dl2.vik1installer.com

NATIVEX HOLDINGS, LLC

Domain Information

The domain dl2.vik1installer.com registered by NATIVEX HOLDINGS, LLC was initially registered in August of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Tuesday, August 26, 2014

Expires date:
Wednesday, August 26, 2015

Updated date:
Monday, April 20, 2015

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.InstallX.E, PUP.Installer.InstallX.Q, PUP.Installer.InstallX.I, PUP.Installer.InstallX.O, PUP.Installer.InstallX.J, PUP.InstallX.SafeInstall.Installer (M), PUP.InstallX.SafeInst.Installer (M)
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.Graftor.155902
83.33%

Malwarebytes
PUP.Optional.SafeInstall.A
83.33%

VIPRE Antivirus
InstallIQ Installer
83.33%

K7 AntiVirus
Unwanted-Program
83.33%

NANO AntiVirus
Riskware.Win32.Searcher.csnymk
83.33%

Trend Micro House Call
Suspicious_GEN.F47V1205, Suspicious_GEN.F47V1203, Suspicious_GEN.F47V1115, Suspicious_GEN.F47V1118, TROJ_GEN.F0C2H00K714
83.33%

avast!
Win32:PUP-gen [PUP]
83.33%

Kaspersky
not-a-virus:Downloader.NSIS.Agent
83.33%

Bitdefender
Gen:Variant.Application.Bundler.Graftor.155902
83.33%

Comodo Security
Application.Win32.InstallIQ.B
83.33%

F-Secure
Gen:Variant.Application.Bundler
83.33%

Dr.Web
Adware.Downware.2512
83.33%

Sophos
InstallQ, PUA 'InstallQ'
83.33%

Avira AntiVirus
APPL/InstallIQ.Gen4
83.33%

The domain dl2.vik1installer.com has been seen to resolve to the following 3 IP addresses.

May 3, 2015

cdn-208-111-160-6.iad.llnw.net
January 3, 2015

cdn-208-111-161-254.iad.llnw.net
January 3, 2015

File downloads found at URLs served by dl2.vik1installer.com.

31 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

37 / 68    (Adware)

29 / 68    (Adware)

30 / 68    (Adware)

31 / 68    (Adware)

33 / 68    (Adware)

31 / 68    (Adware)

33 / 68    (Adware)

33 / 68    (Adware)

The following 86 files have been seen to comunicate with dl2.vik1installer.com in live environments.

 
Latest 20 of 136 files

URL:
http://dl2.vik1installer.com/

Google Analytics:
UA-2249740

Title:
“Vik1installer.com”

Description:
“Find Instyler, Windows Installer and more at Vik1installer.com. Get the best of Vuze Installer or Windows Installer Cleanup Utility, browse our section on Download Windows Installer or learn about Carpet Installers. Vik1installer.com is the site ...”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains