cldrload.com

PrivacyYes.com

Domain Information

The domain cldrload.com registered by PrivacyYes.com was initially registered in December of 2013 through KEY-SYSTEMS GMBH. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Remove Malware from cldrload.com - Powered by Reason Core Security
Registrar:
KEY-SYSTEMS GMBH

Server location:
Dublin City, Ireland (IE)

Create date:
Wednesday, December 04, 2013

Expires date:
Sunday, December 04, 2016

Updated date:
Monday, October 12, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.AdGazelle.ClickYes.Installer (M), PUP.Outbrowse.Bundler (M), PUP.OutBrowse (M), PUP.Adknowledge.ComputeClient.Bundler (M), PUP.Softpulse.VolvanPremium.Installer (M), PUP.Softpulse.PluginUpdate.Bundler (M), PUP.Outbrowse.StartPlaying.Bundler (M), PUP.Softpulse.DigitalPlugin.Bundler (M), PUP.Adknowledge.Bundler (M)
95.74%

avast!
Win32:OutBrowse-G [PUP], Win32:Adware-gen [Adw], Win32:PUP-gen [PUP], Win32:IBryte-DQ [PUP]
27.66%

McAfee
Program.Adware-OutBrowse, Artemis!0FF2B0F7AD04, Trojan.Artemis!FD9B4461BEC1
27.66%

ESET NOD32
Win32/OutBrowse.D potentially unwanted application, Win32/OutBrowse.T potentially unwanted application, Win32/AdWare.iBryte.BH application
27.66%

VIPRE Antivirus
Threat.4784459, Threat.4778314, Trojan.Win32.Generic
25.53%

Kaspersky
not-a-virus:AdWare.Win32.OutBrowse, not-a-virus:AdWare.Win32.iBryte
25.53%

Dr.Web
Threat.Undefined, Trojan.DownLoad3.34803, Trojan.Packed.28212
12.77%

Avira AntiVirus
ADWARE/iBryte.Gen7, ADWARE/Adware.Gen, Adware/iBryte.qoemnl
6.38%

Emsisoft Anti-Malware
Adware.IBryte.AF, Gen:Variant.Kazy.431791, Gen:Variant.Application.Bundler.OptimumInstaller
6.38%

Norman
IBryte.PDB, Gen:Variant.Kazy.431791, Downloader
6.38%

Malwarebytes
PUP.Optional.Ibryte, PUP.Optional.OptimumInstaller.A
4.26%

Comodo Security
Application.Win32.AgentCV.HWYE, Application.Win32.IBryte.S
4.26%

G Data
Win32.Adware.Ibryte
4.26%

AVG
Adware AdPlugin, Adware Generic_s
4.26%

K7 AntiVirus
Unwanted-Program
4.26%

The domain cldrload.com has been seen to resolve to the following 3 IP addresses.

ec2-54-194-150-74.eu-west-1.compute.amazonaws.com
June 9, 2014

ec2-54-194-139-2.eu-west-1.compute.amazonaws.com
April 20, 2014

April 20, 2014

File downloads found at URLs served by cldrload.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

0 / 68

1 / 68      (Adware)

46 / 68    (Adware)

1 / 68      (Adware)

6 / 68      (PUP)

7 / 68      (PUP)

3 / 68      (PUP)

6 / 68      (PUP)

3 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

 
Latest 30 of 388 download URLs

URL:
http://cldrload.com/

Title:
“Get ready to have sex tonight!”

Title (4/20/2014):
“Congratulations!”

Title (11/3/2014):
“This Site Likely Contains Sexually Explicit Photos Of Someone You Know!”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx/1.6.3 (HHVM/3.7.1-dev)

Remove Malware from cldrload.com - Powered by Reason Core Security