See: htxps://www.virustotal.com/file/e5cd283742e865180a4ea9efd1c1bb209ffcbac2776d6c37f60c49645e9dbfef/analysis/1339014118/
See: htxp://zulu.zscaler.com/submission/show/0b15119360aeefabc6e67697c910dcbf-1339014064
Go Daddy Secure Certicicate, see: htxp://anubis.iseclab.org/?action=result&task_id=15cb692f5605edb2465da080c5ef9874d
Also found on this domain: Win32/Obfuscated.NET trojan = toolbars/WhiteSmokeInstaller_9829.ex-
See: Checking:htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173
Engine version:7.0.2.4281
Total virus-finding records:2905040
File size:365.11 KB
File MD5:849356e3852080f987b01effd9a9d689
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173 - archive NSIS
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/script.bin - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/=9A=80\LangDLL.dll - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/=9A=80\NSISdl.dll - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/=9A=80\System.dll - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/=9A=80\InetLoad.dll - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/_=9A=80\Banner.dll - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/DomaIQ10.exe contains an intrusion tool Tool.DownLoader.32
hxtp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/Newtonsoft.Json.dll - Ok
hxtp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/doma.xml - Ok
htxp://download.domaiq.com/download.php/55/190/malwarebytes-anti-malware/24/173/icon.ico - Ok
reported to virus At avast dot com.
polonus