dl.v2.domaiq.com

Tuguu SL  (via a Proxy Registrant)

Domain Information

DomaIQ is a download and install manager from Tuguu that bundles various adware offers. - "DomaIQ provides you additional software during the installation; you can accept or reject the offers at any time. By clicking at 'Download' button you will be downloading DomaIQ. This software will manage the download and installation of the selected software. During the installation process, DomaIQ will offer you additional software that you can accept or reject. To continue the installation process you must select the option 'Accept & Continue'. If you also accept any of the bids selected, DomaIQ processes to install it on your computer along with the main software. DomaIQ is not installed on your computer, it simply acts as a download and installation manager. You can get this software directly from the author's website without using DomaIQ." The domain dl.v2.domaiq.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in June of 2011. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter. The domain is associated with the publisher Tuguu SL who is located in Adeje, Santa Cruz De Tenerife in Spain.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Oregon, United States (US)

Create date:
Friday, June 03, 2011

Expires date:
Friday, June 03, 2016

Updated date:
Thursday, December 31, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.tuguusl.X, PUP.TUGUUSL.P, PUP.TuguuSL.X, PUP.TUGUUSL.S, PUP.TUGUUSL.N, PUP.Tuguu.Bundler (M), PUP.Tuguu.LunacomInteractive.Bundler (M), PUP.Tuguu.tuguusl.Bundler (M), PUP.Tuguu.Awimba.Bundler (M), PUP.Tuguu.LunacomI.Bundler (M), PUP.Tuguu.TuguuU.Bundler (M), PUP.Tuguu (M)
100.00%

Dr.Web
Tool.DownLoader.44, Trojan.DownLoader10.474, Adware.W3i.29, Detection.Undefined
10.42%

Norman
Obfuscated.gen!r, Suspicious_Gen4.ERZRG, Application.Bundler.DomaIQ.F
8.33%

VIPRE Antivirus
DomaIQ
6.25%

avast!
Win32:PUP-gen [PUP], NSIS:DomaIQ-C [PUP], Win32:DomaIQ-E [PUP]
6.25%

ESET NOD32
Win32/DomaIQ.AG
6.25%

McAfee
Artemis!DDA4AB6E17E1, Artemis!594E82CD516A, Artemis!2D571393ADD8
6.25%

K7 AntiVirus
Trojan , Unwanted-Program
6.25%

K7 Gateway Antivirus
Trojan , Unwanted-Program
6.25%

Comodo Security
Application.Win32.DomaIQ.K, ApplicUnwnt, Application.Win32.Downloader.Agent.WA
6.25%

Avira AntiVirus
APPL/DomaIQ.Gen7
6.25%

Sophos
DomainIQ pay-per install, Generic PUA CF
6.25%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, TScope.Trojan.MSIL, AdWare.DomaIQ.euy
6.25%

Panda Antivirus
Adware/MultiToolbar, PUP/MultiToolbar.A
6.25%

IKARUS anti.virus
AdWare.SuspectCRC, AdWare.DomaIQ, AdWare.Agent
6.25%

The domain dl.v2.domaiq.com has been seen to resolve to the following 5 IP addresses.

July 3, 2014

March 28, 2014

February 8, 2014

January 23, 2014

ec2-54-201-119-182.us-west-2.compute.amazonaws.com
December 28, 2013

File downloads found at URLs served by dl.v2.domaiq.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

32 / 68    (Adware)

3 / 68      (Adware)