dl.zoltapro.com
virus alert
Domain Information
The domain dl.zoltapro.com registered by virus alert was initially registered in December of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC
Server location:
Arizona, United States (US)
Create date:
Tuesday, December 29, 2015
Expires date:
Thursday, December 29, 2016
Updated date:
Tuesday, December 29, 2015
ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
VIPRE Antivirus
Conduit, Threat.4150696
100.00%
ESET NOD32
Win32/ClientConnect.A potentially unwanted application, MSIL/Rebrand.LittleRegClean.A potentially unwanted application
100.00%
Reason Heuristics
PUP.Conduit.ClientConnect.Installer (M)
50.00%
MicroWorld eScan
Gen:Variant.Application.SearchProtect.2
50.00%
McAfee
Trojan.Artemis!5E73AAFA008E
50.00%
Malwarebytes
PUP.Optional.SearchProtect.A
50.00%
Trend Micro House Call
Suspici.1AC582C8
50.00%
avast!
Win32:Conduit-B [PUP]
50.00%
NANO AntiVirus
Trojan.Win32.Conduit.dmumyu
50.00%
Lavasoft Ad-Aware
Application.SearchProtect.CA
50.00%
Sophos
PUA 'Conduit Search Protect'
50.00%
F-Secure
Gen:Variant.Application.SearchProtect
50.00%
Dr.Web
Adware.Conduit.298, Adware.Conduit.45
50.00%
Baidu Antivirus
Adware.Win32.Conduit
50.00%
The domain dl.zoltapro.com has been seen to resolve to the following IP address.
ip-166-62-27-151.ip.secureserver.net
February 28, 2016
File downloads found at URLs served by dl.zoltapro.com.
The following 3 files have been seen to comunicate with dl.zoltapro.com in live environments.
URL:
http://dl.zoltapro.com/