The domain ttb.dldsoftpro.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in February of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Vitoria-Gasteiz, Pais Vasco within Spain which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP, SL
Server location:
Pais Vasco, Spain (ES)
Create date:
Wednesday, February 5, 2014
Expires date:
Sunday, February 5, 2017
Updated date:
Sunday, February 7, 2016
ASN:
AS57910 SCIP-AS Soluciones Corporativas IP, SL,ES
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.TuguuSL.X, PUP.SmartSecureSoftwareSl.X, PUP.SmartSecureSoftwareSl.L, Threat.Win.Reputation.IMP, PUP.Softpulse.VolvanPremium.Bundler (M), PUP.Softpulse.Appsecure.Bundler (M), PUP.Softpulse.SmartSecureSoftwareSl.Bundler (M), PUP.Softpulse.Appsecur.Bundler (M), PUP.Softpulse.SmartSec.Bundler (M), PUP.Softpulse.VolvanPr.Bundler (M), PUP.Tuguu.Bundler (M), PUP.Softpulse.Bundler.Meta (M), PUP.Softpulse (M)
100.00%
McAfee
Artemis!3DABD305A85C, PUP-FJP!592AF1822EE8, Socrydo, SoftPulse
17.65%
K7 AntiVirus
Unwanted-Program
17.65%
Agnitum Outpost
PUA.Lollipop, Riskware.Agent, PUA.Agent
17.65%
Sophos
DomainIQ pay-per install, Generic PUA FA, SoftPulse, Smart Secure Software
17.65%
Dr.Web
Adware.Downware.2759, Trojan.Packed.26636, Trojan.DownLoader11.27075, Adware.W3i.56, Trojan.DownLoader11.36367, Trojan.DownLoader11.29457
17.65%
VIPRE Antivirus
DomaIQ, Threat.4783235, Trojan.Win32.Generic
17.65%
Avira AntiVirus
APPL/DomaIQ.Gen, TR/Dropper.Gen, APPL/Softpulse.H, TR/Symmi.46906
17.65%
G Data
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Win32.Adware.Softpulse, Gen:Variant.Application.Bundler.SoftPulse
17.65%
AVG
DomaIQ_r.J, Found Win32/DH{gRJ UIEHeVRPFVGBFYEJHFOBE0GBDw}, Generic
17.65%
MicroWorld eScan
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler.SoftPulse.2
14.71%
Malwarebytes
PUP.Optional.BundleInstaller.A, PUP.Optional.DomaIQ
14.71%
Bitdefender
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler.SoftPulse.2
14.71%
Lavasoft Ad-Aware
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler.SoftPulse.2
14.71%
F-Secure
Adware.DomaIQ.AN, Adware.Generic.941455, Gen:Variant.Adware.Strictor.61140, Gen:Variant.Application.Bundler, Gen:Variant.Adware.Symmi.46906
14.71%
The domain ttb.dldsoftpro.com has been seen to resolve to the following 6 IP addresses.
www.renewyourexpireddomain.com
February 8, 2016
ec2-52-10-156-255.us-west-2.compute.amazonaws.com
January 29, 2016
ec2-54-149-159-30.us-west-2.compute.amazonaws.com
January 29, 2016
ec2-50-112-177-75.us-west-2.compute.amazonaws.com
August 17, 2014
ec2-54-201-201-245.us-west-2.compute.amazonaws.com
August 17, 2014
ec2-54-213-33-153.us-west-2.compute.amazonaws.com
April 23, 2014
File downloads found at URLs served by ttb.dldsoftpro.com.
The following 3 files have been seen to comunicate with ttb.dldsoftpro.com in live environments.
URL:
http://ttb.dldsoftpro.com/
Google Analytics:
UA-1141889
Web server:
Apache/2.2.22 (Debian)
Related Domains
30 of 147 related domains