www.netgetitfor.me

WhoisGuard, Inc.  (Proxy Registrant)

Domain Information

The domain www.netgetitfor.me is registered by proxy through eNom Inc R32-ME (48) and was originally registered in September of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Beauharnois, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
eNom Inc R32-ME (48)

Server location:
Quebec, Canada (CA)

Create date:
Monday, September 1, 2014

Expires date:
Tuesday, September 1, 2015

Updated date:
Sunday, November 30, 2014

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.BR Software.Installer, PUP.BR Software.GENCOLABS.Installer (M), PUP.BR Software.GENCOLAB.Installer (M)
100.00%

Dr.Web
Trojan.Fraudster.1462
20.00%

VIPRE Antivirus
Threat.4785227
20.00%

ESET NOD32
NSIS/TrojanDownloader.Adload.AM trojan
20.00%

Sophos
PUA 'AdLoad' (of type Adware)
20.00%

Bkav FE
W32.HfsAdware
20.00%

Zillya! Antivirus
Trojan.Nurjax.Win32.1
20.00%

K7 AntiVirus
Unwanted-Program
20.00%

NANO AntiVirus
Trojan.Nsis.Fraudster.dqgtty
20.00%

Norman
Downloader
20.00%

avast!
Malware-gen
20.00%

Comodo Security
TrojWare.Win32.TrojanDownloader.Adload.ZQXT
20.00%

AhnLab V3 Security
PUP/Win32.Adload
20.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
20.00%

Fortinet FortiGate
Adware/AdloadAM
20.00%

The domain www.netgetitfor.me has been seen to resolve to the following IP address.

May 6, 2015

File downloads found at URLs served by www.netgetitfor.me.

URL:
http://www.netgetitfor.me/

Web server:
nginx/1.0.15