9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com

Client Connect Ltd.

Domain Information

The domain 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com registered by Client Connect Ltd. was initially registered in May of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, May 05, 2013

Expires date:
Sunday, January 01, 2017

Updated date:
Monday, May 04, 2015

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Conduit, Threat.4786236
100.00%

Baidu Antivirus
Adware.Win32.Conduit
100.00%

ESET NOD32
Win32/Toolbar.Conduit.AE
100.00%

Malwarebytes
PUP.Optional.Conduit
75.00%

Dr.Web
Adware.Downware.1895
75.00%

Reason Heuristics
PUP.Perion.V
75.00%

McAfee
Artemis!180626F3D558, Artemis!5548CF5C188A
50.00%

Trend Micro House Call
TROJ_GEN.F47V0427, TROJ_GEN.F47V0512
50.00%

McAfee Web Gateway
Artemis!180626F3D558, Artemis!5548CF5C188A
50.00%

Fortinet FortiGate
Riskware/Toolbar_Conduit
50.00%

Total Defense
Win32/Tnega.DSQRYMD
25.00%

Kaspersky
not-a-virus:WebToolbar.Win32.Perinet
25.00%

Antiy Labs AVL
GrayWare[WebToolbar:not-a-virus]/Win32.Perinet.d
25.00%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
25.00%

The domain 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com has been seen to resolve to the following IP address.

May 21, 2014

File downloads found at URLs served by 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com.

URL:
http://9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)