cdn.airdlr1.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain cdn.airdlr1.com is registered by proxy through ENOM, INC. and was originally registered in August of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software.
Registrar:
ENOM, INC.

Create date:
Tuesday, August 28, 2012

Expires date:
Sunday, August 28, 2016

Updated date:
Saturday, December 19, 2015

Root domain:

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.SafeDownloadLimited.H, PUP.Optional.SmartPCSolutions.H, PUP.Optional.SafeDownloadLimited.J, PUP.Optional.SafeDownloadLimited.K, PUP.Optional.Installer.L, PUP.SearchSafer.G, PUP.SpeedChecker.Optional.Installer.Meta (L), PUP.Optional.Installer.R, PUP.Optional.Installer.H, PUP.RegCleaner.Optional.Installer.Meta (L), PUP.Rainmaker.ProPCCle.Installer.Meta (L), PUP.Optional.SmartPCSolutions.S, PUP.Optional.Installer.V, PUP.Installer.InterestingSolutions.F, PUP.CompuClever.Installer.Meta (L), PUP.Injekt, PUP.Installer.Li Mo, PUP.SafeBytes.Optional.Installer.Meta (L), PUP.Installer.CLARALABSOFTWARE, PUP.Optional.1NSTALL383MEDIA.Installer
95.74%

Dr.Web
Program.Unwanted.45, Program.Uniblue.9, Trojan.Crossrider.27788, Program.Unwanted.54, Threat.Undefined, Adware.Plugin.274
40.43%

ESET NOD32
Win32/Speedchecker (variant), Win32/Bundled.Toolbar.Ask (variant), Win32/SpeedingUpMyPC (variant), Win32/Packed.ScrambleWrapper (variant), Win32/InstallCore.BC
31.91%

Trend Micro House Call
TROJ_GEN.F47V0502, TROJ_GEN.F47V0603, Suspicious_GEN.F47V0728, Suspicious_GEN.F47V0801, Suspicious_GEN.F47V0816, Suspicious_GEN.F47V0729, TROJ_GEN.R02SH06L314, Suspicious_GEN.F47V1214, Suspicious_GEN.F47V0218
31.91%

Malwarebytes
PUP.Optional.PCChecker.A, PUP.Optional.OptimizePro.A, PUP.Optional.CrossRider, PUP.Optional.WordProser.A, PUP.Optional.MobiusRadio.A, PUP.Optional.WebGuard.A
29.79%

Avira AntiVirus
TR/ATRAPS.Gen, ADWARE/Adware.Gen7, APPL/Adpeak.682992, ADWARE/InstallCore.Gen7, Adware/EoRezo.bonc, Adware/DealPly.A.5518
25.53%

AVG
Generic, Smartpcso, Wordproser, Interesting, Generic6, Generic5
25.53%

McAfee
Artemis!90EE409C6D44, Artemis!EA25D20FA301, Artemis!E4515EE2B42D, Artemis!F757AFF3CE86, Artemis!A53162454977, AdRocketTab-FSE, Artemis!25887AB5585C
21.28%

VIPRE Antivirus
Downloadius, Trojan.Win32.Generic, Threat.4150696, Tuto4PC, Threat.4872425, MSIL.Adware.PullUpdate
19.15%

Sophos
PC Power Speed, Registry Cleaner, Generic PUA HB, Generic PUA GA, EoRezo Adware, Generic PUA DP, DealPly Updater
17.02%

G Data
Application.Generic.575645, Win32.Malware.FakeCleaner, Win32.Application.OptimizerPro, Adware.Eorezo.BZ, Adware.Eorezo.CD
12.77%

Qihoo 360 Security
Win32/Trojan.Adware.37e, HEUR/Malware.QVM20.Gen, HEUR/QVM03.0.Malware.Gen, HEUR/QVM41.1.Malware.Gen, HEUR/QVM42.0.Malware.Gen
12.77%

Baidu Antivirus
Adware.Win32.Crawler, Adware.Win32.SpeedingUpMyPC, Adware.MSIL.PullUpdate, PUA.Win32.DealPly
12.77%

NANO AntiVirus
Riskware.Win32.Unwanted.cuwtlb, Riskware.Win32.Unwanted.cohkkx, Riskware.Win32.Plugin.dgyity, Trojan.Win32.DownLoad3.djkwer
10.64%

Agnitum Outpost
Riskware.SpeedingUpMyPC, PUA.Popad, PUA.EoRezo, PUA.DealPly
10.64%

File downloads found at URLs served by cdn.airdlr1.com.

1 / 68      (PUP)

12 / 68    (Adware)
http://cdn.airdlr1.com/downloads/offers/.../Setup_4.exe  (25887ab5585c73edaf1a072de254eccf)

2 / 68      (PUP)
http://cdn.airdlr1.com/downloads/offers/.../rpc3.exe  (fbf8bccd23ed4681321e66a9eb1aae4f)

2 / 68      (Adware)

6 / 68      (Adware)
http://cdn.airdlr1.com/downloads/offers/.../Setup_2.exe  (dc0075559f383f81490ed26a583444e9)

1 / 68      (PUP)

5 / 68      (PUP)
http://cdn.airdlr1.com/downloads/offers/.../exeG.exe  (567fededf5e1c40dbf5d896ddfee8977)

24 / 68    (Adware)

3 / 68      (PUP)

18 / 68    (Adware)

2 / 68      (PUP)

3 / 68      (Adware)
http://cdn.airdlr1.com/downloads/offers/.../Setup_US.exe  (4da3a99363b97a6041dd5b1bbf665e29)

5 / 68      (PUP)

6 / 68      (PUP)

7 / 68      (Adware)

3 / 68      (inconclusive)

2 / 68      (Adware)

3 / 68      (Adware)
http://cdn.airdlr1.com/downloads/offers/.../Setup_GB.exe  (ab8e35ff8dd12c5e1e73c3550f67bb62)

9 / 68      (Adware)

19 / 68    (Adware)
http://cdn.airdlr1.com/downloads/offers/.../Setup.exe  (12c23a2548871e7dd2dadd40c3374fff)

1 / 68      (PUP)

4 / 68      (Adware)

 
Latest 30 of 90 download URLs