dl2.v47installer.com

Domain Registries Foundation

Domain Information

The domain dl2.v47installer.com registered by Domain Registries Foundation was initially registered in February of 2016 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Remove Malware from dl2.v47installer.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Wednesday, February 10, 2016

Expires date:
Friday, February 10, 2017

Updated date:
Wednesday, February 10, 2016

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Dr.Web
Win32.Sector.21, Adware.Searcher.2593, Adware.InstallIQ.2, Adware.Downware.2512, Adware.Downware.2157, Adware.InstallIQ.3
100.00%

Sophos
DomainIQ pay-per install, InstallQ
97.87%

Reason Heuristics
PUP.Installer.SecureInstall.G, PUP.Installer.SecureInstall.L, PUP.Installer.SecureInstall.K, PUP.Installer.SecureInstall.I, Threat.Win.Reputation.IMP, PUP.Installer.InstallX.K, PUP.InstallX.SecureInstall.Installer (M)
97.87%

Malwarebytes
PUP.Optional.SafeInstall.A
95.74%

NANO AntiVirus
Riskware.Win32.Searcher.csnymk, Trojan.Win32.Searcher.csnymk
95.74%

VIPRE Antivirus
InstallIQ Installer, Threat.4783689
95.74%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-BAY.K, Artemis!25CCAE59E743, Artemis!9B0EF7D18E01, Artemis!275A329538EA, Artemis!E8CF72AEA1C9
95.74%

ESET NOD32
Win32/InstallIQ (variant)
93.62%

McAfee
Artemis!2D09534EC833, Artemis!25CCAE59E743, Artemis!9B0EF7D18E01, Artemis!3DD7A96AEE23, Artemis!275A329538EA, Artemis!E8CF72AEA1C9, Artemis!C4A8EECDA7F4, Artemis!507B3EE96EDC, Artemis!34ADD1E4EB95, Artemis!21958A342C3E, Artemis!AA795C621E76, Artemis!3EEB044AE680, Artemis!459CD5527DA8, Artemis!6A4FF86A4C14, PUP-FLX, Artemis!A4B85577E7B4, Artemis!681E2B9DE2C4, Artemis!FA60AC340241, Artemis!11DA27067C4C, Artemis!E56379CAE13E, Artemis!B8F9EB1AB62D
93.62%

Trend Micro House Call
TROJ_GEN.F47V0404, TROJ_GEN.F47V0411, TROJ_GEN.F47V0314, TROJ_GEN.F47V0426, TROJ_GEN.F47V0502, TROJ_GEN.F47V0315, TROJ_GEN.F47V0509
91.49%

AVG
MultiBundle, Generic_r, Adware Generic_r.NT
87.23%

K7 Gateway Antivirus
Unwanted-Program , Trojan
85.11%

Antiy Labs AVL
VCS/Instruction.PEEPOCheck, Trojan/Win32.TSGeneric, RiskWare[Downloader:not-a-virus]/NSIS.Agent
85.11%

Kaspersky
not-a-virus:Downloader.NSIS.Agent
82.98%

K7 AntiVirus
Unwanted-Program , Trojan
80.85%

The domain dl2.v47installer.com has been seen to resolve to the following 6 IP addresses.

February 13, 2016

November 10, 2014

cdn-208-111-161-254.iad.llnw.net
May 1, 2014

cdn-208-111-160-6.iad.llnw.net
May 1, 2014

April 11, 2014

April 11, 2014

File downloads found at URLs served by dl2.v47installer.com.

40 / 68    (Adware)

36 / 68    (Adware)

31 / 68    (Adware)

33 / 68    (Adware)

36 / 68    (Adware)

25 / 68    (Adware)

13 / 68    (Adware)

27 / 68    (Adware)

27 / 68    (Adware)

30 / 68    (Adware)

23 / 68    (Adware)

28 / 68    (Adware)

17 / 68    (Adware)

36 / 68    (Adware)

27 / 68    (Adware)

34 / 68    (Adware)

27 / 68    (Adware)

35 / 68    (Adware)

34 / 68    (Adware)

16 / 68    (Adware)

16 / 68    (Adware)

27 / 68    (Adware)

 
Latest 30 of 188 download URLs

The following 29 files have been seen to comunicate with dl2.v47installer.com in live environments.

 
Latest 20 of 44 files

URL:
http://dl2.v47installer.com/

Title:
“v47installer.com”

Web server:
Apache

Remove Malware from dl2.v47installer.com - Powered by Reason Core Security