gonload.me
WhoisGuard, Inc. (Proxy Registrant)
Domain Information
The domain gonload.me is registered by proxy through eNom Inc R32-ME (48) and was originally registered in October of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrant:
WhoisGuard, Inc.
Registrar:
eNom Inc R32-ME (48)
Server location:
Quebec, Canada (CA)
Create date:
Friday, October 24, 2014
Expires date:
Monday, October 24, 2016
Updated date:
Thursday, September 24, 2015
ASN:
AS16276 OVH OVH SAS,FR
Scanner detections:
Detections (94% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Midia Technologies.MIDIATEC.Bundler (M), PUP.Midia Technologies (M)
97.87%
Malwarebytes
Trojan.BHO
2.13%
NANO AntiVirus
Trojan.Nsis.Agent.djgzai
2.13%
Trend Micro House Call
TROJ_GEN.R021C0EKP14
2.13%
avast!
NSIS:Agent-KLT [Trj]
2.13%
Kaspersky
Trojan-Downloader.Win32.Genome
2.13%
VIPRE Antivirus
Trojan.Win32.Generic
2.13%
Trend Micro
TROJ_GEN.R021C0EKP14
2.13%
G Data
Win32.Trojan.Agent.S59V13
2.13%
McAfee
Artemis!0B80149F845D
2.13%
Baidu Antivirus
Trojan.Win32.Genome
2.13%
Fortinet FortiGate
W32/Agent.NRM!tr.dldr
2.13%
Panda Antivirus
Trj/Chgt.K
2.13%
The domain gonload.me has been seen to resolve to the following 5 IP addresses.
onlinemidia.com
November 2, 2014
File downloads found at URLs served by gonload.me.
Latest 30 of 107 download URLs
Subdomains
Web server:
nginx/1.0.15 (PHP/5.6.13)