dl.v2.domaiq.com

Tuguu SL  (via a Proxy Registrant)

Domain Information

DomaIQ is a download and install manager from Tuguu that bundles various adware offers. - "DomaIQ provides you additional software during the installation; you can accept or reject the offers at any time. By clicking at 'Download' button you will be downloading DomaIQ. This software will manage the download and installation of the selected software. During the installation process, DomaIQ will offer you additional software that you can accept or reject. To continue the installation process you must select the option 'Accept & Continue'. If you also accept any of the bids selected, DomaIQ processes to install it on your computer along with the main software. DomaIQ is not installed on your computer, it simply acts as a download and installation manager. You can get this software directly from the author's website without using DomaIQ." The domain dl.v2.domaiq.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in June of 2011. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter. The domain is associated with the publisher Tuguu SL who is located in Adeje, Santa Cruz De Tenerife in Spain.
Remove Malware from dl.v2.domaiq.com - Powered by Reason Core Security
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU

Server location:
Oregon, United States (US)

Create date:
Friday, June 03, 2011

Expires date:
Wednesday, June 03, 2015

Updated date:
Friday, April 05, 2013

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.tuguusl.X, PUP.TUGUUSL.P, PUP.TuguuSL.X, PUP.TUGUUSL.N
100.00%

Dr.Web
Tool.DownLoader.44, Trojan.DownLoader10.474, Adware.W3i.29
50.00%

SUPERAntiSpyware
PUP.BundleInstaller, PUP.DomalIQ/Variant
33.33%

VIPRE Antivirus
DomaIQ
33.33%

avast!
Win32:PUP-gen [PUP], Win32:DomaIQ-E [PUP]
33.33%

ESET NOD32
Win32/DomaIQ.AG
33.33%

Quick Heal
TrojanDownloader.NSIS.Agent.AL, AdWare.DomaIQ.r3 (Not a Virus)
33.33%

McAfee
Artemis!DDA4AB6E17E1, Artemis!2D571393ADD8
33.33%

Malwarebytes
PUP.Adware.DomaIQ
33.33%

K7 AntiVirus
Trojan , Unwanted-Program
33.33%

K7 Gateway Antivirus
Trojan , Unwanted-Program
33.33%

NANO AntiVirus
Trojan.Win32.W3i.csnylo, Riskware.Base64.DomaIQ.cwpnap
33.33%

Norman
Obfuscated.gen!r
33.33%

Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:HEUR:AdWare.MSIL.DomaIQ
33.33%

Bitdefender
Trojan.Agent.BAAB, Application.Bundler.DomaIQ.F
33.33%

The domain dl.v2.domaiq.com has been seen to resolve to the following 5 IP addresses.

July 3, 2014

March 28, 2014

February 8, 2014

January 23, 2014

ec2-54-201-119-182.us-west-2.compute.amazonaws.com
December 28, 2013

File downloads found at URLs served by dl.v2.domaiq.com.

32 / 68    (Adware)

31 / 68    (Adware)

3 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

URL:
http://dl.v2.domaiq.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx

Compete.com:
US visitors:  5,667

Statistics are for the previous month.

Remove Malware from dl.v2.domaiq.com - Powered by Reason Core Security