pc4maintainance.theonlinelive.com

New Age Soft LTD

Domain Information

The domain pc4maintainance.theonlinelive.com registered by New Age Soft LTD was initially registered in January of 2015 through REGISTRAR OF DOMAIN NAMES REG.RU LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Create date:
Monday, January 26, 2015

Expires date:
Tuesday, January 26, 2016

Updated date:
Monday, March 7, 2016

ASN:
AS9498 BBIL-AP BHARTI Airtel Ltd.,IN

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Bundler.ProfitServis, PUP.ProfitServis.OOOPREMERSERVIS.Bundler (M), PUP.InstallCore.Internet.Installer.Meta (M), PUP.ProfitServis.OOOPREME.Bundler (M), PUP.ProfitServis (M)
100.00%

Dr.Web
Trojan.InstallCore.56
70.00%

Avira AntiVirus
ADWARE/InstallCore.Gen, ADWARE/InstallCore.Gen4, PUA/InstallCore.776200
70.00%

K7 AntiVirus
Riskware , Unwanted-Program , Adware
70.00%

AVG
Generic
70.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
70.00%

avast!
Rootkit-gen [Rtk], Trojan-gen, Win32:Rootkit-gen [Rtk]
70.00%

NANO AntiVirus
Riskware.Win32.InstallCore.dotkhj, Riskware.Win32.InstallCore.dnxklk, Riskware.Win32.InstallCore.dotkgr
60.00%

Bkav FE
W32.HfsAdware
60.00%

Comodo Security
Application.Win32.InstallCore.DQR, Application.Win32.InstallCore.DSR, Application.Win32.InstallCore.DQC
60.00%

ESET NOD32
Win32/InstallCore.WV potentially unwanted application, Win32/InstallCore.UN potentially unwanted application
50.00%

Agnitum Outpost
PUA.InstallCore
50.00%

McAfee
Trojan.Artemis!E105E070CF23, Artemis!1FF2C0F223EF
50.00%

Malwarebytes
PUP.Optional.InstallCore.A
50.00%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.gen
50.00%

The domain pc4maintainance.theonlinelive.com has been seen to resolve to the following 2 IP addresses.

February 26, 2016

ReasonOne
March 19, 2015

File downloads found at URLs served by pc4maintainance.theonlinelive.com.