loadfor.me

WhoisGuard, Inc.  (Proxy Registrant)

Domain Information

The domain loadfor.me is registered by proxy through eNom Inc R32-ME (48) and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
eNom Inc R32-ME (48)

Server location:
Quebec, Canada (CA)

Create date:
Monday, December 8, 2014

Expires date:
Thursday, December 8, 2016

Updated date:
Sunday, November 8, 2015

ASN:
AS16276 OVH OVH SAS,FR

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Midia Technologies.MIDIATEC.Bundler (M), PUP.BR Software.GENCOLAB.Installer (M), PUP.MINDSTOR.Installer (M), PUP (M), PUP.Midia Technologies (M), PUP.BR Software (M)
100.00%

Malwarebytes
Trojan.BHO
2.00%

NANO AntiVirus
Trojan.Nsis.Genome.djhbgi
2.00%

Trend Micro House Call
Suspicious_GEN.F47V0125
2.00%

avast!
Win32:Adware-CHE [Adw]
2.00%

Kaspersky
Trojan-Downloader.Win32.Genome
2.00%

VIPRE Antivirus
Trojan.Win32.Generic
2.00%

Avira AntiVirus
TR/Dldr.Megone.49057
2.00%

McAfee
RDN/Generic Downloader.x!mn
2.00%

Baidu Antivirus
Trojan.Win32.Genome
2.00%

ESET NOD32
NSIS/TrojanDownloader.Agent.NRY
2.00%

Panda Antivirus
Generic Suspicious
2.00%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen
2.00%

The domain loadfor.me has been seen to resolve to the following 3 IP addresses.

February 1, 2016

October 1, 2015

onlinemidia.com
January 13, 2015

File downloads found at URLs served by loadfor.me.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Baixar Jogo Metal Gear Solid V: Ground Zeroes – PC.exe  (baixar jogo metal gear solid v- ground zeroes pc.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Penapolense- Ao Vivo.exe  (5b9df616c2a0a0c3925812dc5a91ce74)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Coletânea Conexão do Funk – O Som das Periferias 2012.exe  (coletnea conexo do funk o som das periferias 2012.exe)

1 / 68      (Adware)
http://loadfor.me/ids/.../FUNK MIX 2011.exe  (4098e697fcccbd16737da52dbf5db089)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Circumstance.exe  (127dfca37a70a571dc1b26f376c5c420)

1 / 68      (Adware)

13 / 68    (PUP)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Tusk.exe  (aab36ad3ba8a9fb4d502ee63973efb0d)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../Rio 2 2014 Dublado.exe  (ed5e4a1b3e9296a40cfe520c09a0dc84)

1 / 68      (Adware)
http://loadfor.me/ids/.../Super Pack Nação Brasfoot 2.0 Mais de 3.600 Equipes !.exe  (super pack nao brasfoot 2.0 mais de 3.600 equipes !.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://loadfor.me/ids/.../PHANTOM BIOS HD ATUALIZAÇÃO NOVEMBRO 2014.exe  (phantom bios hd atualizao novembro 2014.exe)

 
Latest 30 of 161 download URLs

January 13, 2015

URL:
http://loadfor.me/

Title:
“Em manutencao”

Web server:
nginx/1.0.15 (PHP/5.6.13)