The domain dl2.iq4download.com registered by REACTIVATION PERIOD was initially registered in April of 2011 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Registrant:
REACTIVATION PERIOD
Server location:
Virginia, United States (US)
Create date:
Wednesday, April 27, 2011
Expires date:
Monday, April 27, 2015
Updated date:
Tuesday, June 9, 2015
ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.W3i.J, PUP.Installer.InstallX.J, PUP.Installer.W3i.H, PUP.Installer.W3i.K, PUP.Installer.W3i.S, PUP.Installer.InstallX.N, PUP.InstallX.Installer, PUP.InstallX.W3i.Installer (M)
100.00%
Dr.Web
Adware.W3i.4, Adware.W3i.32, Adware.W3i.9, Adware.Downware.12, Adware.W3i.9, Adware.W3i.4, Trojan.Domaiq.225
63.89%
Malwarebytes
PUP.Optional.InstallIQ, PUP.Optional.InstallIQ.A
58.33%
VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic, Threat.4150696
58.33%
Avira AntiVirus
APPL/InstallIQ.Gen5, PUA/InstallIQ.Gen5
58.33%
ESET NOD32
Win32/InstallIQ (variant), Win32/InstallIQ.A potentially unwanted (variant)
55.56%
Trend Micro House Call
TROJ_GEN.F47V0404, TROJ_GEN.USA27HO, TROJ_SPNR.0CI312, ADW_INSTALLQ, TROJ_GEN.R00UH0AJP13, TROJ_GEN.R00UH01GC13, TROJ_GEN.F47V0917
55.56%
Fortinet FortiGate
Adware/InstallIQ, W32/FirseriaInstaller.A
52.78%
Rising Antivirus
PE:PUF.InstallIQ!1.9E4F, PE:Trojan.Win32.Generic.14A41BA7!346299303
47.22%
K7 AntiVirus
Unwanted-Program
44.44%
McAfee
Artemis!FBBB700F3F06, Artemis!132905E8A5FF, Artemis!71FE634C52B1, Artemis!614A23E882C3, Artemis!9C0671439D2B, Artemis!BA96BC364600, Artemis!D195ED596249, Artemis!D3E28140D299, Artemis!62FA1B508049
41.67%
Baidu Antivirus
Trojan.Win32.Agent, Trojan.Win32.InstallIQ, Adware.Win32.InstallIQ
38.89%
AVG
MalSign.Generic, AdInstaller.InstallQ, Skodna.Generic_r, Adware InstallIQ.BC, InstallIQ.C, InstallIQ.R
36.11%
Comodo Security
Application.Win32.InstallIQ.B, UnclassifiedMalware, Application.Win32.InstallIQ.NTZK
30.56%
The domain dl2.iq4download.com has been seen to resolve to the following 5 IP addresses.
cdn-208-111-160-6.iad.llnw.net
February 20, 2014
cdn-208-111-161-254.iad.llnw.net
February 20, 2014
File downloads found at URLs served by dl2.iq4download.com.
Latest 30 of 36 download URLs
The following 150 files have been seen to comunicate with dl2.iq4download.com in live environments.