clddt.com

PrivacyYes.com

Domain Information

The domain clddt.com registered by PrivacyYes.com was initially registered in December of 2013 through KEY-SYSTEMS GMBH. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Registrar:
KEY-SYSTEMS GMBH

Server location:
Dublin City, Ireland (IE)

Create date:
Wednesday, December 4, 2013

Expires date:
Sunday, December 4, 2016

Updated date:
Monday, October 12, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ClovermediaSL.M, PUP.Softpulse.PluginUpdate.Bundler (M), PUP.Tuguu.Clovermedia.Bundler (M), PUP.Tuguu.PaymentsInteractive.Bundler (M), Adware.DownloadAdmin.Bundler.Installer.Meta (M), PUP.Softpulse.PluginUp.Bundler (M), PUP.Tuguu.Payments.Bundler (M), PUP.Tuguu.Cloverme.Bundler (M), Adware.DownloadAdmin.Bundler (M)
100.00%

ESET NOD32
Win32/DomaIQ.BB potentially unwanted application
11.54%

Dr.Web
Adware.Downware.4305
11.54%

VIPRE Antivirus
Threat.4783262, Threat.4783235
11.54%

avast!
DomaIQ-CC [PUP]
11.54%

AVG
Adware DomaIQ.EJ
11.54%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ
11.54%

MicroWorld eScan
Adware.DomaIQ.AR
11.54%

McAfee
Adware-DomaIQ!8C94CF10C9E8, Adware-DomaIQ!A15C4DA48339, Adware-DomaIQ!2DC5E3F74A27
11.54%

Malwarebytes
PUP.Optional.DomaIQ
11.54%

K7 AntiVirus
Unwanted-Program
11.54%

Agnitum Outpost
PUA.DomaIQ
11.54%

Bitdefender
Adware.DomaIQ.AR
11.54%

Lavasoft Ad-Aware
Adware.DomaIQ.AR
11.54%

Sophos
DomainIQ pay-per install
11.54%

The domain clddt.com has been seen to resolve to the following 3 IP addresses.

ec2-54-194-139-2.eu-west-1.compute.amazonaws.com
June 20, 2014

June 13, 2014

ec2-54-194-150-74.eu-west-1.compute.amazonaws.com
June 13, 2014

File downloads found at URLs served by clddt.com.

1 / 68      (PUP)
http://clddt.com/?a=13516&c=64188&s1=Rek  (flashplayerpro-setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (PUP)
http://clddt.com/?a=13516&c=64188&s1=Rek  (flashplayerpro-setup.exe)

1 / 68      (PUP)
http://clddt.com/?a=13516&c=64188&s1=Rek  (flashplayerpro-setup.exe)

1 / 68      (PUP)
http://clddt.com/?a=13516&c=64188&s1=Rek  (flashplayerpro-setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

1 / 68      (Adware)

24 / 68    (Adware)

23 / 68    (Adware)

URL:
http://clddt.com/

Title:
“Get ready to have sex tonight!”

Network:
Amazon Web Services (AWS), running an EC2 instance