listfile5.com

REACTIVATION PERIOD

Domain Information

The domain listfile5.com registered by REACTIVATION PERIOD was initially registered in November of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Bellevue, Washington within the United States which resides on the Internap Network Services Corporation network.
Registrar:
ENOM, INC.

Server location:
Washington, United States (US)

Create date:
Wednesday, November 5, 2014

Expires date:
Thursday, November 5, 2015

Updated date:
Thursday, December 17, 2015

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.StartInstaller, Threat.Installer.StartInstaller, PUP.StartInstaller (M), PUP.InstallMetrix.StartInstaller (M), PUP.InstallMetrix.StartInstaller.Installer (M), PUP.InstallMetrix.StartIns (M), PUP.InstallMetrix.StartIns.Installer (M), PUP.InstallMetrix (M)
100.00%

Dr.Web
Trojan.Domaiq.110
38.10%

ESET NOD32
Win32/Adware.InstallMetrix.J application
38.10%

VIPRE Antivirus
Threat.4150696
38.10%

Sophos
PUA 'Install Metrix'
38.10%

Zillya! Antivirus
Adware.InstallMonster.Win32.42, Adware.InstallMetrix.Win32.8
38.10%

K7 AntiVirus
Adware
38.10%

NANO AntiVirus
Riskware.Win32.InstallMonster.dhazif, Trojan.Win32.Domaiq.dnndvs
38.10%

Comodo Security
Application.Win32.InstallCore.GOAA
38.10%

AVG
Adware Generic5.CHSX.dropper
38.10%

Avira AntiVirus
APPL/InstallMetr.aoa, W32/Sality.AG
35.71%

IKARUS anti.virus
PUA.InstallMetrix
35.71%

Clam AntiVirus
Win.Adware.Installmetrix-4, Win.Trojan.Installmetrix
35.71%

Agnitum Outpost
PUA.InstallMetrix
30.95%

Total Defense
Win32/Tnega.bfLSWRD
26.19%

The domain listfile5.com has been seen to resolve to the following IP address.

November 18, 2015

File downloads found at URLs served by listfile5.com.