dl3.zona.ru

Interstellaro Management Limited

Domain Information

The domain dl3.zona.ru registered by Interstellaro Management Limited was initially registered in January of 2000 through RU-CENTER-REG-RIPN. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Pokrovka, Primor'Ye within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
RU-CENTER-RU

Server location:
Primor'Ye, Russia (RU)

Create date:
Monday, January 31, 2000

Expires date:
Wednesday, March 01, 2017

ASN:
AS42244 ESERVER Hosting Operator eServer.ru Ltd.,RU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DestinyMedia.AA, PUP.Installer.DestinyMedia.K, PUP.Installer.DestinyMedia.T, PUP.Installer.DestinyMedia.d, PUP.DestinyMedia (M), PUP.DestinyMedia.Installer (M), PUP.DestinyM (M), PUP.DestinyM.Installer (M), PUP (M), Threat.Win.Reputation.IMP
100.00%

Avira AntiVirus
APPL/DestinyMedia.CU, Adware/ZvuZona.A, APPL/Downloader.Gen
14.63%

Malwarebytes
PUP.Optional.Zona
12.20%

The Hacker
Posible_Worm32
12.20%

Comodo Security
Application.Win32.ZvuZona.A
12.20%

Dr.Web
Win32.HLLW.Autoruner1.51068, Win32.HLLW.Autoruner1.33556
12.20%

Vba32 AntiVirus
Win32.Zona, Signed-Downware.ZvuZona
12.20%

ESET NOD32
Win32/ZvuZona (variant)
12.20%

Fortinet FortiGate
Adware/Fam.NB, Riskware/ZvuZona
12.20%

herdProtect (fuzzy)
a variant of 992277f0ba29f8affe3341193116fefccb151006, a variant of 323cde0a5659800f00d439a1b1056ef78cc0bbd4, a variant of 5f0610dbd10a37005316155ec1e99aff908665ba
12.20%

MicroWorld eScan
Adware.Agent.NQU
9.76%

Bitdefender
Adware.Agent.NQU
9.76%

F-Secure
Adware.Agent.NQU
9.76%

VIPRE Antivirus
Trojan.Win32.Generic
9.76%

Emsisoft Anti-Malware
Adware.Agent.NQU
9.76%

The domain dl3.zona.ru has been seen to resolve to the following IP address.

dl.zona.ru
November 16, 2013

File downloads found at URLs served by dl3.zona.ru.

1 / 68      (PUP)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (PUP)
http://dl3.zona.ru/tmp/61/.../tor_thor_2011_ts.exe  (709248c8aeea04232ca44df495a773ab)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl3.zona.ru/.../ZonaWebSetup.exe  (piraty_karibskogo_morya_4_na_strannyh_beregah.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl3.zona.ru/tmp/72/.../top-20_luchshey_pornuhi.exe  (832e1f7c3450a3e9749a56c773e3bbff)

1 / 68      (PUP)

1 / 68      (PUP)
http://dl3.zona.ru/.../ZonaWebSetup.exe  (syostry_tolmachyovy_leto.exe)

 
Latest 30 of 42 download URLs

The following 10 files have been seen to comunicate with dl3.zona.ru in live environments.

URL:
http://dl3.zona.ru/

Google Analytics:
UA-27424010

Title:
“Смотреть фильмы и сериалы онлайн через программу Zona (Зона)”

Description:
“Самые новые фильмы и новые сериалы доступны онлайн с программой Зона”

Web server:
nginx

Facebook:
Likes:  1,022
Shares:  2,424
Comments:  697

Statistics are for the previous month.