dl2.iq10download.com

InstallX, LLC

Domain Information

The domain dl2.iq10download.com registered by NATIVEX HOLDINGS, LLC was initially registered in September of 2012 through ENOM, INC.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network. The domain is associated with the publisher InstallX, LLC who is located in Sartell, Minnesota in the United States.
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Thursday, September 27, 2012

Expires date:
Sunday, September 27, 2015

Updated date:
Thursday, August 28, 2014

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/InstallIQ (variant)
100.00%

Reason Heuristics
PUP.Installer.InstallX.R, PUP.Installer.InstallX.T, PUP.Installer.InstallX.S, PUP.Installer.InstallX.J, PUP.Installer.InstallX.K
100.00%

NANO AntiVirus
Trojan.Win32.Searcher.cjaztx, Riskware.Win32.Searcher.cjaztx, Trojan.Win32.Searcher.csnymk, Trojan.Win32.Downware.cujxue
100.00%

Dr.Web
Adware.W3i.32, Adware.Downware.1870
100.00%

Fortinet FortiGate
Riskware/InstallIQ, Adware/Fam.NB
100.00%

Malwarebytes
PUP.Optional.InstallIQ, PUP.PlayPickle
100.00%

Comodo Security
Application.Win32.InstallIQ.B
100.00%

VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic
100.00%

Avira AntiVirus
APPL/InstallIQ.Gen5, Adware/InstallIQ.N
100.00%

IKARUS anti.virus
Win32.Malware, AdWare.InstallIQ, Win32.SuspectCrc, Virus.Win32.Heur, APPL
100.00%

McAfee
Artemis!5214A0E61879, Artemis!AA1B5EA3FF39, Artemis!A34F9AC02DB1, Artemis!55D1D28B91D9, Artemis!0F2DC5280654, Artemis!AD54800C0CEE, Artemis!9674B02FBD47, Artemis!FB761F4B5182, Artemis!6C3CFDCF2BE4, Artemis!A0C82884B0B9, Artemis!ACAE77FF1EF0, Artemis!DCBCF8B9ED99
92.86%

Sophos
InstallQ
92.86%

Rising Antivirus
PE:PUF.InstallIQ!1.9E4F
92.86%

AVG
InstallIQ.F, Skodna.Generic_r
92.86%

Trend Micro House Call
TROJ_GEN.F47V1220, TROJ_GEN.F47V0117, TROJ_GEN.F47V0815, TROJ_GEN.F47V1024, TROJ_GEN.F47V0116, TROJ_GEN.F47V0501, TROJ_GEN.F47V0119
85.71%

The domain dl2.iq10download.com has been seen to resolve to the following 6 IP addresses.

May 16, 2016

May 4, 2015

cdn-208-111-160-6.iad.llnw.net
March 15, 2014

cdn-208-111-161-254.iad.llnw.net
March 15, 2014

February 3, 2014

February 3, 2014

File downloads found at URLs served by dl2.iq10download.com.

18 / 68    (Adware)

21 / 68    (Adware)

23 / 68    (Adware)

14 / 68    (Adware)

18 / 68    (Adware)

30 / 68    (Adware)
http://dl2.iq10download.com/lm/.../expertpdf7.exe  (b7721b47554b6adb868ebc52ed249876)

19 / 68    (Adware)

19 / 68    (Adware)
http://dl2.iq10download.com/lm/.../7zip_bimo.exe  (ad54800c0cee065af9dd4f8e4b9502bc)

28 / 68    (Adware)
http://dl2.iq10download.com/lm/.../musicoasis.exe  (9674b02fbd476eb9fc24f10959fab6db)

26 / 68    (Adware)

13 / 68    (Adware)

27 / 68    (Adware)

26 / 68    (Adware)

24 / 68    (Adware)

13 / 68    (Adware)

27 / 68    (Adware)

The following 153 files have been seen to comunicate with dl2.iq10download.com in live environments.

 
Latest 20 of 295 files

URL:
http://dl2.iq10download.com/

Title:
“Please Wait - You are being redirected.”

Web server:
Microsoft-IIS/7.5 (ASP.NET)