zookaware.com

ZOOKAWARE, LLC.

Domain Information

The domain zookaware.com registered by ZOOKAWARE, LLC. was initially registered in May of 2011 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Remove Malware from zookaware.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Thursday, May 19, 2011

Expires date:
Wednesday, May 19, 2021

Updated date:
Sunday, December 09, 2012

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.ZookaWare.I, PUP.Optional.Installer.P, PUP.Optional.ZookaWare.DD, PUP.Optional.Installer.N, Win32.Generic.ZookaWare.Installer.Meta, PUP.Optional.Zookaware.Installer
100.00%

ESET NOD32
Win32/Adware.RegGenie (variant)
84.62%

Kingsoft AntiVirus
Win32.Troj.Generic_a.a.(kcloud), Win32.Troj.Generic.a.(kcloud), VIRUS_UNKNOWN
53.85%

Trend Micro House Call
TROJ_GEN.F47V1213, TROJ_GEN.F47V0708, TROJ_GEN.F47V0304, ADW_KRADARE, Suspicious_GEN.F47V0908, TROJ_GEN.F47V0920
46.15%

Comodo Security
ApplicUnwnt
15.38%

Boost by Reason
Optional.ZookaWare.I
15.38%

Emsisoft Anti-Malware
Adware.Win32.RegGenie.AMN, Adware.Win32.RegGenie.AMN!A2
15.38%

Trend Micro
ADW_KRADARE
7.69%

Baidu Antivirus
Adware.Win32.RegGenie
7.69%

The domain zookaware.com has been seen to resolve to the following 2 IP addresses.

ec2-107-21-221-116.compute-1.amazonaws.com
May 5, 2015

ec2-107-22-220-230.compute-1.amazonaws.com
January 4, 2014

File downloads found at URLs served by zookaware.com.

2 / 68      (PUP)

1 / 68      (PUP)
http://zookaware.com/.../speedzookasetup.exe  (de06b502b08a86d9bfcb7f70fe1b8237)

4 / 68      (PUP)

1 / 68      (PUP)
https://zookaware.com/.../speedzookasetup.exe  (de06b502b08a86d9bfcb7f70fe1b8237)

1 / 68      (PUP)
https://zookaware.com/.../speedzookasetup.exe  (0b04df9eaf3dc30f574f92366c8ff953)

1 / 68      (PUP)
http://zookaware.com/.../speedzookasetup.exe  (0b04df9eaf3dc30f574f92366c8ff953)

5 / 68      (PUP)
http://zookaware.com/.../download-regzooka.php  (regzooka_99795394967492717451.exe)

3 / 68      (PUP)

3 / 68      (PUP)
https://zookaware.com/.../speedzookasetup.exe  (3104d52416ba637b4c6c312a9285102c)

6 / 68      (PUP)
https://zookaware.com/.../speedzookasetup.exe  (a181a32dea7a01eeba590358ab61ecc1)

1 / 68      (PUP)
https://zookaware.com/.../spyzookasetup.exe  (71988d44d14c6a3876ea18d1a181db8d)

1 / 68      (PUP)
http://zookaware.com/.../spyzookasetup.exe  (71988d44d14c6a3876ea18d1a181db8d)

5 / 68      (PUP)

6 / 68      (PUP)
http://zookaware.com/.../speedzookasetup.exe  (a181a32dea7a01eeba590358ab61ecc1)

3 / 68      (PUP)
http://zookaware.com/.../regzooka.exe  (5dbbcd2a18d9d837049a391f84fce266)

5 / 68      (PUP)

3 / 68      (PUP)
http://zookaware.com/.../speedzookasetup.exe  (3104d52416ba637b4c6c312a9285102c)

3 / 68      (PUP)
http://zookaware.com/.../speedzookasetup.exe  (d5387aa429de911d1253acc6a8fadb3d)

5 / 68      (PUP)

6 / 68      (PUP)

6 / 68      (PUP)
http://zookaware.com/.../regzooka.exe  (2e95f65ec541315ff963aa64362e7301)

0 / 68
http://zookaware.com/.../spyzookasetup.exe  (59e563566a63c7b4cf7f509742a0362f)

URL:
http://zookaware.com/

Google Analytics:
UA-45399881

Title:
“ZookaWare Securing and Optimizing Your PC Since 2004”

Description:
“All ZookaWare products include unlimited 24/7 U.S. based phone, email, live chat and remote access support.”

Network:
Amazon Web Services (AWS), running an EC2 instance

SSL certificate subject:
CN=zookaware.com, O="ZookaWare, LLC.", L=Anchorage, S=Alaska, C=US, SERIALNUMBER=10007133, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Alaska, OID.1.3.6.1.4.1.311.60.2.1.3=US

SSL certificate issuer:
CN=Symantec Class 3 EV SSL CA - G3, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Web server:
Apache

Facebook:
Shares:  1

Statistics above are for the previous month of November 2016.

Remove Malware from zookaware.com - Powered by Reason Core Security