cp.adcdls.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain cp.adcdls.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in May of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Oregon, United States (US)

Create date:
Thursday, May 23, 2013

Expires date:
Monday, May 23, 2016

Updated date:
Wednesday, May 20, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TuguuSL.Z, PUP.Tuguu.Bundler, PUP.Tuguu.Bundler (M), PUP.Tuguu.LunacomInteractive.Bundler (M), PUP.Tuguu.Awimba.Bundler (M), PUP.Tuguu.tuguusl.Bundler (M), PUP.Tuguu (M)
100.00%

VIPRE Antivirus
DomaIQ, Threat.4783235
28.57%

Sophos
DomainIQ pay-per install, DomaIQ pay-per install (PUA)
28.57%

Malwarebytes
Adware.DomaIQ, PUP.Optional.BundleInstaller.A
23.81%

avast!
NSIS:DomaIQ-C [PUP], DomaIQ-T [PUP]
23.81%

Dr.Web
Adware.W3i.28, Adware.W3i.29
23.81%

Avira AntiVirus
APPL/DomaIQ.Gen7, PUA/DomaIQ.Gen7
23.81%

SUPERAntiSpyware
Trojan.Agent/Gen-DomainIQ, PUP.DomalIQ/Variant
23.81%

ESET NOD32
Win32/DomaIQ, Win32/DomaIQ.L potentially unwanted
19.05%

McAfee
Trojan.Artemis!4743C82BAC81, Artemis!CA5AA9E00B10, Adware-DomalQ, Artemis!D182C055590A
19.05%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ, not-a-virus:HEUR:AdWare.MSIL.DomaIQ
19.05%

AVG
Adware Agent.L
19.05%

K7 AntiVirus
Trojan , Unwanted-Program
19.05%

NANO AntiVirus
Trojan.Win32.Generic.cthglr, Trojan.Win32.Click2.cxfbox, Trojan.Win32.W3i.cjebxe
19.05%

Agnitum Outpost
PUA.DomaIQ
19.05%

The domain cp.adcdls.com has been seen to resolve to the following 7 IP addresses.

February 4, 2016

ec2-52-11-229-228.us-west-2.compute.amazonaws.com
December 23, 2015

ec2-52-26-122-243.us-west-2.compute.amazonaws.com
December 23, 2015

ec2-54-213-219-119.us-west-2.compute.amazonaws.com
November 18, 2015

ec2-54-191-227-226.us-west-2.compute.amazonaws.com
November 18, 2015

ec2-52-10-139-14.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-10-43-205.us-west-2.compute.amazonaws.com
July 16, 2015

File downloads found at URLs served by cp.adcdls.com.

5 / 68      (Adware)

The following 7 files have been seen to comunicate with cp.adcdls.com in live environments.

URL:
http://cp.adcdls.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Apache