update.pluginupdate.net

New Age Soft LTD

Domain Information

The domain update.pluginupdate.net registered by New Age Soft LTD was initially registered in January of 2015 through REGISTRAR OF DOMAIN NAMES REG.RU LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Manassas, Virginia within the United States which resides on the Leaseweb USA, Inc. network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Virginia, United States (US)

Create date:
Tuesday, January 20, 2015

Expires date:
Friday, January 20, 2017

Updated date:
Thursday, January 21, 2016

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Outbrowse, PUP.Installer.StartNOW, PUP.Outbrowse.CLICKyes.Bundler (M), PUP.Outbrowse.Outborwse.Installer (M), PUP.Coinis.installCore.Installer (M), PUP.InstallCore.FC.Installer (M)
100.00%

ESET NOD32
Win32/OutBrowse.BS potentially unwanted application, Win32/OutBrowse.BU potentially unwanted application, Win32/InstallCore.UN potentially unwanted application
70.00%

Avira AntiVirus
APPL/Downloader.Gen, PUA/InstallCore.Gen4
70.00%

AVG
Downloader, Generic
70.00%

K7 AntiVirus
Trojan , DoS-Trojan
60.00%

NANO AntiVirus
Trojan.Win32.OutBrowse.dmxjlz, Trojan.Nsis.OutBrowse.dnorma, Riskware.Win32.InstallCore.djedzg
60.00%

Trend Micro House Call
Suspici.1DA846D1, Suspici.6AAF7647
60.00%

AhnLab V3 Security
PUP/Win32.OutBrowse
60.00%

McAfee
Adware-OutBrowse.e, Program.Adware-OutBrowse.e
60.00%

IKARUS anti.virus
PUA.OutBrowse
40.00%

Kaspersky
not-a-virus:Downloader.NSIS.OutBrowse
40.00%

F-Secure
Gen:Variant.Zusy.120679, Riskware.Application.Bundler.SoftPulse
20.00%

VIPRE Antivirus
Threat.4823950, Threat.4150696
20.00%

Comodo Security
Application.Win32.AltBrowse.HY, Application.Win32.InstallCore.DSG
20.00%

Vba32 AntiVirus
Downloader.OutBrowse, Malware-Cryptor.InstallCore.gen
20.00%

The domain update.pluginupdate.net has been seen to resolve to the following IP address.

February 12, 2015

File downloads found at URLs served by update.pluginupdate.net.