Adware distribution site from Adlogica using a customized download manager such as the iBryte Optimum Installer. The site provides users with downloadble software bundled with various potentially unwanted software such as web browser toolbars and search hijackers including Babylon, Funmmods and Search.us. The domain downloader.ez-download.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Arizona, United States (US)
Tuesday, August 21, 2012
Sunday, August 21, 2016
Saturday, August 22, 2015
Detections (92% detected)
PUP.Installer.SecureInstaller.R, PUP.Installer.Ezdownload.S, PUP.Outbrowse.Bundler (M), PUP.Adlogica.Ezdownload.Bundler (M), PUP.Adknowledge.OptimumInstaller.Installer (M), PUP.installCore.DownloadExpert.Installer (M), PUP.Adlogica.QuickDownloader.Bundler (M), PUP.Adlogica.FastDownloads.Bundler (M), PUP.installCore.SecureInstaller.Installer (M)
Adware.Downware.693, Adware.Downware.2081, Trojan.Crossrider1.49350, Adware.Downware.1143, Trojan.MulDrop4.64479, Adware.InstallCore.133
InstallCore, Trojan.Win32.Generic, Threat.4786018, Threat.4778314, Threat.4150696
Win32:Malware-gen, Win32:Evo-gen [Susp], Win32:Installer-J [PUP], Win32:OutBrowse-CH [PUP], Win32:OutBrowse-AR [PUP], Win32:PUP-gen [PUP], Win32:Adware-gen [Adw]
Win32/InstallCore.AZ potentially unwanted application, Win32/Adware.iBryte.G application, Win32/InstallCore.DF potentially unwanted application
Install Core, PUA 'Install Core', PUA 'iBryte Optimum Installer', PUA 'Install Core Click run software'
Microsoft Security Essentials
MalSign.Generic, Adware Generic5, OutBrowse, Adware InstallCore.VP, Adware Generic_c.DVU, Adware Generic5.BDFX, Adware MultiBundle.M
Win.Adware.Ibryte-179, Win.Trojan.Installcore-423, Win.Adware.Installcore-592, Win.Trojan.Installcore-883, Win.Adware.Dealply
W32/Outbrowse.B.gen, W32/InstallCore.S.gen, W32/Ibryte.C.gen, W32/A-dbe1ec51, W32/InstallCore.R.gen
Gen:Variant.Strictor.97895, Agent.ASWDM, Application.Generic.935276, Adware.DealPly.J, Trojan.GenericKD.2959813
UnclassifiedMalware, ApplicUnwnt, ApplicUnwnt.Win32.AdWare.iBryte.H, Application.Win32.InstallCore.KAU, Application.Win32.InstallCore.DSW
ADWARE/InstallCore.Gen, PUA/Outbrowse.Gen, ADWARE/Adware.Gen7, ADWARE/InstallCore.Gen4
Gen:Variant.Strictor.97895, Application.Generic.935276, Adware.DealPly, Trojan.GenericKD.2959813
Adware.InstallCore.gen, SScope.Adware.OptimusInstaller.26607, Downware.InstallCore, Malware-Cryptor.InstallCore.gen
The domain downloader.ez-download.com has been seen to resolve to the following 9 IP addresses.
November 30, 2014
November 29, 2014
December 26, 2013
File downloads found at URLs served by downloader.ez-download.com.
Latest 30 of 179 download URLs