getgsafe.me
WhoisGuard, Inc. (Proxy Registrant)
Domain Information
The domain getgsafe.me is registered by proxy through eNom Inc R32-ME (48) and was originally registered in October of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Reykjavik, Hofuoborgarsvaoio within IS which resides on the RIPE Network Coordination Centre network.
Registrant:
WhoisGuard, Inc.
Registrar:
eNom Inc R32-ME (48)
Server location:
Hofuoborgarsvaoio, IS (IS)
Create date:
Wednesday, October 22, 2014
Expires date:
Saturday, October 22, 2016
Updated date:
Tuesday, September 22, 2015
ASN:
AS50613 THORDC-AS THOR Data Center ehf,IS
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.BR Software, Threat.BR Software.Installer, PUP.BR Software.GENCOLABS.Installer (M), PUP.BR Software.GENCOLAB.Installer (M), PUP.BR Software (M)
100.00%
McAfee
Artemis!B6F079BE1209, Artemis!4806D862A6C3
8.70%
F-Prot
W32/A-07794f8f
8.70%
Trend Micro House Call
Suspicious_GEN.F47V1116, Suspicious_GEN.F47V1216
8.70%
VIPRE Antivirus
Trojan.Win32.Generic
4.35%
Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
4.35%
MicroWorld eScan
Trojan.Generic.12366387
4.35%
NANO AntiVirus
Trojan.Win32.Triosir.dgibtv
4.35%
avast!
Win32:Malware-gen
4.35%
Bitdefender
Trojan.Generic.12366387
4.35%
Lavasoft Ad-Aware
Trojan.Generic.12366387
4.35%
F-Secure
Trojan.Generic.12366387
4.35%
The domain getgsafe.me has been seen to resolve to the following 2 IP addresses.
File downloads found at URLs served by getgsafe.me.
Related Domains