download.ez-download.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

Adware distribution site from Adlogica using a customized download manager such as the iBryte Optimum Installer. The site provides users with downloadble software bundled with various potentially unwanted software such as web browser toolbars and search hijackers including Babylon, Funmmods and Search.us. The domain download.ez-download.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Remove Malware from download.ez-download.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Tuesday, August 21, 2012

Expires date:
Sunday, August 21, 2016

Updated date:
Saturday, August 22, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.QuickDownloader.H, PUP.Ezdownload.H, PUP.OUTBROWSE.H, PUP.QuickDownloader.N, PUP.Installer.QuickDownloader.N, PUP.Adlogica.Ezdownload, PUP.Installer.Adlogica, PUP.Bundler.Outbrowse, PUP.Bundler.Adlogica, Threat.Adlogica.Bundler, PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Adlogica.Ezdownload.Bundler (M), PUP.Outbrowse.Bundler (M)
92.00%

VIPRE Antivirus
Threat.4786018, Threat.4150696, Trojan.Win32.Generic, InstallCore, Threat.4784459
64.00%

ESET NOD32
Win32/OutBrowse.AR potentially unwanted application, Win32/OutBrowse.V potentially unwanted application, Win32/OutBrowse.Q potentially unwanted application
62.00%

Dr.Web
Trojan.Packed.27643, Adware.Downware.2081, infected with Trojan.Packed.28387, Trojan.Packed.24524, Trojan.Packed.28678, Threat.Undefined
52.00%

K7 Gateway Antivirus
Unwanted-Program , Unwanted-File , Adware
44.00%

Sophos
OutBrowse Revenyou, Install Core, PUA 'OutBrowse Revenyou', Generic PUA PJ, PUA 'Install Core', PUA 'OutBrowse' (of type Adware)
44.00%

AVG
Generic, MalSign.Generic, Adware Generic_c.DGQ
42.00%

McAfee
Adware-OutBrowse.a, Trojan.Artemis!C9F21503AA2A, Program.Adware-OutBrowse, CryptInno, Program.Adware-OutBrowse.a, Trojan.Artemis!F35845C8C1CD
38.00%

Avira AntiVirus
APPL/Downloader.Gen, TR/Trash.Gen, APPL/OutBrowse.lwasp, ADWARE/InstallCore.Gen7
38.00%

McAfee Web Gateway
Adware-OutBrowse.a, BehavesLike.Win32.AdwareOutBrowse.dc, BehavesLike.Win32.CryptInno.bc, BehavesLike.Win32.AdwareOutBrowse.bc
36.00%

K7 AntiVirus
Unwanted-Program
36.00%

NANO AntiVirus
Trojan.Win32.Generic.dbxkzp, Trojan.Win32.Generic.cthmwf, Trojan.Win32.OutBrowse.ddvyee, Riskware.Win32.InstallCore.dcnbnl
36.00%

Agnitum Outpost
PUA.OutBrowse, PUA.InstallCore
32.00%

F-Prot
W32/Outbrowse.B2.gen, W32/Outbrowse.B.gen
30.00%

herdProtect (fuzzy)
a variant of e9011f215aa54827cfd726807df51881a453808a, a variant of f608953fd83eaf2bd74c1b0239e1bae25f1ef022, a variant of e3d4f80aed2744fb0c701b5300d547ce56a9e633
28.00%

The domain download.ez-download.com has been seen to resolve to the following 13 IP addresses.

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

December 1, 2014

ip-50-63-202-59.ip.secureserver.net
November 30, 2014

November 1, 2014

November 1, 2014

April 16, 2014

April 16, 2014

April 16, 2014

April 16, 2014

(CloudFlare)
April 16, 2014

File downloads found at URLs served by download.ez-download.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

11 / 68    (Adware)

6 / 68      (Adware)

7 / 68      (Adware)

14 / 68    (Adware)

Remove Malware from download.ez-download.com - Powered by Reason Core Security