ttb.dldsoftpro.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain ttb.dldsoftpro.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in February of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Vitoria-Gasteiz, Pais Vasco within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Pais Vasco, Spain (ES)

Create date:
Wednesday, February 05, 2014

Expires date:
Sunday, February 05, 2017

Updated date:
Sunday, February 07, 2016

ASN:
AS57910 SCIP-AS Soluciones Corporativas IP, SL,ES

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TuguuSL.X, PUP.SmartSecureSoftwareSl.X, PUP.SmartSecureSoftwareSl.L, Threat.Win.Reputation.IMP, PUP.Softpulse.VolvanPremium.Bundler (M), PUP.Softpulse.Appsecure.Bundler (M), PUP.Softpulse.SmartSecureSoftwareSl.Bundler (M), PUP.Softpulse.Appsecur.Bundler (M), PUP.Softpulse.SmartSec.Bundler (M), PUP.Softpulse.VolvanPr.Bundler (M), PUP.Tuguu.Bundler (M), PUP.Softpulse.Bundler.Meta (M), PUP.Softpulse (M)
100.00%

McAfee
Artemis!3DABD305A85C, PUP-FJP!592AF1822EE8, Socrydo, SoftPulse
17.65%

K7 AntiVirus
Unwanted-Program
17.65%

K7 Gateway Antivirus
Unwanted-Program , Trojan
17.65%

Agnitum Outpost
PUA.Lollipop, Riskware.Agent, PUA.Agent
17.65%

Sophos
DomainIQ pay-per install, Generic PUA FA, SoftPulse, Smart Secure Software
17.65%

Dr.Web
Adware.Downware.2759, Trojan.Packed.26636, Trojan.DownLoader11.27075, Adware.W3i.56, Trojan.DownLoader11.36367, Trojan.DownLoader11.29457
17.65%

VIPRE Antivirus
DomaIQ, Threat.4783235, Trojan.Win32.Generic
17.65%

Avira AntiVirus
APPL/DomaIQ.Gen, TR/Dropper.Gen, APPL/Softpulse.H, TR/Symmi.46906
17.65%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/Win32.Lollipop, GrayWare[AdWare:not-a-virus]/MSIL.DomaIQ, Trojan[:HEUR]/Win32.AGeneric, GrayWare[AdWare:not-a-virus]/Win32.Agent
17.65%

G Data
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Win32.Adware.Softpulse, Gen:Variant.Application.Bundler.SoftPulse
17.65%

AVG
DomaIQ_r.J, Found Win32/DH{gRJ UIEHeVRPFVGBFYEJHFOBE0GBDw}, Generic
17.65%

MicroWorld eScan
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler.SoftPulse.2
14.71%

Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.DomaIQ
14.71%

Bitdefender
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler.SoftPulse.2
14.71%

The domain ttb.dldsoftpro.com has been seen to resolve to the following 6 IP addresses.

www.renewyourexpireddomain.com
February 8, 2016

ec2-52-10-156-255.us-west-2.compute.amazonaws.com
January 29, 2016

ec2-54-149-159-30.us-west-2.compute.amazonaws.com
January 29, 2016

ec2-50-112-177-75.us-west-2.compute.amazonaws.com
August 17, 2014

ec2-54-201-201-245.us-west-2.compute.amazonaws.com
August 17, 2014

ec2-54-213-33-153.us-west-2.compute.amazonaws.com
April 23, 2014

File downloads found at URLs served by ttb.dldsoftpro.com.

1 / 68      (Adware)

1 / 68      (Adware)

The following 3 files have been seen to comunicate with ttb.dldsoftpro.com in live environments.

URL:
http://ttb.dldsoftpro.com/

Google Analytics:
UA-1141889

Title:
“ ”

Web server:
Apache/2.2.22 (Debian)

30 of 147 related domains