The domain dl2.iq11download.com registered by Corp New Ventures Services was initially registered in December of 2015 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Registrant:
Corp New Ventures Services
Registrar:
THIRDROUNDNAMES LLC
Server location:
Virginia, United States (US)
Create date:
Tuesday, December 15, 2015
Expires date:
Thursday, December 15, 2016
Updated date:
Tuesday, December 22, 2015
ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object
Scanner detections:
Detections (98% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.InstallX.T, PUP.Installer.InstallX.Q, PUP.Installer.InstallX.R, PUP.Installer.InstallX.S, PUP.Installer.InstallX.L, PUP.InstallX.Installer (M)
100.00%
NANO AntiVirus
Riskware.Win32.Searcher.cjaztx, Trojan.Win32.Downware.cujxue, Trojan.Win32.Searcher.cjaztx, Trojan.Win32.Searcher.csnymk
97.62%
ESET NOD32
Win32/InstallIQ (variant), Win32/InstallIQ.A potentially unwanted (variant)
97.62%
Malwarebytes
PUP.Optional.InstallIQ, PUP.PlayPickle
95.24%
Avira AntiVirus
APPL/InstallIQ.Gen5, Adware/InstallIQ.N
95.24%
VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic
92.86%
Dr.Web
Adware.Downware.1870, Adware.W3i.32, Adware.Downware.2512, Adware.W3i.49
90.48%
AVG
InstallIQ.F, Skodna.Generic_r, MalSign.Generic
88.10%
Comodo Security
Application.Win32.InstallIQ.B, Application.Win32.InstallIQ.NTZK
80.95%
McAfee
Artemis!AA1B5EA3FF39, Artemis!F7ED23EEB258, Artemis!A34F9AC02DB1, Artemis!55D1D28B91D9, Artemis!0F2DC5280654, Artemis!D06BDD771E23, Artemis!AD54800C0CEE, Artemis!6C5EBAF8CBED, Artemis!FB761F4B5182, Artemis!4624BABEBE66, Artemis!0CB9816433C4, Artemis!C304B4FCCF79, Artemis!D5FA08152E4A, Artemis!D0BF53E30066, Artemis!D5D2FC29D2F1, Artemis!6C3CFDCF2BE4, Artemis!396A1D1D9C32, Artemis!1FAFD02BEB75, Artemis!1658A5028BA0, Artemis!8BB0FCA73EA6, Artemis!7FF0CAE02194, Artemis!F05AC82C4349, Artemis!1ADF04435640, Artemis!6F95481652F6, Artemis!1DE6813751BF, Artemis!4EB10F6324B6, Artemis!BF05F6E1614C, Artemis!60094A457AFF
73.81%
IKARUS anti.virus
AdWare.InstallIQ, Win32.SuspectCrc, Win32.Malware, Virus.Win32.Heur, APPL, PUA.InstallIQ
73.81%
Rising Antivirus
PE:PUF.InstallIQ!1.9E4F
71.43%
Trend Micro House Call
TROJ_GEN.F47V0117, TROJ_GEN.F47V0119, TROJ_GEN.F47V0815, TROJ_GEN.F47V1024, TROJ_GEN.F47V0116, TROJ_GEN.F47V0213, TROJ_GEN.F47V0407
66.67%
Fortinet FortiGate
Riskware/InstallIQ, Adware/Fam.NB, Riskware/Agent
61.90%
The domain dl2.iq11download.com has been seen to resolve to the following 6 IP addresses.
cdn-208-111-161-254.iad.llnw.net
September 3, 2014
cdn-208-111-160-6.iad.llnw.net
September 3, 2014
File downloads found at URLs served by dl2.iq11download.com.
Latest 30 of 46 download URLs
The following 152 files have been seen to comunicate with dl2.iq11download.com in live environments.
URL:
http://dl2.iq11download.com/