load.qloadload.com

Chastnoe litso

Domain Information

The domain load.qloadload.com registered by Chastnoe litso was initially registered in November of 2013 through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Monday, November 25, 2013

Expires date:
Wednesday, November 25, 2015

Updated date:
Wednesday, November 19, 2014

ASN:
AS16265 LEASEWEB-NETWORK LeaseWeb B.V.,NL

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.iDatixCorporation.L, PUP.iDatixCorporation.Y
100.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.151018, Gen:Variant.Adware.Strictor.58276
100.00%

VIPRE Antivirus
Threat.4150696
100.00%

ESET NOD32
Win32/AdWare.Toolbar.Webalta.GO application
100.00%

Dr.Web
Adware.Downware.1172, Adware.Downware.1666, Trojan.Packed.28612
100.00%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw]
100.00%

AVG
Could be an adware AdLoad
100.00%

MicroWorld eScan
Gen:Variant.Adware.Graftor.151018, Gen:Variant.Zusy.108226
100.00%

Malwarebytes
PUP.Optional.WebAltaTB
100.00%

K7 AntiVirus
Adware
100.00%

NANO AntiVirus
Riskware.Win32.Webalt.ddwkud, Riskware.Win32.Downware.ddimqr
100.00%

Kaspersky
not-a-virus:Downloader.Win32.Delf
100.00%

Bitdefender
Gen:Variant.Adware.Graftor.151018, Gen:Variant.Zusy.108226
100.00%

Agnitum Outpost
PUA.Toolbar
100.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.151018, Gen:Variant.Zusy.108226
100.00%

The domain load.qloadload.com has been seen to resolve to the following IP address.

hosted-by.leaseweb.com
December 2, 2014

File downloads found at URLs served by load.qloadload.com.

URL:
http://load.qloadload.com/

Title:
“qloadload.com — Coming Soon”

Description:
“This is a default index page for a new domain.”

Web server:
nginx