W3i, LLC

Publisher Information

W3i, LLC is a software publisher located in Sartell, Minnesota in the United States*. The company is a primary distributor of unwanted software. W3i (also known for Freeze.com) is the distributor of the InstallIQ (now InstallX) download and install manager, a distribution platform for adware and potentially unwanted programs such as toolbars, web browser plugins and other software. "Every product that is run through the InstallIQ manager is free. But, in order to make this happen, InstallIQ shows you advertisements during the installation process. Your support of these advertisements, which are all safe and free to download, helps poor, but brilliant, app developers make money from their free and awesome software." - (www.installiq.com) Thre are 2 additional code signing certificates issued to this publisher.
Remove W3i, LLC Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
6/18/2011 7:00:00 PM

Valid to:
7/1/2013 6:59:59 PM

Subject:
CN="W3i, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="W3i, LLC", L=Sartell, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6a5d73f262c38bbd4578ab6ad713318d

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallX.W3i.Installer (M), PUP.InstallX.W3i (M)
100.00%

Dr.Web
Adware.W3i.9, Adware.W3i.9, Adware.W3i.4, Trojan.Domaiq.225
50.00%

Avira AntiVirus
APPL/InstallIQ.Gen5, Adware/InstallC.B.1, PUA/InstallIQ.Gen5
50.00%

ESET NOD32
Win32/InstallIQ (variant), Win32/InstallIQ.A potentially unwanted (variant)
48.00%

VIPRE Antivirus
InstallIQ Installer, Trojan.Win32.Generic, Threat.4783689
46.00%

Sophos
InstallQ, PUA 'InstallQ', InstallQ (PUA)
44.00%

Trend Micro House Call
TROJ_FAKEAV.BMC, TROJ_GEN.F47V0122, TROJ_GEN.RCBH1KS, TROJ_GEN.F47V0207, TROJ_GEN.RCBH1HF, TROJ_GEN.R0CBH0AJA13, TROJ_FAKEAV.HLQ
44.00%

Fortinet FortiGate
Riskware/InstallIQ, Adware/InstallIQ
42.00%

Comodo Security
Application.Win32.InstallIQ.NTZK, UnclassifiedMalware
40.00%

Malwarebytes
PUP.Optional.InstallIQ.A
38.00%

1 / 68      (Adware)
3dpenguinsss.exe (InstallIQ Installation Utility by W3i)  (56e56112663af633a230b7a5dc4d3021)

31 / 68    (Adware)
waterscenes.exe (InstallIQ Installation Utility by W3i)  (f497b95e5a87a07615d58e2af20a9cdd)

1 / 68      (Adware)
abiword_1363.exe (InstallIQ Installation Utility by W3i)  (505d18f7374748bd4924b87d1c3f2fca)

34 / 68    (Adware)
jenkatarcade.exe (InstallIQ Installation Utility by W3i)  (99df6277c045ef3974f7fc2410e5d1fa)

13 / 68    (Adware)
filezilla_746.exe (InstallIQ Installation Utility by W3i)  (220efc77b587f9fbfb9ff07ddad7cd0a)

1 / 68      (Adware)
musicss.exe (InstallIQ Installation Utility by W3i)  (59f36a9e288d54e1fde9793c6e118134)

36 / 68    (Adware)
dolphin.exe (InstallIQ Installation Utility by W3i)  (8f2f04d1bf422ff8503fbc5abb6bc5f9)

27 / 68    (Adware)
libreoffice.exe (InstallIQ Installation Utility by W3i)  (b3e2dbd9ae8b96f0cbb803eb78b0ba6a)

12 / 68    (Adware)

1 / 68      (Adware)

20 / 68    (Adware)
tonethis_712.exe (InstallIQ Installation Utility by W3i)  (b95fcf26b907f3982a7d8c506002d089)

1 / 68      (Adware)
moonlight.exe (InstallIQ Installation Utility by W3i)  (c0f3ea36b5ff3bd9f7d01c7969ed0028)

1 / 68      (Adware)
marine2.exe (InstallIQ Installation Utility by W3i)  (ff70749b4d2fe616b5a444ced7f2a50a)

1 / 68      (Adware)
basketball-wallpaper.exe (InstallIQ by W3i)  (535935ad324e338c8336d57867b154c3)

1 / 68      (Adware)

13 / 68    (Adware)
wfallsaw.exe (InstallIQ Installation Utility by W3i)  (8c12b1f8a293fd3af24bef213934e95a)

8 / 68      (Adware)
3dfireplace2.exe (InstallIQ Installation Utility by W3i)  (bd94c619d35964f594397161cf440087)

27 / 68    (Adware)
tvshows_1175.exe (InstallIQ Installation Utility by W3i)  (dff5c79e71d31cae904f59c0e763e3bd)

20 / 68    (Adware)
expertpdf7.exe (InstallIQ Installation Utility by W3i)  (a28e8e36cff3b338d970db9b26c42e15)

31 / 68    (Adware)
tvshows.exe (InstallIQ Installation Utility by W3i)  (8b726704f1ef4e76f52fd50bb2e0127d)

10 / 68    (Adware)

25 / 68    (Adware)

1 / 68      (Adware)
ffdshow.exe (InstallIQ Installation Utility by W3i)  (8677a8720cc8a23b2417535375943b3e)

1 / 68      (Adware)

1 / 68      (Adware)

23 / 68    (Adware)
ac3filter.exe (InstallIQ Installation Utility by W3i)  (d3149abbdcb026b7165d3d571a3e6945)

34 / 68    (Adware)
jenkatarcade.exe (InstallIQ Installation Utility by W3i)  (a4d535d56bf98b1cc8362ec939407bf7)

17 / 68    (Adware)

30 / 68    (Adware)
frzfonts_1335.exe (InstallIQ Installation Utility by W3i)  (11c4ad2aefb2b82e6b4ed5bfbfe9c108)

40 / 68    (Adware)
marine2.exe (InstallIQ Installation Utility by W3i)  (854c1125ddae65d2917a62b6a07f3e84)

 
Latest 30 of 2,905 files

Downloads URLs for files signed by W3i, LLC.

25 / 68    (Adware)
http://dl5.iq7download.com/lm/.../freeopener_1942.exe  (31c17d53f5e180cf4dac8d9e78e684cc)

1 / 68      (Adware)
http://dl8.iq8download.com/lm/.../fbdownloader_1190.exe  (d7dc65561f8d671ee2f8ec37cc2db20b)

Top-level domains owned by W3i, LLC.

The certificates below are also signed by W3i, LLC.

7393AD65DF71BF83C8882420F2FE0A56  (May 18, 2009 to Jul 02, 2011)

391B1DE3FDF7D68124136D1483C16B21  (Jul 03, 2007 to Jul 03, 2009)

The following publishers (by Authenticode signature organization name) are related.

Remove W3i, LLC Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to W3i, LLC by VeriSign, Inc. on June 18, 2011 with the serial number '6a5d73f262c38bbd4578ab6ad713318d'.