ebdr1.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain ebdr1.com is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2009. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Alexandria, Virginia within the United States which resides on the Latisys-Ashburn, LLC network.
Remove Malware from ebdr1.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Friday, September 04, 2009

Expires date:
Sunday, May 08, 2016

Updated date:
Friday, May 30, 2014

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Air Software.AirSoftware.Bundler (M), PUP.Adknowledge.InstallManager.Installer (M)
97.92%

Avira AntiVirus
Adware/Airinstall.J, TR/Dropper.MSIL.Gen, ADWARE/Adware.Gen7
97.92%

G Data
Win32.Adware.Airadinstaller, Gen:Variant.Strictor.91265
97.92%

MicroWorld eScan
Application.Bundler.L, Gen:Variant.Strictor.91265, Gen:Variant.Application.Bundler.AirInstaller.4
97.92%

Bitdefender
Application.Bundler.L, Gen:Variant.Strictor.91265, Gen:Variant.Application.Bundler.AirInstaller.4
97.92%

nProtect
Trojan-Clicker/W32.AirAdInstaller.824744, Trojan-Clicker/W32.AirAdInstaller.836520, Trojan/W32.Agent.1125288.B
95.83%

K7 AntiVirus
Adware , Unwanted-Program
95.83%

K7 Gateway Antivirus
Adware , Unwanted-Program
95.83%

F-Prot
W32/AirInstall.A.gen
95.83%

avast!
Adware-gen [Adw], PUP-gen [PUP], Win32:Installer-L [PUP]
95.83%

Sophos
AirInstaller
95.83%

Comodo Security
Application.Win32.Agent.AJ, Application.Win32.AirAdInstaller.A
95.83%

Dr.Web
Adware.Downware.1410, Trojan.SMSSend.4662, Trojan.SMSSend.4317, Trojan.SMSSend.4187, Trojan.SMSSend.4543, Trojan.SMSSend.4610
95.83%

VIPRE Antivirus
AirInstaller, Threat.4782985
95.83%

Antiy Labs AVL
AdWare/Win32.AirAdInstaller, RiskWare[WebToolbar:not-a-virus]/Win32.Agent
95.83%

The domain ebdr1.com has been seen to resolve to the following 4 IP addresses.

August 17, 2014

July 3, 2014

May 28, 2014

67-217-184-236.static.ash01.latisys.net
January 12, 2014

File downloads found at URLs served by ebdr1.com.

URL:
http://ebdr1.com/

SSL certificate subject:
CN=*.ebdr1.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
nginx/1.1.19

Remove Malware from ebdr1.com - Powered by Reason Core Security