dl5.v1installer.com

NATIVEX HOLDINGS, LLC

Domain Information

The domain dl5.v1installer.com registered by NATIVEX HOLDINGS, LLC was initially registered in May of 2013 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Costa Mesa, California within the United States which resides on the Level 3 Communications, Inc. network.
Remove Malware from dl5.v1installer.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Wednesday, May 22, 2013

Expires date:
Friday, May 22, 2015

Updated date:
Thursday, May 08, 2014

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/InstallIQ (variant)
100.00%

Trend Micro House Call
TROJ_GEN.R02KH0AHU13, TROJ_GEN.F47V0704
100.00%

Sophos
InstallQ, Generic PUA AP
100.00%

VIPRE Antivirus
InstallIQ Installer
100.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
100.00%

Reason Heuristics
PUP.Installer.InstallX.L, PUP.Installer.InstallX.O, Threat.InstallX.Installer
100.00%

McAfee
Artemis!770086FD015A
66.67%

K7 AntiVirus
Unwanted-Program
66.67%

K7 Gateway Antivirus
Unwanted-Program
66.67%

McAfee Web Gateway
Artemis!770086FD015A
66.67%

Malwarebytes
PUP.Optional.InstallIQ, PUP.Optional.InstallIQ.A
66.67%

Comodo Security
Application.Win32.InstallIQ.B
66.67%

Dr.Web
Adware.Downware.1426
66.67%

IKARUS anti.virus
Win32.SuspectCrc
66.67%

Boost by Reason
Adware.Installer.InstallX.L
33.33%

The domain dl5.v1installer.com has been seen to resolve to the following IP address.

May 3, 2015

File downloads found at URLs served by dl5.v1installer.com.

6 / 68      (Adware)
http://dl5.v1installer.com/lm/.../vioplayer2_106.exe  (10eba6699a4a5b7206efe68446e9cd0a)

14 / 68    (Adware)
http://dl5.v1installer.com/lm/.../openfreely_979.exe  (2cd989ba95ab1bf4cc32001e56d21387)

15 / 68    (Adware)

The following file have been seen to comunicate with dl5.v1installer.com in live environments.

URL:
http://dl5.v1installer.com/

Google Analytics:
UA-2249740

Title:
“V1installer.com”

Description:
“Find Cash Advance, Debt Consolidation and more at V1installer.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. V1installer.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 298 related domains

Remove Malware from dl5.v1installer.com - Powered by Reason Core Security