dl.zona.ru

Interstellaro Management Limited

Domain Information

The domain dl.zona.ru registered by Interstellaro Management Limited was initially registered in January of 2000 through RU-CENTER-REG-RIPN. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Pokrovka, Primor'Ye within Russia which resides on the RIPE Network Coordination Centre network.
Remove Malware from dl.zona.ru - Powered by Reason Core Security
Registrar:
RU-CENTER-RU

Server location:
Primor'Ye, Russia (RU)

Create date:
Monday, January 31, 2000

Expires date:
Tuesday, March 01, 2016

ASN:
AS42244 ESERVER Hosting Operator eServer.ru Ltd.,RU

Root domain:

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DestinyMedia.AA, PUP.Installer.DestinyMedia.o, PUP.Installer.DestinyMedia.M, PUP.Win.Reputation, PUP.Installer.DestinyMedia.EE, PUP.Installer.DestinyMedia.V, PUP.DestinyMedia.Installer (M)
91.67%

Rising Antivirus
PE:PUF.Zona!1.9E06
91.67%

Malwarebytes
PUP.Optional.Zona
75.00%

K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
75.00%

Sophos
Zona Installer
66.67%

ESET NOD32
Win32/ZvuZona (variant)
66.67%

Vba32 AntiVirus
Signed-Downware.ZvuZona, Win32.Zona, Downloader.AdLoad
66.67%

Avira AntiVirus
APPL/DestinyMedia.A.4, Adware/ZvuZona.A, APPL/DestinyMedia.CU
58.33%

K7 AntiVirus
Unwanted-Program
58.33%

Agnitum Outpost
PUA.ZvuZona, PUA.Downloader
58.33%

Comodo Security
Application.Win32.ZvuZona.APRI
58.33%

avast!
Win32:Malware-gen
41.67%

Dr.Web
Trojan.StartPage.56003, Threat.Undefined, Adware.Downware.1527, riskware program Program.Zona.28
33.33%

IKARUS anti.virus
AdWare.Win32.ZvuZona, AdWare.Agent, PUA.ZvuZona
33.33%

ESET NOD32
Win32/ZvuZona.A potentially unwanted application
25.00%

The domain dl.zona.ru has been seen to resolve to the following IP address.

dl.zona.ru
January 8, 2014

File downloads found at URLs served by dl.zona.ru.

1 / 68      (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (slender_the_eight_pages_palochnik_l_eng_eng_2012_beta-versiya_v0.9.7.exe)

16 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (hobbit_pustosh_smauga.exe)

27 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (fotoshop_s_nulya_v_videoformate_uroki_photoshop_evgeniy_popov_evgeniy_popov_2008_obuchayushchee_vide)

13 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (x3_albion_prelude_2011_rus_eng.exe)

4 / 68      (PUP)
http://dl.zona.ru/ZonaSetup_latest.exe  (2041ba1b6863084f8e432e181431fe4c)

12 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (e000ee690ba407e85e9b52ed0ff88946)

12 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (9e91075693b67678cb56305182ef1694)

12 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (e46834055f181838bc6b57c6f2978c2a)

14 / 68    (PUP)
http://dl.zona.ru/tmp/48/7b/.../word2007.exe.exe  (waves_all_plugins_bundle_v9r12_vst_x86_x64_win.exe)

12 / 68    (PUP)
http://dl.zona.ru/.../ZonaWebSetup.exe  (2e2ed0012e94e6377e8fd75fd87935b4)

3 / 68      (inconclusive)
http://dl.zona.ru/.../ZonaSetup_latest_155_5.exe  (212f6a921584290c67b81f59b3d0ab24)

The following file have been seen to comunicate with dl.zona.ru in live environments.

URL:
http://dl.zona.ru/

Google Analytics:
UA-27424010

Title:
“Смотреть фильмы и сериалы онлайн через программу Zona (Зона)”

Description:
“Самые новые фильмы и новые сериалы доступны онлайн с программой Зона”

Web server:
nginx

Remove Malware from dl.zona.ru - Powered by Reason Core Security