c71104d658b14e10a200c147976a7cbe.download.dmccint.com
ClientConnect LTD
Domain Information
dmccint.com is the distribution web host for various Perion/Conduit monitization bundles. Typically an adware bundler will connect with the dmccint.com server to request various offers to display to the user (dynamic offer) based on certain properties of the user's PC. dmccint.com will also server a web page with offer details, mostly adware that will be embedded in the ClientConnect installer. The domain c71104d658b14e10a200c147976a7cbe.download.dmccint.com registered by ClientConnect LTD was initially registered in November of 2013 through GODADDY.COM, LLC. This domain has been seen distributing various forms of adware (some being very aggressive) directly or via bundled installations. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network.
Registrar:
GODADDY.COM, LLC
Server location:
California, United States (US)
Create date:
Thursday, November 21, 2013
Expires date:
Sunday, January 1, 2017
Updated date:
Tuesday, January 6, 2015
ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.
Google Safe Browsing:
unwanted
Scanner detections:
Adware distribution
Scan engine
Details
Detections
Reason Heuristics
PUP.Win.Reputation, PUP.Perion.P
66.67%
Microsoft Security Essentials
Worm:Win32/NeksMiner.A
33.33%
F-Secure
Application:W32/Generic.70053c248f!Online
33.33%
Malwarebytes
PUP.Optional.ClientConnect
33.33%
VIPRE Antivirus
Conduit
33.33%
K7 AntiVirus
Trojan
33.33%
Trend Micro House Call
Suspicious_GEN.F47V0812
33.33%
avast!
Win32:Adware-gen [Adw]
33.33%
Kaspersky
not-a-virus:WebToolbar.Win32.Perinet
33.33%
Dr.Web
Adware.Downware.1895
33.33%
G Data
Win32.Trojan.Agent.78KU6S
33.33%
Panda Antivirus
Trj/Chgt.B
33.33%
ESET NOD32
Win32/Toolbar.Conduit.AE
33.33%
IKARUS anti.virus
PUA.ClientConnect
33.33%
Baidu Antivirus
Adware.Win32.Perinet
33.33%
The domain c71104d658b14e10a200c147976a7cbe.download.dmccint.com has been seen to resolve to the following IP address.
File downloads found at URLs served by c71104d658b14e10a200c147976a7cbe.download.dmccint.com.
URL:
http://c71104d658b14e10a200c147976a7cbe.download.dmccint.com/
Web server:
Microsoft-IIS/7.5 (ASP.NET)
Related Domains