9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com

Client Connect Ltd.

Domain Information

The domain 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com registered by Client Connect Ltd. was initially registered in May of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, May 05, 2013

Expires date:
Sunday, January 01, 2017

Updated date:
Monday, May 04, 2015

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Conduit, Threat.4786236
100.00%

Baidu Antivirus
Adware.Win32.Conduit
100.00%

ESET NOD32
Win32/Toolbar.Conduit.AE
100.00%

McAfee
Artemis!180626F3D558, Artemis!5548CF5C188A
66.67%

Malwarebytes
PUP.Optional.Conduit
66.67%

Dr.Web
Adware.Downware.1895
66.67%

McAfee Web Gateway
Artemis!180626F3D558, Artemis!5548CF5C188A
66.67%

Reason Heuristics
PUP.Perion.V
66.67%

Total Defense
Win32/Tnega.DSQRYMD
33.33%

Trend Micro House Call
TROJ_GEN.F47V0427
33.33%

Fortinet FortiGate
Riskware/Toolbar_Conduit
33.33%

Kaspersky
not-a-virus:WebToolbar.Win32.Perinet
33.33%

Antiy Labs AVL
GrayWare[WebToolbar:not-a-virus]/Win32.Perinet.d
33.33%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
33.33%

The domain 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com has been seen to resolve to the following IP address.

May 21, 2014

File downloads found at URLs served by 9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com.

URL:
http://9dd24fe94ffb4209b1f6d39e34f9bb38.serverfiles-drivek.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)