigabit-ethernet-nic.soft32.com/

Google Analytics:
UA-110868

Title:
“Download Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC 5.629.818.2005”

Description:
“Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC free download. Get the latest version now. Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC”

Network:
Amazon Cloudfront

Web server:
nginx

Facebook:
Likes:  10
Shares:  7
Comments:  2

Twitter:
Shares:  2

Statistics are for the previous month.