5093780d59d74b15875182cf8241367f.download.dmccint.com

ClientConnect LTD

Domain Information

dmccint.com is the distribution web host for various Perion/Conduit monitization bundles. Typically an adware bundler will connect with the dmccint.com server to request various offers to display to the user (dynamic offer) based on certain properties of the user's PC. dmccint.com will also server a web page with offer details, mostly adware that will be embedded in the ClientConnect installer. The domain 5093780d59d74b15875182cf8241367f.download.dmccint.com registered by ClientConnect LTD was initially registered in November of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Thursday, November 21, 2013

Expires date:
Sunday, January 1, 2017

Updated date:
Monday, May 4, 2015

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!B1638FF39AF9
100.00%

Malwarebytes
PUP.Optional.Conduit.A
100.00%

K7 AntiVirus
Trojan
100.00%

NANO AntiVirus
Riskware.Win32.Conduit.dbqqxi
100.00%

Total Defense
Win32/Tnega.ALHeNWC
100.00%

Trend Micro House Call
TROJ_GE.4DCE9EB6
100.00%

avast!
Win32:Adware-BRM [PUP]
100.00%

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
100.00%

Agnitum Outpost
PUA.Toolbar.Conduit
100.00%

Dr.Web
Adware.Conduit.96
100.00%

VIPRE Antivirus
Conduit
100.00%

Baidu Antivirus
PUA.Win32.ClientConnect
100.00%

ESET NOD32
Win32/Toolbar.Conduit.AB (variant)
100.00%

Rising Antivirus
PE:Trojan.Win32.Generic.170B113A!386601274
100.00%

Fortinet FortiGate
Riskware/Toolbar_Conduit
100.00%

The domain 5093780d59d74b15875182cf8241367f.download.dmccint.com has been seen to resolve to the following IP address.

September 5, 2014

File downloads found at URLs served by 5093780d59d74b15875182cf8241367f.download.dmccint.com.

URL:
http://5093780d59d74b15875182cf8241367f.download.dmccint.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)