download.domaiq.com

Tuguu SL  (via a Proxy Registrant)

Domain Information

DomaIQ is a download and install manager from Tuguu that bundles various adware offers. - "DomaIQ provides you additional software during the installation; you can accept or reject the offers at any time. By clicking at 'Download' button you will be downloading DomaIQ. This software will manage the download and installation of the selected software. During the installation process, DomaIQ will offer you additional software that you can accept or reject. To continue the installation process you must select the option 'Accept & Continue'. If you also accept any of the bids selected, DomaIQ processes to install it on your computer along with the main software. DomaIQ is not installed on your computer, it simply acts as a download and installation manager. You can get this software directly from the author's website without using DomaIQ." The domain download.domaiq.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in June of 2011. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Tuguu SL who is located in Adeje, Santa Cruz De Tenerife in Spain.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Friday, June 3, 2011

Expires date:
Friday, June 3, 2016

Updated date:
Monday, June 1, 2015

ASN:
AS16276 OVH OVH SAS

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TuguuSL.X, PUP.Installer.TUGUUSL.O, PUP.Installer.TUGUUSL.N, PUP.TUGUUSL.V, PUP.Installer.TuguuSL.O, PUP.Tuguu.TUGUUSL, PUP.Tuguu.Bundler (M), PUP.Tuguu (M)
97.78%

Dr.Web
Adware.W3i.29, Tool.DownLoader.39, Tool.DownLoader.44, Trojan.Domaiq.268
11.11%

Sophos
DomainIQ pay-per install, PUA 'DomainIQ pay-per install', DomaIQ pay-per install (PUA)
11.11%

VIPRE Antivirus
DomaIQ, Threat.4783235
8.89%

G Data
Win32.Application.DomaIQ, NSIS.Application.DomalQ
6.67%

ESET NOD32
Win32/DomaIQ.A potentially unwanted application, MSIL/DomaIQ.AC potentially unwanted application, MSIL/DomaIQ.AB potentially unwanted application
6.67%

McAfee
Artemis!472E631B8B0C, Program.Artemis!EA1691D28F25
4.44%

K7 AntiVirus
Unwanted-Program
4.44%

avast!
Win32:DomaIQ-T [PUP]
4.44%

ESET NOD32
Win32/DomaIQ (variant), MSIL/DomaIQ.AC potentially unwanted (variant)
4.44%

IKARUS anti.virus
AdWare.Win32.DomaIQ
4.44%

AVG
Skodna.Generic, Adware Skodna.Generic.ACM
4.44%

Agnitum Outpost
PUA.DomaIQ
4.44%

Panda Antivirus
PUP/MultiToolbar.A
4.44%

AhnLab V3 Security
Win-PUP/DomaIQ.Gen
4.44%

The domain download.domaiq.com has been seen to resolve to the following IP address.

March 20, 2014

File downloads found at URLs served by download.domaiq.com.

1 / 68      (Adware)
http://download.domaiq.com/.../download.php  (driverdetectivesetup.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

10 / 68    (Adware)

1 / 68      (Adware)
http://download.domaiq.com/.../download.php?kk  (installer_for_drivers de sonido intel high definition 5.1.exe)

1 / 68      (Adware)

1 / 68      (Adware)

3 / 68      (Adware)