bd624af39ded4dd899204383a54a5f22.integration.download.conduit-services.com

Conduit Ltd.  (via a Proxy Registrant)

Domain Information

This domain which is part of the Conduit Toolbar Platform is desigend as a gateway to distriubte various portions of the toolbar as well as 3rd party applications that plug into the toolbar or can be downloaded by it. The domain bd624af39ded4dd899204383a54a5f22.integration.download.conduit-services.com is registered by proxy through ENOM, INC. and was originally registered in April of 2009. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network. The domain is associated with the publisher Conduit Ltd. who is located in Israel.
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Sunday, April 26, 2009

Expires date:
Wednesday, April 26, 2017

Updated date:
Tuesday, February 02, 2016

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/OpenCandy, Win32/Wajam (variant), Win32/Toolbar.Conduit.AB (variant)
100.00%

Malwarebytes
PUP.Optional.Conduit.A, PUP.Optional.OpenCandy
100.00%

VIPRE Antivirus
Conduit
100.00%

Reason Heuristics
PUP.Conduit.a, PUP.Installer.ClientConnect.a, PUP.Conduit.Bundler (M)
100.00%

Dr.Web
Adware.Conduit.3, Adware.Conduit.6, Adware.Conduit.43
85.71%

Trend Micro House Call
TROJ_GEN.F47V0626, TROJ_GEN.F47V1226, TROJ_GE.0DB0DA27, TROJ_GEN.F47V0116, TROJ_GEN.F47V1018
71.43%

SUPERAntiSpyware
Adware.Conduit/Variant
57.14%

Panda Antivirus
PUP/Conduit.A
42.86%

McAfee
Artemis!0A31B6CB7209, Artemis!6A32833DD5EE
28.57%

McAfee Web Gateway
Artemis!0A31B6CB7209, Artemis!6A32833DD5EE
28.57%

G Data
Win32.Application.ConduitBrothersoftTB
28.57%

Boost by Reason
Adware.Conduit.a
14.29%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
14.29%

Agnitum Outpost
PUA.Toolbar.Conduit
14.29%

Fortinet FortiGate
Riskware/Toolbar_Conduit
14.29%

The domain bd624af39ded4dd899204383a54a5f22.integration.download.conduit-services.com has been seen to resolve to the following IP address.

December 28, 2013

File downloads found at URLs served by bd624af39ded4dd899204383a54a5f22.integration.download.conduit-services.com.

URL:
http://bd624af39ded4dd899204383a54a5f22.integration.download.conduit-services.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)