dl2.getz.tv

N/A

Domain Information

The domain dl2.getz.tv registered by N/A was initially registered in December of 2012 through DOMAINCONTEXT, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Pokrovka, Primor'Ye within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
DOMAINCONTEXT, INC.

Server location:
Primor'Ye, Russia (RU)

Create date:
Tuesday, December 4, 2012

Updated date:
Friday, October 16, 2015

ASN:
AS42244 ESERVER Hosting Operator eServer.ru Ltd.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DestinyMedia.o, PUP.Installer.DestinyMedia.AA, PUP.Installer.DestinyMedia.M, PUP.Installer.DestinyMedia.t, PUP.Installer.DestinyMedia.a, PUP.DestinyMedia.Installer (M), Win32.Generic, PUP.DestinyM.Installer (M), PUP (M)
100.00%

Malwarebytes
PUP.Optional.Zona
20.41%

Rising Antivirus
PE:PUF.Zona!1.9E06
20.41%

Sophos
Zona Installer, Generic PUA GE, Generic PUA IA, Generic PUA MA
18.37%

Vba32 AntiVirus
Signed-Downware.ZvuZona, Downloader.AdLoad.mlx
18.37%

Comodo Security
Application.Win32.ZvuZona.APRI
18.37%

K7 AntiVirus
Unwanted-Program , Trojan
16.33%

ESET NOD32
Win32/ZvuZona (variant), Win32/ZvuZona.A potentially unwanted (variant)
16.33%

IKARUS anti.virus
not-a-virus:Downloader.Win32.AdLoad, AdWare.Win32.ZvuZona, PUA.ZvuZona
16.33%

Agnitum Outpost
PUA.ZvuZona, PUA.Downloader
14.29%

Dr.Web
Trojan.StartPage.59964, Program.Zona.4, Program.Zona.28, riskware program Program.Zona.28
14.29%

avast!
Win32:Malware-gen, Win32:PUP-gen [PUP], Win32:ZvuZona-B [PUP]
12.24%

Avira AntiVirus
Adware/ZvuZona.A, APPL/Downloader.Gen, APPL/Bundler.BR, Adware/ZvuZona.29244584
12.24%

Fortinet FortiGate
Riskware/ZvuZona, Riskware/Adload
12.24%

Qihoo 360 Security
HEUR/Malware.QVM18.Gen, HEUR/Malware.QVM06.Gen, HEUR/QVM41.1.Malware.Gen
12.24%

The domain dl2.getz.tv has been seen to resolve to the following 2 IP addresses.

dl.zona.ru
February 20, 2016

hosted-by.ihc.ru
January 14, 2014

File downloads found at URLs served by dl2.getz.tv.

1 / 68      (PUP)
http://dl2.getz.tv/.../ZonaWebSetup.exe  (call_of_duty_2_mp_activision_rus_repack.exe)

1 / 68      (PUP)
http://dl2.getz.tv/.../ZonaWebSetup.exe  (arno_babadjanyan_-_exprompt.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl2.getz.tv/ZonaSetup_latest.exe  (e63dba5e70819fa1f55c25d8beeed319)

1 / 68      (PUP)
http://dl2.getz.tv/tmp/f7/68/.../deadhunt_rus.exe  (371640c6a99b347a725e609f192d8203)

1 / 68      (PUP)
http://dl2.getz.tv/tmp/e3/e5/.../deadhunt_rus.exe  (b7a89eef09353355eecfbe60a62422c8)

13 / 68    (PUP)
http://dl2.getz.tv/tmp/fc/dc/.../adobe_audition_3_rus.exe  (waves_all_plugins_bundle_v9r12_vst_x86_x64_win.exe)

13 / 68    (PUP)
http://dl2.getz.tv/tmp/d6/f0/.../artem_kashevarov_c_s_nulya_2011_rus.exe  (waves_all_plugins_bundle_v9r12_vst_x86_x64_win.exe)

The following 13 files have been seen to comunicate with dl2.getz.tv in live environments.

URL:
http://dl2.getz.tv/

Google Analytics:
UA-27424010

Title:
“Смотреть фильмы и сериалы онлайн через программу Zona (Зона)”

Description:
“Самые новые фильмы и новые сериалы доступны онлайн с программой Зона”

Web server:
nginx