dm.distributionengine.conduit-services.com

Conduit Ltd.  (via a Proxy Registrant)

Domain Information

This domain which is part of the Conduit Toolbar Platform is desigend as a gateway to distriubte various portions of the toolbar as well as 3rd party applications that plug into the toolbar or can be downloaded by it. The domain dm.distributionengine.conduit-services.com is registered by proxy through ENOM, INC. and was originally registered in April of 2009. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in San Mateo, California within the United States which resides on the Conduit USA, Inc. network. The domain is associated with the publisher Conduit Ltd. who is located in Israel.
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Sunday, April 26, 2009

Expires date:
Wednesday, April 26, 2017

Updated date:
Tuesday, February 02, 2016

ASN:
AS56473 CONDUIT-NL Conduit Connect B.V.

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Perion.Q, PUP.Perion.P, PUP.Perion.Z, PUP.Perion.T, PUP.Perion.AA, PUP.Perion.U, PUP.Perion.S, PUP.Perion.O, PUP.Bundler.Perion (M), PUP.Perion.Bundler (M), PUP.Perion Partner.PaloAltoTechnologies.Bundler (M), PUP.Conduit.Bundler (M)
97.87%

Dr.Web
Adware.Downware.1895
42.55%

VIPRE Antivirus
Conduit, Threat.4786236
42.55%

ESET NOD32
Win32/Wajam (variant), Win32/Toolbar.Conduit.AE, Win32/OpenCandy
40.43%

Malwarebytes
PUP.Optional.Conduit.A
40.43%

Fortinet FortiGate
Riskware/FirseriaInstaller, Riskware/Wajam, Riskware/Toolbar_Conduit
29.79%

Trend Micro House Call
TROJ_GEN.F47V0128, TROJ_GEN.F47V0204, TROJ_GEN.F47V0323, TROJ_GEN.F47V0414, TROJ_GEN.F47V0313, TROJ_GEN.F47V0427, TROJ_GEN.F47V0121
27.66%

Baidu Antivirus
Trojan.Win32.Wajam, Adware.Win32.Conduit, PUA.Win32.Wajam
27.66%

McAfee
Artemis!2A772710EC32, Artemis!6E756E60EF01, Artemis!8B5F72ACD091, Artemis!E94D2E1520FC, Artemis!19B6339AC199, Artemis!6A5F180AEDBC, Artemis!CFAA66C20A14, Artemis!049C0A72E159, Artemis!5644705F703D
19.15%

McAfee Web Gateway
Artemis!2A772710EC32, Artemis!6E756E60EF01, Artemis!8B5F72ACD091, Artemis!E94D2E1520FC, Artemis!19B6339AC199, Artemis!6A5F180AEDBC
19.15%

Kaspersky
not-a-virus:WebToolbar.Win32.Perinet, not-a-virus:WebToolbar.Win32.Agent
8.51%

SUPERAntiSpyware
Adware.Conduit/Variant
6.38%

IKARUS anti.virus
PUA.ClientConnect
6.38%

NANO AntiVirus
Riskware.Win32.Conduit.cylpml
6.38%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
2.13%

The domain dm.distributionengine.conduit-services.com has been seen to resolve to the following IP address.

December 25, 2013

File downloads found at URLs served by dm.distributionengine.conduit-services.com.

 
Latest 30 of 872 download URLs

URL:
http://dm.distributionengine.conduit-services.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)