sd-cf.softonic.jp

Softonic International SA

Domain Information

The domain sd-cf.softonic.jp registered by Softonic International SA was initially registered in August of 2005. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Remove Malware from sd-cf.softonic.jp - Powered by Reason Core Security
Server location:
New York, United States (US)

Create date:
Wednesday, August 31, 2005

Expires date:
Monday, August 31, 2015

Updated date:
Monday, September 01, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Bundler.PPI.Softonic.DD, Bundler.PPI.Softonic.EE, Bundler.PPI.Softonic.l, Bundler.PPI.Softonic.q, Bundler.PPI.Softonic.h, Bundler.PPI.Softonic.b
100.00%

Dr.Web
Adware.Downware.1657, Adware.Downware.804, Adware.Downware.4164, Adware.Downware.5107, Adware.Downware.2454, Adware.Downware.910
90.00%

ESET NOD32
Win32/SoftonicDownloader (variant)
90.00%

Malwarebytes
PUP.Optional.Softonic.A
80.00%

VIPRE Antivirus
Softonic Downloader, Trojan.Win32.Generic, Threat.4786139
80.00%

Trend Micro House Call
HV_ZYX_CA252911.TOMC, TROJ_GEN.F47V1220, Suspicious_GEN.F47V0703, Suspicious_GEN.F47V0610, TROJ_GEN.F47V0326
60.00%

K7 Gateway Antivirus
Unwanted-Program
60.00%

K7 AntiVirus
Unwanted-Program
60.00%

Agnitum Outpost
PUA.Softonic, PUA.Downloader
60.00%

Rising Antivirus
PE:Malware.Obscure/Huer!1.9E03, PE:Malware.Obscure/Heur!1.9E03
50.00%

McAfee
Artemis!50A36F01D3C1, Artemis!F2B21CE44CF5, Artemis!D73B8950632D, Artemis!24C434F566F3
40.00%

McAfee Web Gateway
Artemis!50A36F01D3C1, Artemis!F2B21CE44CF5, Artemis!D73B8950632D, Artemis!24C434F566F3
40.00%

Baidu Antivirus
Adware.Win32.SoftonicDownloader
40.00%

F-Prot
W32/Softonic.C.gen, W32/Softonic.C2.gen, W32/A-1b2ffd18
40.00%

Fortinet FortiGate
Riskware/Softonicdownloader
40.00%

The domain sd-cf.softonic.jp has been seen to resolve to the following 68 IP addresses.

server-54-230-17-172.iad12.r.cloudfront.net
December 1, 2014

server-54-230-17-91.iad12.r.cloudfront.net
December 1, 2014

server-54-230-16-229.iad12.r.cloudfront.net
December 1, 2014

server-54-230-16-175.iad12.r.cloudfront.net
December 1, 2014

server-54-240-160-137.iad12.r.cloudfront.net
December 1, 2014

server-54-230-19-194.iad12.r.cloudfront.net
December 1, 2014

server-54-230-18-38.iad12.r.cloudfront.net
December 1, 2014

server-54-230-17-182.iad12.r.cloudfront.net
December 1, 2014

server-54-230-50-125.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-48-137.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-49-52.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-48-178.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-49-148.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-51-67.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-49-221.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-49-122.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-50-190.jfk5.r.cloudfront.net
August 1, 2014

server-205-251-251-4.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-48-38.jfk5.r.cloudfront.net
August 1, 2014

server-205-251-251-11.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-51-130.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-48-81.jfk5.r.cloudfront.net
August 1, 2014

server-54-230-38-145.jfk1.r.cloudfront.net
July 23, 2014

server-54-230-38-112.jfk1.r.cloudfront.net
July 23, 2014

server-54-230-38-139.jfk1.r.cloudfront.net
July 23, 2014

server-54-230-38-200.jfk1.r.cloudfront.net
July 23, 2014

server-54-230-39-108.jfk1.r.cloudfront.net
July 23, 2014

server-204-246-169-122.jfk1.r.cloudfront.net
July 23, 2014

server-54-230-37-151.jfk1.r.cloudfront.net
July 23, 2014

July 23, 2014

 
Showing 30 of 68 IP Addresses

File downloads found at URLs served by sd-cf.softonic.jp.

12 / 68    (PUP)

22 / 68    (PUP)

11 / 68    (Adware)

21 / 68    (Adware)

11 / 68    (Adware)

17 / 68    (Adware)

4 / 68      (Adware)

5 / 68      (Adware)

7 / 68      (PUP)

The following 31 files have been seen to comunicate with sd-cf.softonic.jp in live environments.

 
Latest 20 of 31 files

URL:
http://sd-cf.softonic.jp/

Network:
Amazon Cloudfront

Web server:
CloudFront

Remove Malware from sd-cf.softonic.jp - Powered by Reason Core Security