v.evdls.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain v.evdls.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
New York, United States (US)

Create date:
Monday, November 16, 2015

Expires date:
Wednesday, November 16, 2016

Updated date:
Monday, November 16, 2015

ASN:
AS393406 DIGITALOCEAN-ASN-NY3 - Digital Ocean, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Air Software.DownloadAssistant.Bundler (M), PUP.Vittalia.InstallHelper.Installer (M), PUP.Vittalia.InstallAssistant.Installer (M), PUP.Air Software.DownloadHelper.Bundler (M), PUP.Air Software.Download.Bundler (M), PUP.Vittalia.InstallH.Installer (M), PUP.Vittalia.InstallA.Installer (M), PUP.Air Software (M), PUP.Vittalia (M)
100.00%

Dr.Web
Trojan.Vittalia.13, Trojan.Vittalia.30, Adware.Conduit.172, Trojan.Vittalia.12
20.00%

avast!
Win32:Dropper-gen [Drp], Win32:Adware-CKC [PUP], Win32:Adware-CKF [PUP], Win32:PUP-gen [PUP]
20.00%

ESET NOD32
Win32/DownloadAssistant.A potentially unwanted application
20.00%

K7 AntiVirus
Unwanted-Program
20.00%

AVG
Generic
20.00%

NANO AntiVirus
Trojan.Win32.DownLoader12.dncixg, Trojan.Win32.Vittalia.dqfrig, Trojan.Win32.Vittalia.dljetu
20.00%

Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48
18.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.AirInstaller, Gen:Variant.Application.Bundler.Jaik.5699
18.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.AirInstaller.5, Gen:Variant.Application.Bundler.32
18.00%

VIPRE Antivirus
Threat.4782985
18.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.AirInstaller.5, Gen:Variant.Application.Bundler.32
18.00%

Bitdefender
Gen:Variant.Application.Bundler.AirInstaller.5, Application.Bundler.FX
18.00%

AhnLab V3 Security
PUP/Win32.Bundler, PUP/Win32.InstallHelper, PUP/Win32.DownloadAssistant
18.00%

G Data
Gen:Variant.Application.Bundler.AirInstaller, Win32.Application.DownloadAssistant
18.00%

The domain v.evdls.com has been seen to resolve to the following 8 IP addresses.

ip-97-74-235-30.ip.secureserver.net
September 16, 2016

ip-70.32.1.32.hosted.by.gigenet.com
September 2, 2016

ip-50-62-63-45.ip.secureserver.net
July 22, 2016

lb-182-248.above.com
May 19, 2016

ip-97-74-37-230.ip.secureserver.net
April 4, 2016

January 27, 2016

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
December 26, 2015

useast.gtdlrfwd.com
November 29, 2014

File downloads found at URLs served by v.evdls.com.

 
Latest 30 of 71 download URLs

The following 261 files have been seen to comunicate with v.evdls.com in live environments.

TCP » 54.72.9.51:80

 
Latest 20 of 268 files

URL:
http://v.evdls.com/

Google Analytics:
UA-892232

Title:
“Jason Hope's unfinished 100,000 sq ft Silverleaf mansion for sale (Scottsdale: real estate, 2014) - Phoenix area - Arizona (AZ) - City-Data Forum”

Description:
“Heard about this mansion a few years ago and thought it would never be built. Wonder what new legal troubles are brewing for that guy. I'm just glad”

Web server:
Apache