clk3down.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain clk3down.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Manacor, Islas Baleares within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Islas Baleares, Spain (ES)

Create date:
Thursday, March 5, 2015

Expires date:
Saturday, March 5, 2016

Updated date:
Friday, July 31, 2015

ASN:
AS57910 SCIP-AS Soluciones Corporativas IP, SL,ES

Scanner detections:
Detections  (80% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.GeryonAds, PUP.Bundler.GeryonAds, PUP.installCore.GeryonAds.Installer (M)
100.00%

McAfee
Artemis!2BF488E86639, Artemis!6FE2C4B38281
75.00%

K7 AntiVirus
Unwanted-Program
75.00%

Trend Micro House Call
TROJ_GEN.R00GC0OCJ15, TROJ_GEN.R0C1C0OCM15
75.00%

Comodo Security
ApplicUnwnt
75.00%

Dr.Web
Trojan.InstallCore.151
75.00%

VIPRE Antivirus
InstallCore
75.00%

Trend Micro
TROJ_GEN.R00GC0OCJ15, TROJ_GEN.R0C1C0OCM15
75.00%

AhnLab V3 Security
PUP/Win32.InstallCore
75.00%

Baidu Antivirus
Adware.Win32.InstallCore
75.00%

ESET NOD32
Win32/InstallCore.XL potentially unwanted (variant)
75.00%

Fortinet FortiGate
Riskware/InstallCore
75.00%

AVG
Generic
75.00%

Avira AntiVirus
Adware/InstallCore.A.2201, PUA/InstallCore.A.2387
75.00%

G Data
Win32.Application.Agent.08MY3Y, Win32.Application.Agent.5QT6YH
50.00%

The domain clk3down.com has been seen to resolve to the following IP address.

hostingsrv7.dondominio.com
February 9, 2016

File downloads found at URLs served by clk3down.com.

0 / 68
http://clk3down.com/.../ie_pa.php  (internetexplorer_installer.exe)

16 / 68    (Adware)
http://clk3down.com/.../fi_pa.php  (icreinstall_firefox_installer.exe)

17 / 68    (Adware)
http://clk3down.com/.../fi_pa.php  (firefox_installer.exe)

1 / 68      (Adware)
http://clk3down.com/.../ie_pa.php  (icreinstall_internetexplorer_installer.exe)

16 / 68    (Adware)
http://clk3down.com/.../ie_pa.php  (internetexplorer_installer.exe)

The following file have been seen to comunicate with clk3down.com in live environments.

URL:
http://clk3down.com/

Google Analytics:
UA-1141889

Title:
“clk3down.com | Registrado en DonDominio”

Description:
“Este dominio ha sido registrado por medio del agente registrador DonDominio.com”

Web server:
Apache (PHP/5.4.45-0+deb7u1)

30 of 147 related domains