teamspeak.soft32.fr

Ano Nymous

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Registrar:
EURODNS S.A.

Server location:
Virginia, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ZuluSoftSRL.P, PUP.Downloader.Bundler.Soft32.Installer (M)
100.00%

Malwarebytes
PUP.Optional.Soft32.A
50.00%

NANO AntiVirus
Riskware.Nsis.Downloader.cvxhzw
50.00%

Dr.Web
Adware.Downware.2152
50.00%

VIPRE Antivirus
Soft32Downloader
50.00%

ESET NOD32
MSIL/Soft32Downloader (variant)
50.00%

The domain teamspeak.soft32.fr has been seen to resolve to the following 10 IP addresses.

server-52-84-127-241.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-215.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-206.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-177.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-163.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-110.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-63.iad16.r.cloudfront.net
August 2, 2016

server-52-84-127-55.iad16.r.cloudfront.net
August 2, 2016

a23-67-242-43.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-57.deploy.static.akamaitechnologies.com
April 14, 2014

File downloads found at URLs served by teamspeak.soft32.fr.

The following 62 files have been seen to comunicate with teamspeak.soft32.fr in live environments.

 
Latest 20 of 62 files

URL:
http://teamspeak.soft32.fr/

Google Analytics:
UA-110868

Title:
“Télécharger TeamSpeak 3.0.13.1”

Description:
“TeamSpeak - Télécharger Gratuit. TeamSpeak est un logiciel pour une communication vocale de qualité via l'Internet. - Téléchargement gratuitement.”

Network:
Amazon Cloudfront

Web server:
nginx