dl2.vin7installer.com

NATIVEX HOLDINGS, LLC

Domain Information

The domain dl2.vin7installer.com registered by NATIVEX HOLDINGS, LLC was initially registered in August of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Registrar:
ENOM, INC.

Server location:
Virginia, United States (US)

Create date:
Tuesday, August 26, 2014

Expires date:
Wednesday, August 26, 2015

Updated date:
Monday, April 20, 2015

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.InstallX, PUP.InstallX.SafeInstall.Installer (M), PUP.InstallX.SafeInst.Installer (M), PUP.InstallX (M)
95.45%

Malwarebytes
PUP.Optional.SafeInstall.A
77.27%

K7 AntiVirus
Unwanted-Program , Adware
77.27%

NANO AntiVirus
Riskware.Win32.Searcher.csnymk, Riskware.Win32.Downware.dutznm
77.27%

Trend Micro House Call
Suspicious_GEN.F47V0116, Suspicious_GEN.F47V1118, Suspicious_GEN.F47V0121, TROJ_GEN.F0C2H00K714, Suspicious_GEN.F47V0113
77.27%

Kaspersky
not-a-virus:Downloader.NSIS.Agent
77.27%

Sophos
InstallQ, PUA 'InstallQ'
77.27%

Comodo Security
Application.Win32.InstallIQ.B
77.27%

Dr.Web
Adware.Downware.9628, Adware.Downware.2512, Adware.Downware.9665, Adware.Downware.9592, Adware.Downware.9682, Adware.Downware.9371
77.27%

VIPRE Antivirus
InstallIQ Installer, Threat.4783689, Trojan.Win32.Generic
77.27%

Avira AntiVirus
APPL/InstallIQ.Gen4, PUA/InstallIQ.Gen4
77.27%

G Data
Win32.Application.InstallIQ, Gen:Variant.Application.Bundler.Graftor.155902, Application.Bundler.Agent, Trojan.Downloader.JRJW
77.27%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, Downloader.Agent
77.27%

Fortinet FortiGate
Riskware/Agent, Riskware/InstallIQ
77.27%

AVG
Generic, Adware InstallIQ, Generic_r
77.27%

The domain dl2.vin7installer.com has been seen to resolve to the following 3 IP addresses.

May 4, 2015

cdn-208-111-160-6.iad.llnw.net
February 7, 2015

cdn-208-111-161-254.iad.llnw.net
February 7, 2015

File downloads found at URLs served by dl2.vin7installer.com.

1 / 68      (Adware)

2 / 68      (false positives)

1 / 68      (Adware)

1 / 68      (Adware)

36 / 68    (Adware)

34 / 68    (Adware)

1 / 68      (Adware)

19 / 68    (Adware)

35 / 68    (Adware)

34 / 68    (Adware)

33 / 68    (Adware)

35 / 68    (Adware)

37 / 68    (Adware)

35 / 68    (Adware)

35 / 68    (Adware)

37 / 68    (Adware)

34 / 68    (Adware)

33 / 68    (Adware)

34 / 68    (Adware)

33 / 68    (Adware)

34 / 68    (Adware)

33 / 68    (Adware)

The following 85 files have been seen to comunicate with dl2.vin7installer.com in live environments.

 
Latest 20 of 135 files

URL:
http://dl2.vin7installer.com/

Google Analytics:
UA-2249740

Title:
“Vin7installer.com”

Description:
“Find Instyler, Windows Installer and more at Vin7installer.com. Get the best of Vuze Installer or Windows Installer Cleanup Utility, browse our section on Download Windows Installer or learn about Carpet Installers. Vin7installer.com is the site ...”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains