iet.conduit-download.com

Conduit LTD.

Domain Information

The domain iet.conduit-download.com registered by Conduit LTD. was initially registered in June of 2009 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Los Angeles, California within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, June 7, 2009

Expires date:
Tuesday, June 7, 2016

Updated date:
Thursday, March 13, 2014

ASN:
AS7843 TWCABLE-BACKBONE - Time Warner Cable Internet LLC, US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Toolbar.Conduit.H, PUP.Toolbar.Conduit.N, PUP.Toolbar.ClientConnect.H, PUP.Toolbar.ClientConnect.L, PUP.Toolbar.ClientConnect.O, PUP.Conduit.Bundler (M), PUP.Conduit.ClientConnect.Bundler (M), PUP.Conduit.ClientCo.Installer (M)
100.00%

Malwarebytes
PUP.Optional.Conduit.A, PUP.Optional.ClientConnect, PUP.Optional.ConduitTB.Gen
76.00%

Dr.Web
Adware.Conduit.6, Adware.BGuard.15, Adware.Conduit.45, Adware.Conduit.33, Adware.Conduit.82, Adware.Conduit.38, Adware.Conduit.278
76.00%

VIPRE Antivirus
Conduit, Threat.4786236
74.00%

Comodo Security
Application.Win32.Conduit.~f, Application.Win32.Conduit.~A
72.00%

ESET NOD32
Win32/Toolbar.Conduit (variant), Win32/Conduit.SearchProtect, Win32/ClientConnect (variant), Win32/Conduit.SearchProtect.N potentially unwanted (variant)
68.00%

Trend Micro House Call
TROJ_GEN.F47V1119, TROJ_GEN.F47V1118, TROJ_GEN.F47V1127, TROJ_GEN.F47V1121, TROJ_GEN.F47V1225, TROJ_GEN.F47V1231, TROJ_GEN.F47V0108
62.00%

NANO AntiVirus
Trojan.Win32.BGuard.csnycu, Riskware.Win32.Toolbar.cspetd, Riskware.Win32.BGuard.csnycu, Riskware.Nsis.Downloader.ddbdbi
52.00%

McAfee
Artemis!AF02A67814D8, Artemis!D7366CD8AA1F, Artemis!B70F6673F7A8, Artemis!7678E54176B4, Artemis!C75DDD587A65, Artemis!1A04CD008FF3, Artemis!E1007F6DCBC6, Artemis!34BEA7711604, Artemis!6223FFAB1BFE, Artemis!15D370998B12, Artemis!E65E7C00CC29, Artemis!1E7950F41150
50.00%

Panda Antivirus
PUP/Conduit.A, Adware/Conduit, Trj/Chgt.C, Trj/OCJ.E
50.00%

Agnitum Outpost
PUA.Toolbar.Conduit, Riskware.Agent, PUA.Toolbar.Agent
42.00%

Boost by Reason
Optional.Conduit.H
38.00%

G Data
Win32.Application.ConduitBrothersoftTB, Win32.Trojan.Agent.MFS43O, Win32.Adware.Conduit
32.00%

Baidu Antivirus
Adware.Win32.Conduit, Trojan.Win32.ClientConnect, Adware.NSIS.Toolbar
28.00%

Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:WebToolbar.Win32.Agent
18.00%

The domain iet.conduit-download.com has been seen to resolve to the following 50 IP addresses.

a23-56-227-151.deploy.static.akamaitechnologies.com
August 30, 2016

a23-61-253-60.deploy.static.akamaitechnologies.com
August 28, 2016

a96-7-244-228.deploy.akamaitechnologies.com
August 24, 2016

a23-1-51-103.deploy.static.akamaitechnologies.com
August 23, 2016

a23-77-167-66.deploy.static.akamaitechnologies.com
July 24, 2016

a104-117-13-166.deploy.static.akamaitechnologies.com
July 23, 2016

a23-208-85-90.deploy.static.akamaitechnologies.com
July 7, 2016

a23-73-167-190.deploy.static.akamaitechnologies.com
July 4, 2016

a23-63-251-209.deploy.static.akamaitechnologies.com
July 3, 2016

a23-218-70-187.deploy.static.akamaitechnologies.com
July 3, 2016

a184-26-144-231.deploy.static.akamaitechnologies.com
July 1, 2016

a172-232-140-90.deploy.static.akamaitechnologies.com
July 1, 2016

a23-2-185-141.deploy.static.akamaitechnologies.com
June 27, 2016

a23-59-253-33.deploy.static.akamaitechnologies.com
June 7, 2016

a23-6-19-151.deploy.static.akamaitechnologies.com
June 7, 2016

a23-196-151-146.deploy.static.akamaitechnologies.com
May 26, 2016

a104-96-239-158.deploy.static.akamaitechnologies.com
May 26, 2016

a23-1-115-151.deploy.static.akamaitechnologies.com
May 25, 2016

a184-29-184-158.deploy.static.akamaitechnologies.com
May 25, 2016

a23-77-93-155.deploy.static.akamaitechnologies.com
May 24, 2016

a104-70-51-203.deploy.static.akamaitechnologies.com
May 20, 2016

a173-222-166-171.deploy.static.akamaitechnologies.com
May 17, 2016

a23-202-99-151.deploy.static.akamaitechnologies.com
May 16, 2016

a23-37-22-132.deploy.static.akamaitechnologies.com
April 15, 2016

a172-230-209-223.deploy.static.akamaitechnologies.com
April 14, 2016

a23-196-99-151.deploy.static.akamaitechnologies.com
April 13, 2016

a172-224-183-38.deploy.static.akamaitechnologies.com
April 13, 2016

a23-195-247-177.deploy.static.akamaitechnologies.com
April 12, 2016

a23-60-11-84.deploy.static.akamaitechnologies.com
April 6, 2016

a104-105-84-244.deploy.static.akamaitechnologies.com
April 5, 2016

 
Showing 30 of 50 IP Addresses

File downloads found at URLs served by iet.conduit-download.com.

 
Latest 30 of 210 download URLs

URL:
http://iet.conduit-download.com/

SSL certificate subject:
CN=*.conduit-download.com, OU=IT, O=ClientConnect LTD, L=Foster City, S=CA, C=US

SSL certificate issuer:
CN=Verizon Akamai SureServer CA G14-SHA1, OU=Cybertrust, O=Verizon Enterprise Solutions, L=Amsterdam, C=NL

Web server:
Microsoft-HTTPAPI/2.0