i1.zipration.org

Domain Information

Server location:
Ohio, United States (US)

ASN:
AS32392 OPENTRANSFER-ECOMMERCE - Ecommerce Corporation,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.EliDahan.J, PUP.EZDownloader.Installer.M, Threat.Win.Reputation.IMP, PUP.talltd.N, Adware.SInstaller.I, PUP.Multiplug.Meta
90.00%

Bkav FE
W32.Cloddb2.Trojan, W32.Vetor.PE, HW32.Stranacty
50.00%

Trend Micro House Call
ADW_EMOTICONS, TROJ_GEN.F47V0611, TROJ_GEN.F47V0106, TROJ_GEN.R03WB01C614, PE_VIRUX.R
50.00%

avast!
Win32:Adware-AYT [PUP], Win32:Vitro, Win32:SProtector-G [PUP]
50.00%

VIPRE Antivirus
Trojan.Win32.Generic!SB.0, Threat.4120919, Threat.4739697
50.00%

Emsisoft Anti-Malware
Gen:Variant.Graftor.135393, Application.MPlug, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
50.00%

Avira AntiVirus
W32/Virut.Gen, TR/Graftor.woienwqm, TR/Crypt.ZPACK.Gen2, TR/Crypt.XPACK.Gen2
50.00%

MicroWorld eScan
Gen:Variant.Graftor.135393, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
40.00%

Bitdefender
Gen:Variant.Graftor.135393, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
40.00%

Lavasoft Ad-Aware
Gen:Variant.Graftor.135393, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
40.00%

F-Secure
Gen:Variant.Graftor.135393, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
40.00%

G Data
Gen:Variant.Graftor.135393, Gen:Variant.Dropper.99, Win32.Virtob.Gen.12, Gen:Variant.Adware.Symmi.46887
40.00%

Vba32 AntiVirus
Virus.Virut.13, SScope.Malware-Cryptor.SProtector, Virus.Virut.14
40.00%

Trend Micro
ADW_EMOTICONS, PE_VIRUX.R
30.00%

Panda Antivirus
Adware/TSUploader, Trj/Genetic.gen
30.00%

The domain i1.zipration.org has been seen to resolve to the following IP address.

July 5, 2016

File downloads found at URLs served by i1.zipration.org.

2 / 68      (Adware)
http://i1.zipration.org/.../alnaddy-v2.1.3.0.exe  (3573dbb96e4376d91daf38c52ccabe3e)

4 / 68      (Adware)

24 / 68    (Malware)
http://i1.zipration.org/.../reviservalidator.exe  (0c5f3694c060fff33179f5303a2d11d4)

26 / 68    (PUP)

8 / 68      (Adware)
http://i1.zipration.org/.../sinstall.exe  (71c2ea2b936ba80f4bad80937b369adf)

4 / 68      (PUP)

8 / 68      (Adware)
http://i1.zipration.org/.../sSetup-se.exe  (ef7d5227360e42058d25f27d9db95de0)

8 / 68      (PUP)

29 / 68    (Malware)

3 / 68      (Adware)
http://i1.zipration.org/.../ezdownloader.exe  (71f784969d24240764d5e5d752d55a41)