The domain dl5.iq8download.com registered by Whois Privacy Shield Services was initially registered in February of 2016 through ENOM, INC.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States. The domain uses the Amazon Web Services (AWS) cloud computing platform. The domain is associated with the publisher InstallX, LLC who is located in Sartell, Minnesota in the United States.
Server location:
Virginia, United States (US)
Create date:
Thursday, February 11, 2016
Expires date:
Saturday, February 11, 2017
Updated date:
Sunday, February 14, 2016
ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.W3i.M, PUP.Installer.W3i.V, PUP.Installer.W3i.W, PUP.Installer.W3i.R, PUP.Installer.W3i.N, PUP.Installer.W3i.U, PUP.InstallX.W3i.Installer (M), PUP.InstallX.W3i (M), PUP.InstallX (M)
100.00%
Trend Micro House Call
TROJ_GEN.R0CBH0ABF14, TROJ_GEN.F47V1114, TROJ_SPNR.0CA214, TROJ_GEN.R00JH0ALJ13, TROJ_GEN.R0CBH0AID13, TROJ_FAKEAV.BMC, TROJ_GEN.F47V1003, TROJ_GEN.R0C1H01H913
63.83%
Dr.Web
Adware.Downware.888, Adware.W3i.9, Trojan.Domaiq.225, Adware.W3i.4
63.83%
ESET NOD32
Win32/InstallIQ (variant), Win32/InstallIQ.A potentially unwanted (variant)
63.83%
VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic
61.70%
Avira AntiVirus
APPL/InstallIQ.Gen5, Adware/InstallC.B.1, PUA/InstallIQ.Gen5
59.57%
Malwarebytes
PUP.Optional.InstallIQ.A
57.45%
K7 AntiVirus
Unwanted-Program , Trojan
48.94%
Comodo Security
UnclassifiedMalware, Application.Win32.InstallIQ.NTZK
48.94%
McAfee
Artemis!772480DBD233, Artemis!B42519620ED3, Artemis!7AA77A9C1E24, Artemis!F008A5420B73, Artemis!F5D376FA74BF, Artemis!0DC21F8310B4, Artemis!32CBB271DCA1, Artemis!9DAE36631201
48.94%
Trend Micro
TROJ_FAKEAV.BMC, TROJ_SPNR.0CA214, TROJ_SPNR.0CI312, TROJ_GEN.R0C1C0OL414, TROJ_SPNR.15A115, TROJ_GEN.FCBCBLA
42.55%
Baidu Antivirus
Trojan.Win32.InstallIQ, Trojan.Win32.Agent, Adware.Win32.InstallIQ
42.55%
Rising Antivirus
PE:PUF.InstallIQ!1.9E4F, PE:Trojan.Win32.Generic.14A41BA7!346299303
40.43%
MicroWorld eScan
APPL/InstallIQ.Gen5, Adware/InstallC.B.1, Win32/InstallIQ, Trojan.GenericKDV.1157022
38.30%
The domain dl5.iq8download.com has been seen to resolve to the following 4 IP addresses.
125.34.148.146.bc.googleusercontent.com
February 15, 2016
ec2-54-210-47-225.compute-1.amazonaws.com
February 15, 2016
File downloads found at URLs served by dl5.iq8download.com.
Latest 30 of 136 download URLs
The following 6 files have been seen to comunicate with dl5.iq8download.com in live environments.
URL:
http://dl5.iq8download.com/
Google Analytics:
UA-48689684
Network:
Amazon Web Services (AWS), running an EC2 instance
Related Domains
30 of 631 related domains