dl.zoltapro.com

virus alert

Domain Information

The domain dl.zoltapro.com registered by virus alert was initially registered in December of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Tuesday, December 29, 2015

Expires date:
Thursday, December 29, 2016

Updated date:
Tuesday, December 29, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Conduit, Threat.4150696
100.00%

ESET NOD32
Win32/ClientConnect.A potentially unwanted application, MSIL/Rebrand.LittleRegClean.A potentially unwanted application
100.00%

Reason Heuristics
PUP.Conduit.ClientConnect.Installer (M)
50.00%

MicroWorld eScan
Gen:Variant.Application.SearchProtect.2
50.00%

McAfee
Trojan.Artemis!5E73AAFA008E
50.00%

Malwarebytes
PUP.Optional.SearchProtect.A
50.00%

Trend Micro House Call
Suspici.1AC582C8
50.00%

avast!
Win32:Conduit-B [PUP]
50.00%

NANO AntiVirus
Trojan.Win32.Conduit.dmumyu
50.00%

Lavasoft Ad-Aware
Application.SearchProtect.CA
50.00%

Sophos
PUA 'Conduit Search Protect'
50.00%

F-Secure
Gen:Variant.Application.SearchProtect
50.00%

Dr.Web
Adware.Conduit.298, Adware.Conduit.45
50.00%

AVG
Generic
50.00%

Baidu Antivirus
Adware.Win32.Conduit
50.00%

The domain dl.zoltapro.com has been seen to resolve to the following IP address.

ip-166-62-27-151.ip.secureserver.net
February 28, 2016

File downloads found at URLs served by dl.zoltapro.com.

23 / 68    (Adware)

4 / 68      (PUP)
http://dl.zoltapro.com/gl/g/l/zolta/.../Setup.exe  (0702cd6068cd309b9106b4371ea29b3b)

The following 3 files have been seen to comunicate with dl.zoltapro.com in live environments.

URL:
http://dl.zoltapro.com/

Web server:
Apache/2.4.16