dl5.v1installer.com

NATIVEX HOLDINGS, LLC

Domain Information

The domain dl5.v1installer.com registered by NATIVEX HOLDINGS, LLC was initially registered in May of 2013 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Costa Mesa, California within the United States which resides on the Level 3 Communications, Inc. network.
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Wednesday, May 22, 2013

Expires date:
Friday, May 22, 2015

Updated date:
Thursday, May 8, 2014

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.InstallX.L, PUP.Installer.InstallX.O, Threat.InstallX.Installer, PUP.InstallX.Installer (M)
100.00%

ESET NOD32
Win32/InstallIQ (variant)
75.00%

Trend Micro House Call
TROJ_GEN.R02KH0AHU13, TROJ_GEN.F47V0704
75.00%

Sophos
InstallQ, Generic PUA AP
75.00%

VIPRE Antivirus
InstallIQ Installer
75.00%

McAfee
Artemis!770086FD015A
50.00%

K7 AntiVirus
Unwanted-Program
50.00%

Malwarebytes
PUP.Optional.InstallIQ, PUP.Optional.InstallIQ.A
50.00%

Comodo Security
Application.Win32.InstallIQ.B
50.00%

Dr.Web
Adware.Downware.1426
50.00%

IKARUS anti.virus
Win32.SuspectCrc
50.00%

Boost by Reason
Adware.Installer.InstallX.L
25.00%

The domain dl5.v1installer.com has been seen to resolve to the following IP address.

May 3, 2015

File downloads found at URLs served by dl5.v1installer.com.

1 / 68      (Adware)
http://dl5.v1installer.com/lm/.../mplayer_284.exe  (baf17513ee80358dc988c5326336ca6b)

5 / 68      (Adware)
http://dl5.v1installer.com/lm/.../vioplayer2_106.exe  (10eba6699a4a5b7206efe68446e9cd0a)

11 / 68    (Adware)
http://dl5.v1installer.com/lm/.../openfreely_979.exe  (2cd989ba95ab1bf4cc32001e56d21387)

12 / 68    (Adware)

The following file have been seen to comunicate with dl5.v1installer.com in live environments.

URL:
http://dl5.v1installer.com/

Google Analytics:
UA-2249740

Title:
“V1installer.com”

Description:
“Find Cash Advance, Debt Consolidation and more at V1installer.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. V1installer.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains