dlp.cloudsvr551.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain dlp.cloudsvr551.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Thursday, January 23, 2014

Expires date:
Friday, January 23, 2015

Updated date:
Thursday, January 23, 2014

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TuguuSL.S, PUP.TuguuSL.Q
100.00%

McAfee
Adware-DomaIQ!4019C3F4733F, Artemis!671C2FA09F6A
100.00%

Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.DomaIQ
100.00%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ, not-a-virus:AdWare.Win32.Lollipop
100.00%

Agnitum Outpost
PUA.DomaIQ
100.00%

Dr.Web
Trojan.DownLoader9.15042, Adware.Downware.2532
100.00%

VIPRE Antivirus
DomaIQ
100.00%

Avira AntiVirus
APPL/DomaIQ.Gen
100.00%

Sophos
Generic PUA OF, DomainIQ pay-per install
100.00%

ESET NOD32
Win32/DomaIQ.AZ (variant), MSIL/DomaIQ (variant)
100.00%

AVG
Skodna.Bundle_r.U, DomaIQ_r.J
100.00%

Panda Antivirus
Adware/MultiToolbar, PUP/MultiToolbar.A
100.00%

NANO AntiVirus
Trojan.Win32.DomaIQ.csuxpi
50.00%

herdProtect (fuzzy)
a variant of 4f17e62a463ff73dad1fd59b2d888c34bd33810b
50.00%

Emsisoft Anti-Malware
Worm.Generic.21506
50.00%

The domain dlp.cloudsvr551.com has been seen to resolve to the following IP address.

January 31, 2014

File downloads found at URLs served by dlp.cloudsvr551.com.

18 / 68    (Adware)
http://dlp.cloudsvr551.com/td1.php  (limewire_ver_5_6_2.exe)

URL:
http://dlp.cloudsvr551.com/

Web server:
nginx