dl2.vic6installer.com

NATIVEX HOLDINGS, LLC

Domain Information

The domain dl2.vic6installer.com registered by NATIVEX HOLDINGS, LLC was initially registered in January of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Wednesday, January 15, 2014

Expires date:
Thursday, January 15, 2015

Updated date:
Wednesday, August 20, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Application.Bundler.Graftor.155902
100.00%

Malwarebytes
PUP.Optional.SafeInstall.A
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

NANO AntiVirus
Riskware.Win32.Searcher.csnymk
100.00%

Kaspersky
not-a-virus:Downloader.NSIS.Agent
100.00%

Bitdefender
Gen:Variant.Application.Bundler.Graftor.155902
100.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Graftor.155902
100.00%

Comodo Security
Application.Win32.InstallIQ.B
100.00%

F-Secure
Gen:Variant.Application.Bundler
100.00%

Dr.Web
Adware.Downware.2512
100.00%

VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic
100.00%

Sophos
InstallQ
100.00%

Avira AntiVirus
APPL/InstallIQ.Gen4
100.00%

AhnLab V3 Security
PUP/Win32.SafeInstaller
100.00%

G Data
Gen:Variant.Application.Bundler.Graftor.155902
100.00%

The domain dl2.vic6installer.com has been seen to resolve to the following 4 IP addresses.

unallocated.barefruit.co.uk
May 3, 2015

January 16, 2015

cdn-208-111-160-6.iad.llnw.net
November 10, 2014

cdn-208-111-161-254.iad.llnw.net
November 10, 2014

File downloads found at URLs served by dl2.vic6installer.com.

31 / 68    (Adware)

28 / 68    (Adware)

26 / 68    (Adware)

28 / 68    (Adware)

28 / 68    (Adware)

33 / 68    (Adware)

25 / 68    (Adware)

27 / 68    (Adware)

The following 359 files have been seen to comunicate with dl2.vic6installer.com in live environments.

 
Latest 20 of 409 files

URL:
http://dl2.vic6installer.com/

Title:
“Please Wait - You are being redirected.”

Web server:
nginx/1.0.15