The domain dl5.iq11download.com registered by Corp New Ventures Services was initially registered in December of 2015 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Road Town, British Virgin Islands within VG which resides on the Confluence Networks Inc network.
Registrant:
Corp New Ventures Services
Registrar:
THIRDROUNDNAMES LLC
Server location:
British Virgin Islands, VG (VG)
Create date:
Tuesday, December 15, 2015
Expires date:
Thursday, December 15, 2016
Updated date:
Tuesday, December 22, 2015
ASN:
AS40034 CONFLUENCE-NETWORK-INC - Confluence Networks Inc,VG
Scanner detections:
Detections (92% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Win.Reputation, PUP.Installer.InstallX.K, PUP.Installer.InstallX.S, PUP.Installer.InstallX.N, PUP.Installer.InstallX.R, PUP.InstallX.Installer (M)
100.00%
ESET NOD32
Win32/InstallIQ (variant), Win32/InstallIQ.A potentially unwanted (variant)
91.67%
Malwarebytes
PUP.Optional.InstallIQ
87.50%
NANO AntiVirus
Riskware.Win32.Searcher.csnymk
87.50%
Avira AntiVirus
APPL/InstallIQ.Gen5
87.50%
VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic
87.50%
AVG
Generic, InstallIQ
87.50%
Kaspersky
not-a-virus:Downloader.NSIS.Agent
83.33%
Fortinet FortiGate
Riskware/Agent
83.33%
SUPERAntiSpyware
PUP.InstallIQ/Variant
79.17%
Trend Micro House Call
Suspicious_GEN.F47V0730, Suspicious_GEN.F47V0808, Suspicious_GEN.F47V0802, Suspicious_GEN.F47V0729, Suspicious_GEN.F47V0731
79.17%
Dr.Web
Adware.Downware.2512
79.17%
Comodo Security
UnclassifiedMalware, Application.Win32.InstallIQ.NTZK
66.67%
K7 AntiVirus
Adware , Trojan , Unwanted-Program
66.67%
Panda Antivirus
Trj/Chgt.C, Generic Suspicious, Trj/Genetic.gen
62.50%
The domain dl5.iq11download.com has been seen to resolve to the following 3 IP addresses.
File downloads found at URLs served by dl5.iq11download.com.
The following 2 files have been seen to comunicate with dl5.iq11download.com in live environments.
URL:
http://dl5.iq11download.com/