e5852b452a054e15b9463baa748169e2.setuping-onlinedrive.com

Client Connect Ltd.

Domain Information

The domain e5852b452a054e15b9463baa748169e2.setuping-onlinedrive.com registered by Client Connect Ltd. was initially registered in May of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, May 5, 2013

Expires date:
Sunday, January 1, 2017

Updated date:
Monday, May 4, 2015

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ClientConnect.V, PUP.Bundler.Perion.Conduit, PUP.Conduit.Installer, PUP.Perion.Bundler.Conduit (M), PUP.Perion.Bundler (M)
100.00%

avast!
Adware-BRM [PUP], Win32:Adware-BRM [PUP]
25.53%

Dr.Web
Adware.Conduit.87
25.53%

VIPRE Antivirus
Threat.4786236, Conduit, Trojan.Win32.Generic
25.53%

Kaspersky
not-a-virus:WebToolbar.Win32.Agent
25.53%

Malwarebytes
PUP.Optional.ClientConnect
25.53%

Agnitum Outpost
PUA.Downware
25.53%

AVG
Generic
25.53%

Zillya! Antivirus
Adware.Perinet.Win32.4
23.40%

McAfee
Artemis!EF263342B622, Artemis!662DE10C8A67, Artemis!4CB44D7876A8, Artemis!AC1E1D1FD6FB, Artemis!4677871FBB79, Artemis!C13502ADE745, Artemis!308786B65803, Artemis!37DD20898B61
23.40%

ESET NOD32
Win32/ClientConnect (variant), Win32/ClientConnect.A potentially unwanted (variant)
23.40%

Qihoo 360 Security
Win32/Virus.WebToolbar.8f1, HEUR/QVM42.0.Malware.Gen, HEUR/QVM30.1.Malware.Gen
21.28%

Trend Micro House Call
Suspicious_GEN.F47V1216, Suspicious_GEN.F47V1214, Suspicious_GEN.F47V1212, Suspicious_GEN.F47V0204, Suspicious_GEN.F47V0106
21.28%

Baidu Antivirus
Adware.Win32.Toolbar, PUA.Win32.ClientConnect
19.15%

G Data
Win32.Application.Agent.78CEKE, Application.Generic.1105675, Win32.Application.Agent.8NB26I, Win32.Application.ClientConnectConduitDL
14.89%

The domain e5852b452a054e15b9463baa748169e2.setuping-onlinedrive.com has been seen to resolve to the following IP address.

January 3, 2015

File downloads found at URLs served by e5852b452a054e15b9463baa748169e2.setuping-onlinedrive.com.

 
Latest 30 of 47 download URLs

URL:
http://e5852b452a054e15b9463baa748169e2.setuping-onlinedrive.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)