dlp.cloudsvr551.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain dlp.cloudsvr551.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU
Server location:
Nord-Pas-De-Calais, France (FR)
Create date:
Thursday, January 23, 2014
Expires date:
Friday, January 23, 2015
Updated date:
Thursday, January 23, 2014
ASN:
AS16276 OVH OVH SAS,FR
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.TuguuSL.S, PUP.TuguuSL.Q
100.00%
McAfee
Adware-DomaIQ!4019C3F4733F, Artemis!671C2FA09F6A
100.00%
Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.DomaIQ
100.00%
Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ, not-a-virus:AdWare.Win32.Lollipop
100.00%
Agnitum Outpost
PUA.DomaIQ
100.00%
Dr.Web
Trojan.DownLoader9.15042, Adware.Downware.2532
100.00%
VIPRE Antivirus
DomaIQ
100.00%
Avira AntiVirus
APPL/DomaIQ.Gen
100.00%
Sophos
Generic PUA OF, DomainIQ pay-per install
100.00%
ESET NOD32
Win32/DomaIQ.AZ (variant), MSIL/DomaIQ (variant)
100.00%
AVG
Skodna.Bundle_r.U, DomaIQ_r.J
100.00%
Panda Antivirus
Adware/MultiToolbar, PUP/MultiToolbar.A
100.00%
NANO AntiVirus
Trojan.Win32.DomaIQ.csuxpi
50.00%
herdProtect (fuzzy)
a variant of 4f17e62a463ff73dad1fd59b2d888c34bd33810b
50.00%
Emsisoft Anti-Malware
Worm.Generic.21506
50.00%
The domain dlp.cloudsvr551.com has been seen to resolve to the following IP address.
File downloads found at URLs served by dlp.cloudsvr551.com.
URL:
http://dlp.cloudsvr551.com/