testpc24.theonlinelive.com

New Age Soft LTD

Domain Information

The domain testpc24.theonlinelive.com registered by New Age Soft LTD was initially registered in January of 2015 through REGISTRAR OF DOMAIN NAMES REG.RU LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Illinois, United States (US)

Create date:
Monday, January 26, 2015

Expires date:
Thursday, January 26, 2017

Updated date:
Wednesday, January 27, 2016

ASN:
AS32475 SINGLEHOP-INC - SingleHop,US

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallCore.Bundler (M), PUP.installCore.OOODigitalZone.Installer (M), PUP.installCore (M), PUP.InstallCore (M), PUP.InstallCore.ApplicationSoftware.Installer.Meta (M), PUP.InstallCore.RES (M), PUP.InstallCore.Applicat.Installer.Meta (M), PUP.installCore.OOODigit.Installer (M)
92.00%

VIPRE Antivirus
Threat.4150696
16.00%

ESET NOD32
Win32/InstallCore.ZC potentially unwanted application
16.00%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.gen
16.00%

K7 AntiVirus
Adware , Unwanted-Program
12.00%

avast!
Malware-gen
12.00%

AVG
Adware InstallCore.AGG, Adware InstallCore.AHA
8.00%

Malwarebytes
PUP.Optional.InstallCore.A
8.00%

Baidu Antivirus
Adware.Win32.InstallCore
8.00%

Fortinet FortiGate
Riskware/InstallCore
8.00%

Comodo Security
Application.Win32.InstallCore.DGI, Application.Win32.InstallCore.DQT
8.00%

Clam AntiVirus
Win.Trojan.Installcore-551
4.00%

NANO AntiVirus
Riskware.Win32.InstallCore.drfvuv
4.00%

Zillya! Antivirus
Adware.MultiPlug.Win32.499175
4.00%

AhnLab V3 Security
PUP/Win32.InstallCore
4.00%

The domain testpc24.theonlinelive.com has been seen to resolve to the following 4 IP addresses.

April 17, 2016

February 29, 2016

February 16, 2016

usdedi1.cipo.me
June 30, 2015

File downloads found at URLs served by testpc24.theonlinelive.com.

The following file have been seen to comunicate with testpc24.theonlinelive.com in live environments.

URL:
http://testpc24.theonlinelive.com/

Google Analytics:
UA-55552418

Title:
“Истёк срок регистрации доменаtheonlinelive.com”

Web server:
nginx

30 of 151 related domains