cht.conduit-download.com

Conduit LTD.

Domain Information

The domain cht.conduit-download.com registered by Conduit LTD. was initially registered in June of 2009 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Sunday, June 7, 2009

Expires date:
Tuesday, June 7, 2016

Updated date:
Thursday, March 13, 2014

ASN:
AS16625 AKAMAI-AS - Akamai Technologies, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.4933.Conduit.H, PUP.410019.Conduit.H, PUP.49019.Conduit.S, PUP.41121.Conduit.H, PUP.41131.Conduit.H, PUP.41146.Conduit.H, PUP.41147.Conduit.H, PUP.Toolbar.Conduit.H, PUP.Toolbar.ClientConnect.H, PUP.49222.Conduit.H, PUP.Conduit.Bundler (M), PUP.Conduit.ClientCo.Installer (M), PUP.Conduit.ClientCo.Bundler (M)
100.00%

VIPRE Antivirus
Conduit, Threat.4786236, Trojan.Win32.Generic
62.00%

Malwarebytes
PUP.Optional.Conduit.A
60.00%

Dr.Web
Adware.Conduit.6, Adware.Conduit.82, Adware.Conduit.33, Adware.Conduit.45
60.00%

G Data
Win32.Application.ConduitBrothersoftTB, Win32.Application.ConduitTB, Win32.Adware.Conduit
54.00%

Trend Micro House Call
TROJ_GE.9797A2AA, TROJ_GEN.F47V1231, TROJ_GEN.F47V0118, TROJ_GEN.F47V0128, TROJ_GE.D6E51D90, TROJ_GE.D188D989, Suspici.389644AA
50.00%

NANO AntiVirus
Trojan.Win32.BGuard.csnycu, Riskware.Win32.BGuard.csnycu, Riskware.Nsis.Downloader.ddbdbi
46.00%

Panda Antivirus
Adware/Conduit, PUP/Conduit.A, Trj/Genetic.gen, Trj/OCJ.F
44.00%

Boost by Reason
Optional.Conduit.H
30.00%

ESET NOD32
Win32/Conduit.SearchProtect, Win32/ClientConnect (variant), Win32/Toolbar.Conduit.AJ (variant)
22.00%

Kaspersky
not-a-virus:WebToolbar.JS.Condonit, not-a-virus:WebToolbar.NSIS.Agent, not-a-virus:WebToolbar.Win32.Agent, not-a-virus:Downloader.NSIS.Agent
18.00%

AVG
Potentially harmful program Toolbar.Conduit
16.00%

K7 AntiVirus
Unwanted-Program , Trojan
16.00%

McAfee
Artemis!12763EE2622F, Artemis!85E3B19836F1, Artemis!FB11436317ED, Artemis!B2441D309142, Artemis!F0FF7A96FB60, Artemis!13983258BC19, Artemis!C154297041DF
16.00%

ESET NOD32
Win32/Conduit.SearchProtect.N potentially unwanted application, Win32/ClientConnect.A potentially unwanted application, Win32/Toolbar.Conduit.AJ potentially unwanted application
14.00%

The domain cht.conduit-download.com has been seen to resolve to the following 37 IP addresses.

a23-61-253-60.deploy.static.akamaitechnologies.com
August 26, 2016

a23-6-19-151.deploy.static.akamaitechnologies.com
August 25, 2016

a23-1-51-103.deploy.static.akamaitechnologies.com
August 22, 2016

a23-77-167-66.deploy.static.akamaitechnologies.com
July 24, 2016

a23-78-148-241.deploy.static.akamaitechnologies.com
July 22, 2016

a104-117-13-166.deploy.static.akamaitechnologies.com
July 20, 2016

a23-63-251-209.deploy.static.akamaitechnologies.com
July 3, 2016

a172-226-67-204.deploy.static.akamaitechnologies.com
July 2, 2016

a23-2-185-141.deploy.static.akamaitechnologies.com
June 28, 2016

a172-232-140-90.deploy.static.akamaitechnologies.com
June 28, 2016

a23-209-104-190.deploy.static.akamaitechnologies.com
June 27, 2016

a184-26-144-231.deploy.static.akamaitechnologies.com
June 6, 2016

a172-231-204-90.deploy.static.akamaitechnologies.com
June 4, 2016

a23-196-151-146.deploy.static.akamaitechnologies.com
May 26, 2016

a23-77-93-155.deploy.static.akamaitechnologies.com
May 24, 2016

a23-202-99-151.deploy.static.akamaitechnologies.com
May 16, 2016

a104-70-51-203.deploy.static.akamaitechnologies.com
May 15, 2016

a173-222-166-171.deploy.static.akamaitechnologies.com
May 15, 2016

a184-84-230-139.deploy.static.akamaitechnologies.com
April 20, 2016

a23-218-43-245.deploy.static.akamaitechnologies.com
April 20, 2016

a184-29-184-158.deploy.static.akamaitechnologies.com
April 13, 2016

a23-60-11-84.deploy.static.akamaitechnologies.com
April 7, 2016

a23-195-247-177.deploy.static.akamaitechnologies.com
April 5, 2016

a104-105-84-244.deploy.static.akamaitechnologies.com
April 5, 2016

a23-202-211-151.deploy.static.akamaitechnologies.com
March 4, 2016

a104-90-40-120.deploy.static.akamaitechnologies.com
March 3, 2016

a23-73-150-68.deploy.static.akamaitechnologies.com
March 2, 2016

a23-78-195-151.deploy.static.akamaitechnologies.com
February 28, 2016

a23-55-241-141.deploy.static.akamaitechnologies.com
February 27, 2016

a172-231-221-244.deploy.static.akamaitechnologies.com
February 27, 2016

 
Showing 30 of 37 IP Addresses

File downloads found at URLs served by cht.conduit-download.com.

20 / 68    (Adware)

6 / 68      (PUP)

12 / 68    (PUP)

 
Latest 30 of 171 download URLs

URL:
http://cht.conduit-download.com/

SSL certificate subject:
CN=*.conduit-download.com, OU=IT, O=ClientConnect LTD, L=Foster City, S=CA, C=US

SSL certificate issuer:
CN=Verizon Akamai SureServer CA G14-SHA1, OU=Cybertrust, O=Verizon Enterprise Solutions, L=Amsterdam, C=NL

Web server:
Microsoft-HTTPAPI/2.0