Deceiving domain - jZip.com

jZip.com is the misleading website that promotes a suspicious program which offers file compressing and extraction. The domain shows deceptive claim that using the tool is virus-free since no adware, no spyware, or trojans will get on the machine after extracting the download. However, the direct download that is triggered on the page gets blocked by AV tools, indicating that the executable contains malicious script.

The site belongs to infamous provider Bandoo Media that has presented numerous apps added to browser hijackers, rogue tools, and adware categories. The most common way to spread such tools is by using software bundling and third party websites. The promoted tool is for free, but the trial version is for 45 days. After that, users get encouraged to pay for the shady app.

Site jZip.com
Associated threat jZip rogue tool/ adware
Main issues The page is advertising questionable tools, claiming about supposed features, using misleading, clickbait material. The domain is not proving any of the claims with real comments or user reviews
Distribution of the threat This page includes the direct file download form, freeware bundling is also used to deliver the application online
The danger for the victim PUP that gets promoted and distributed can expose the victim to more malicious content and collect data regarding online preferences and browsing

 

jZip.com violations

2CR-015: The URL is included in the database of AV tools

2CR-002: The domain shows claims about no-virus feature near the Download Now button to mislead visitors

The domain shows claims about no-virus feature near the Download Now button to mislead visitorsThe domain shows claims about no-virus feature near the Download Now button to mislead visitors