dl3.getz.tv

N/A

Domain Information

The domain dl3.getz.tv registered by N/A was initially registered in December of 2012 through DOMAINCONTEXT, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Pokrovka, Primor'Ye within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
DOMAINCONTEXT, INC.

Server location:
Primor'Ye, Russia (RU)

Create date:
Tuesday, December 4, 2012

Updated date:
Friday, October 16, 2015

ASN:
AS42244 ESERVER Hosting Operator eServer.ru Ltd.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DestinyMedia.Q, PUP.Installer.DestinyMedia.d, PUP.Installer.DestinyMedia.FF, Threat.Win.Reputation.IMP, PUP.DestinyMedia.Installer (M), PUP.DestinyM.Installer (M), PUP.Zona (L)
100.00%

Malwarebytes
PUP.Optional.Zona
53.33%

Vba32 AntiVirus
Signed-Downware.ZvuZona, Downloader.AdLoad
53.33%

Rising Antivirus
PE:PUF.Zona!1.9E06
53.33%

IKARUS anti.virus
AdWare.Win32.ZvuZona, PUA.ZvuZona, AdWare.ZvuZona
53.33%

Comodo Security
Application.Win32.ZvuZona.A
53.33%

Dr.Web
Program.Zona.4, riskware program Program.Zona.28, riskware program Program.Zona.19, Program.Zona.34
53.33%

AVG
Generic
53.33%

Sophos
Zona Installer, Generic PUA GE, Generic PUA DB, Generic PUA MA, Generic PUA LD
50.00%

McAfee
Artemis!B15CCC273A1F, Artemis!1424B3AA9BD5, Artemis!F0426A6942BE, Artemis!FF8B01C9BB6F, Artemis!381F185C54E6, Artemis!0971572C4A8E
50.00%

Qihoo 360 Security
HEUR/Malware.QVM06.Gen, HEUR/Malware.QVM18.Gen, Win32/Virus.Adware.95e
50.00%

Fortinet FortiGate
Riskware/ZvuZona, Riskware/Generic.AC.2350, Riskware/Adload
50.00%

Trend Micro House Call
TROJ_GEN.F47V0425, TROJ_GEN.F47V1216, TROJ_GEN.F47V0426, Suspicious_GEN.F47V0621, TROJ_GEN.F47V0602, Suspicious_GEN.F47V0620
46.67%

ESET NOD32
Win32/ZvuZona (variant), Win32/ZvuZona.A potentially unwanted (variant)
46.67%

Panda Antivirus
Trj/OCJ.F, Trj/Genetic.gen, Trj/CI.A
46.67%

The domain dl3.getz.tv has been seen to resolve to the following 3 IP addresses.

dl.zona.ru
February 24, 2016

hosted-by.ihc.ru
May 5, 2015

hosted-by.ihc.ru
August 12, 2014

File downloads found at URLs served by dl3.getz.tv.

24 / 68    (PUP)
http://dl3.getz.tv/ZonaSetup_latest.exe  (b33b16731b3004bbf6455ae9e3fd4956)

1 / 68      (PUP)
http://dl3.getz.tv/.../ZonaWebSetup.exe  (animal_dzhaz_-_polnaya_diskografiya_mp3.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl3.getz.tv/tmp/95/4d/.../luntik_uchit_pravila.exe  (7b98a42e929809cf7fc3344bb4745ed0)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl3.getz.tv/.../ZonaWebSetup.exe  (transformery_2007.exe)

1 / 68      (PUP)

19 / 68    (PUP)

24 / 68    (PUP)

18 / 68    (PUP)

19 / 68    (PUP)

19 / 68    (PUP)

19 / 68    (PUP)

12 / 68    (PUP)

The following 13 files have been seen to comunicate with dl3.getz.tv in live environments.

URL:
http://dl3.getz.tv/

Google Analytics:
UA-27424010

Title:
“Смотреть фильмы и сериалы онлайн через программу Zona (Зона)”

Description:
“Самые новые фильмы и новые сериалы доступны онлайн с программой Зона”

Web server:
nginx