readyset.theonlinelive.com

New Age Soft LTD

Domain Information

The domain readyset.theonlinelive.com registered by New Age Soft LTD was initially registered in January of 2015 through REGISTRAR OF DOMAIN NAMES REG.RU LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Moscow City, Russia (RU)

Create date:
Monday, January 26, 2015

Expires date:
Thursday, January 26, 2017

Updated date:
Wednesday, January 27, 2016

ASN:
AS197695 AS-REGRU _Domain names registrar REG.RU_, Ltd,RU

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore.Installer, PUP.installCore (M), PUP.installCore.OOODigitalZone.Installer (M), PUP.InstallCore.S (M), PUP.installCore.OOODigit.Installer (M), PUP.InstallCore (M), PUP.InstallCore.RES (M), PUP.InstallCore.Applicat.Installer.Meta (M)
89.47%

VIPRE Antivirus
Threat.4150696
21.05%

avast!
Trojan-gen, Malware-gen
15.79%

herdProtect (fuzzy)
a variant of 51f16b0a2d68cd96e8de0acfb13ddee983efcee6, a variant of 4c699595cb5efc427c8113c86a3778f30936e8ec, a variant of 3f8a76fbb8fe1a5b27246141c51a8f65c7cb5056
15.79%

ESET NOD32
Win32/InstallCore.YV potentially unwanted application, Win32/InstallCore.ZC potentially unwanted application
15.79%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.gen
15.79%

K7 AntiVirus
Adware , Unwanted-Program
10.53%

Comodo Security
Application.Win32.InstallCore.DGI, Application.Win32.InstallCore.DQT
10.53%

Dr.Web
Trojan.InstallCore.508, Trojan.InstallCore.639
10.53%

Baidu Antivirus
Adware.Win32.InstallCore
10.53%

ESET NOD32
Win32/InstallCore.ZC potentially unwanted (variant)
5.26%

Avira AntiVirus
W32/Sality.AT
5.26%

AVG
Adware InstallCore.AHA
5.26%

Malwarebytes
PUP.Optional.InstallCore.A
5.26%

Clam AntiVirus
Win.Trojan.Installcore-551
5.26%

The domain readyset.theonlinelive.com has been seen to resolve to the following 3 IP addresses.

April 17, 2016

February 26, 2016

May 6, 2015

File downloads found at URLs served by readyset.theonlinelive.com.

The following file have been seen to comunicate with readyset.theonlinelive.com in live environments.

URL:
http://readyset.theonlinelive.com/

Google Analytics:
UA-55552418

Title:
“Истёк срок регистрации доменаtheonlinelive.com”

Web server:
nginx

30 of 151 related domains