download.jzip.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.jzip.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2000. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Remove Malware from download.jzip.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Thursday, November 02, 2000

Expires date:
Thursday, November 02, 2017

Updated date:
Wednesday, September 09, 2015

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.BandooMedia.J, PUP.Optional.Installer.BandooMedia.T, PUP.Optional.Installer.T, PUP.Optional.Installer.Q, PUP.Installer.BandooMedia, PUP.Bandoo.Installer, PUP.Bandoo.BandooMedia.Installer (M), Win32.Generic.BandooMedia.Installer.Meta
100.00%

Dr.Web
Adware.Bandoo.12, Adware.Bandoo.13, Adware.Bandoo.11, Adware.Bandoo.194
62.07%

ESET NOD32
Win32/Toolbar.SearchSuite, Win32/Toolbar.SearchSuite (variant)
48.28%

Malwarebytes
PUP.Optional.Bandoo.A
41.38%

McAfee
Artemis!587378581006, Generic PUP.y, Artemis!128DE21C54CE, Artemis!65A0960A4E5F, SearchSuite, Program.SearchSuite
41.38%

McAfee Web Gateway
Artemis!587378581006, Generic PUP.y, Artemis!128DE21C54CE, SearchSuite
41.38%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696, Threat.4895518
37.93%

AVG
MalSign.Generic, Adware Generic_r.VQ
37.93%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Adware
37.93%

K7 AntiVirus
Unwanted-Program , Trojan , Adware
37.93%

Kaspersky
not-a-virus:WebToolbar.Win64.SearchSuite, not-a-virus:WebToolbar.Win32.SearchSuite
34.48%

Trend Micro House Call
TROJ_GEN.F47V0811, TROJ_GEN.F47V0401, TROJ_GEN.F47V0314, TROJ_GEN.F47V0528, Suspicious_GEN.F47V0617, Suspicious_GEN.F47V0723
27.59%

Fortinet FortiGate
Adware/Toolbar, Riskware/Toolbar_SearchSuite, Riskware/Win64_SearchSuite, Riskware/SearchSuite
27.59%

G Data
Win32.Adware.Bandoo, Win32.Application.Agent.VJFYZ5, Win32.Application.Agent.51OJV8
27.59%

NANO AntiVirus
Trojan.Win32.Downware.crewao, Riskware.Win32.Bandoo.dgnlaz, Riskware.Nsis.Adware.dsqgam
24.14%

The domain download.jzip.com has been seen to resolve to the following 2 IP addresses.

94.31.0.25.IPYX-076665-ZYO.above.net
December 26, 2013

August 5, 2013

File downloads found at URLs served by download.jzip.com.

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r8-n-bc.exe)

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r9-n-bc.exe)

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r6-n-bc.exe)

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r292-w-bc.exe)

26 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

22 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r32-n-bc.exe)

12 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (efbc7a6cd0eafc525b55a2c6f8f3b65c)

4 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r100-w.exe)

4 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r133-w-bi.exe)

18 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

18 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

14 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

2 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r110-n-bc.exe)

17 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r0-n-bf.exe)

15 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r0-n-bc.exe)

11 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r398-n-bc.exe)

13 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r20-n-bc.exe)

4 / 68      (PUP)
http://download.jzip.com/jZSetup.exe  (jzsetup-r169-n-bc.exe)

6 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r417-n-bc.exe)

17 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r279-n-bf.exe)

15 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r286-n-bc.exe)

1 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r136-n-bc.exe)

4 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzsetup-r169-n-bc.exe)

10 / 68    (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r279-n-bc.exe)

4 / 68      (PUP)
http://download.jzip.com/.../jZipSetup.exe  (2df660a93bd7a1ada0a08ea3237c887b)

3 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r230-n-bi.exe)

5 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jzipsetup-r237-n-bc.exe)

3 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (jZipSetup-r100-w-bc.exe)

7 / 68      (PUP)
http://download.jzip.com/jZipSetup.exe  (94c9353b1adce263f11e749efd68ac5a)

 
Latest 30 of 30 download URLs

The following 2 files have been seen to comunicate with download.jzip.com in live environments.

URL:
http://download.jzip.com/

Web server:
Apache

30 of 47 related domains

Remove Malware from download.jzip.com - Powered by Reason Core Security