dwl.redir.info
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain dwl.redir.info is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
Domains By Proxy, LLC
Registrar:
GoDaddy.com, LLC
Server location:
Northern Ireland, United Kingdom (GB)
Scanner detections:
Detections (98% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Air Software.AirSoftware.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.Air Software (M)
100.00%
Malwarebytes
PUP.Optional.AirAdInstaller, PUP.Optional.AirInstaller
24.49%
avast!
Win32:Adware-CAH [PUP], PUP-gen [PUP], Adware-gen [Adw]
24.49%
Comodo Security
Application.Win32.AirAdInstaller.A, Application.Win32.AirAdInstaller.B
24.49%
Dr.Web
Adware.Downware.10718, Trojan.SMSSend.4723, Trojan.SMSSend.4684, Trojan.SMSSend.4722
24.49%
VIPRE Antivirus
Iminent, Threat.4150696, AirInstaller, Threat.5061940
24.49%
Sophos
PUA 'AirInstaller'
24.49%
ESET NOD32
Win32/AirAdInstaller.A potentially unwanted application
24.49%
Rising Antivirus
PE:PUF.Airinstall!1.9C4C
24.49%
Qihoo 360 Security
HEUR/Malware.QVM01.Gen
24.49%
Agnitum Outpost
PUA.AirAd, PUA.AirAdInstaller
24.49%
K7 AntiVirus
Adware
22.45%
NANO AntiVirus
Riskware.Win32.AirAdInstaller.cwcgpq
22.45%
Avira AntiVirus
ADWARE/Adware.Gen
22.45%
Vba32 AntiVirus
AdWare.AirAdInstaller
22.45%
The domain dwl.redir.info has been seen to resolve to the following 6 IP addresses.
unallocated.barefruit.co.uk
May 4, 2015
empire.airinstaller.com
August 23, 2014
173.192.195.228-static.reverse.softlayer.com
August 19, 2014
justice.airinstaller.com
April 20, 2014
chicago.airinstaller.com
April 4, 2014
108.168.218.35-static.reverse.softlayer.com
April 4, 2014
File downloads found at URLs served by dwl.redir.info.
The following 231 files have been seen to comunicate with dwl.redir.info in live environments.
