dde.integration.storage.conduit-services.com

Conduit Ltd.  (via a Proxy Registrant)

Domain Information

This domain which is part of the Conduit Toolbar Platform is desigend as a gateway to distriubte various portions of the toolbar as well as 3rd party applications that plug into the toolbar or can be downloaded by it. The domain dde.integration.storage.conduit-services.com is registered by proxy through ENOM, INC. and was originally registered in April of 2009. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Cotendo Inc. network. The domain is associated with the publisher Conduit Ltd. who is located in Israel.
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Sunday, April 26, 2009

Expires date:
Wednesday, April 26, 2017

Updated date:
Tuesday, February 02, 2016

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Conduit.V, PUP.Conduit.R, PUP.Conduit.W, PUP.Perion.P, PUP.Perion.AA, PUP.Perion.R, PUP.Conduit.O, PUP.Conduit.I, PUP.Perion.U, PUP.Conduit.Q, PUP.Perion.Q, PUP.Bundler.Perion, PUP.Bundler.Conduit, PUP.Conduit.Bundler, PUP.Conduit.Bundler (M)
94.00%

VIPRE Antivirus
Conduit, Threat.4786236
64.00%

Dr.Web
Adware.Conduit.6, Adware.Downware.1895, Adware.Conduit.3, Adware.Downware.1237, Adware.Downware.933, Adware.Downware.988
62.00%

Malwarebytes
PUP.Optional.OpenCandy, PUP.Optional.Conduit.A, PUP.Optional.ClientConnect
60.00%

ESET NOD32
Win32/OpenCandy, Win32/Wajam (variant), Win32/Toolbar.Conduit.AE (variant)
38.00%

Trend Micro House Call
TROJ_GEN.F47V1208, TROJ_GEN.F47V0107, TROJ_GEN.F47V1221, TROJ_GEN.F47V1214, TROJ_GEN.F47V0208, TROJ_GEN.F47V0912, TROJ_GEN.F47V0913
30.00%

G Data
Win32.Application.ConduitBrothersoftTB, Win32.Adware.OpenCandy, Win32.Adware.Conduit
28.00%

SUPERAntiSpyware
Adware.Conduit/Variant
28.00%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
26.00%

K7 AntiVirus
Unwanted-Program
20.00%

K7 Gateway Antivirus
Unwanted-Program
18.00%

NANO AntiVirus
Riskware.Win32.Conduit.cylpml, Trojan.Win32.ClientConnect.dgyrpz, Trojan.Win32.ClientConnect.dgyrqb, Riskware.Win32.Conduit.czviil
18.00%

Baidu Antivirus
Trojan.Win32.Wajam, PUA.Win32.Wajam, Adware.Win32.Conduit, Adware.Win32.Perinet
16.00%

Kaspersky
not-a-virus:WebToolbar.Win32.Perinet, not-a-virus:WebToolbar.Win32.Agent
16.00%

ESET NOD32
Win32/Toolbar.Conduit.M potentially unwanted application, Win32/Toolbar.Conduit.AE potentially unwanted application
16.00%

The domain dde.integration.storage.conduit-services.com has been seen to resolve to the following 69 IP addresses.

January 30, 2016

January 30, 2016

a23-0-160-89.deploy.static.akamaitechnologies.com
January 28, 2016

a23-0-160-99.deploy.static.akamaitechnologies.com
January 28, 2016

January 4, 2016

January 4, 2016

a23-3-13-192.deploy.static.akamaitechnologies.com
August 12, 2015

a23-67-242-123.deploy.static.akamaitechnologies.com
June 18, 2015

a23-67-242-129.deploy.static.akamaitechnologies.com
June 18, 2015

May 5, 2015

May 5, 2015

a23-66-230-121.deploy.static.akamaitechnologies.com
May 5, 2015

a23-66-230-136.deploy.static.akamaitechnologies.com
May 5, 2015

a72-247-10-34.deploy.akamaitechnologies.com
May 4, 2015

a23-15-9-11.deploy.static.akamaitechnologies.com
January 5, 2015

a23-15-9-97.deploy.static.akamaitechnologies.com
January 5, 2015

a23-15-7-160.deploy.static.akamaitechnologies.com
December 23, 2014

a23-0-160-66.deploy.static.akamaitechnologies.com
December 2, 2014

a23-15-7-112.deploy.static.akamaitechnologies.com
December 2, 2014

a23-3-13-59.deploy.static.akamaitechnologies.com
December 1, 2014

a23-3-13-43.deploy.static.akamaitechnologies.com
December 1, 2014

November 2, 2014

November 2, 2014

a23-15-7-129.deploy.static.akamaitechnologies.com
October 24, 2014

a23-15-7-155.deploy.static.akamaitechnologies.com
October 24, 2014

a23-62-6-161.deploy.static.akamaitechnologies.com
October 9, 2014

a204-2-179-64.deploy.akamaitechnologies.com
September 22, 2014

a204-2-179-25.deploy.akamaitechnologies.com
September 22, 2014

a184-50-228-179.deploy.static.akamaitechnologies.com
September 5, 2014

a184-50-228-155.deploy.static.akamaitechnologies.com
September 5, 2014

 
Showing 30 of 69 IP Addresses

File downloads found at URLs served by dde.integration.storage.conduit-services.com.

 
Latest 30 of 1,097 download URLs

The following 188 files have been seen to comunicate with dde.integration.storage.conduit-services.com in live environments.

 
Latest 20 of 222 files

URL:
http://dde.integration.storage.conduit-services.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)