dl2.appzona.net

N/A

Domain Information

The domain dl2.appzona.net registered by N/A was initially registered in February of 2015 through DOMAINCONTEXT, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Pokrovka, Primor'Ye within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
DOMAINCONTEXT, INC.

Server location:
Primor'Ye, Russia (RU)

Create date:
Tuesday, February 17, 2015

Expires date:
Friday, February 17, 2017

Updated date:
Wednesday, January 27, 2016

ASN:
AS42244 ESERVER Hosting Operator eServer.ru Ltd.

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DestinyMedia, Threat.Win.Reputation.IMP, PUP.DestinyMedia.Installer (M), PUP.DestinyM.Installer (M), Win32.Generic, PUP (M)
100.00%

Dr.Web
Program.Zona.41, riskware program Program.Zona.41, Program.Zona.34, riskware program Program.Zona.34
57.58%

Bkav FE
W32.HfsAdware
54.55%

Zillya! Antivirus
Downloader.Adload.Win32.17823, Downloader.Adload.Win32.18418, Downloader.Adload.Win32.18417, Downloader.Adload.Win32.19854
54.55%

K7 AntiVirus
Unwanted-Program , Adware
54.55%

avast!
Win32:ZvuZona-I [PUP], Win32:ZvuZona-M [PUP]
54.55%

Kaspersky
not-a-virus:Downloader.Win32.AdLoad
54.55%

NANO AntiVirus
Riskware.Win32.Zona.dqfxyb, Trojan.Win32.AdLoad.dohigr
54.55%

Comodo Security
Application.Win32.ZvuZona.A
54.55%

G Data
Win32.Application.ZvuZona, Application.Bundler.BR, Application.Generic.1157643
54.55%

AhnLab V3 Security
Win-PUP/ZonaInstaller, PUP/Win32.Downloader, PUP/Win32.Helper, PUP/Win32.ZonaInstaller
54.55%

McAfee
ZvuZona, Program.ZvuZona
54.55%

Panda Antivirus
Trj/CI.A, Generic Suspicious
54.55%

Rising Antivirus
PE:PUF.Zona!1.9E06, PE:Trojan.Win32.Generic.18E9AA9C!417966748, PE:PUF.Zona!1.9E06[F1]
54.55%

AVG
Generic
54.55%

The domain dl2.appzona.net has been seen to resolve to the following IP address.

hosted-by.ihc.ru
May 6, 2015

File downloads found at URLs served by dl2.appzona.net.

3 / 68      (PUP)
http://dl2.appzona.net/ZonaSetup_latest.exe  (2f839b188a1ef70754be83aa1e576daf)

1 / 68      (PUP)

35 / 68    (PUP)

40 / 68    (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

37 / 68    (PUP)

37 / 68    (PUP)

0 / 68
http://dl2.appzona.net/.../jre_latest.exe  (jre-8u40-windows-i586.exe)

1 / 68      (PUP)

27 / 68    (PUP)

The following 3 files have been seen to comunicate with dl2.appzona.net in live environments.

URL:
http://dl2.appzona.net/

Web server:
nginx/1.8.0