newversionupdate.newvideolive.com

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain newversionupdate.newvideolive.com is registered by proxy through REGISTRAR OF DOMAIN NAMES REG.RU LLC and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Illinois, United States (US)

Create date:
Saturday, February 14, 2015

Expires date:
Sunday, February 14, 2016

Updated date:
Friday, March 25, 2016

ASN:
AS32475 SINGLEHOP-INC - SingleHop,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.installCore.Installer, PUP.installCore.OOOADVERTMOBAIL.Installer (M), PUP.installCore.OOOADVER.Installer (M)
100.00%

avast!
Malware-gen
50.00%

Dr.Web
Trojan.InstallCore.534
50.00%

ESET NOD32
Win32/InstallCore.ZC potentially unwanted application
50.00%

VIPRE Antivirus
Threat.4150696
50.00%

Comodo Security
Application.Win32.InstallCore.DFE
50.00%

herdProtect (fuzzy)
a variant of e4ed81f8f33aba826bdf22885be600e36ae6bcc5
25.00%

Malwarebytes
PUP.Optional.Bundle
25.00%

K7 AntiVirus
Adware
25.00%

AVG
Generic
25.00%

The domain newversionupdate.newvideolive.com has been seen to resolve to the following 2 IP addresses.

lb-212-247.above.com
May 27, 2016

usdedi1.cipo.me
May 6, 2015

File downloads found at URLs served by newversionupdate.newvideolive.com.

The following 11 files have been seen to comunicate with newversionupdate.newvideolive.com in live environments.

30 of 33 related domains