appch.gomlab.com

Gretech Corp.

Domain Information

The domain appch.gomlab.com registered by Gretech Corp. was initially registered in January of 2008 through GABIA, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Los Angeles, California within the United States which resides on the PSINet, Inc. network.
Remove Malware from appch.gomlab.com - Powered by Reason Core Security
Registrar:
GABIA, INC.

Server location:
California, United States (US)

Create date:
Tuesday, January 22, 2008

Expires date:
Thursday, January 22, 2015

Updated date:
Wednesday, November 20, 2013

ASN:
AS174 COGENT Cogent/PSI

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!D8222AF5FC6E
100.00%

Malwarebytes
PUP.Optional.OpenCandy
100.00%

NANO AntiVirus
Trojan.Win32.OpenCandy.cumkex
100.00%

Avira AntiVirus
Adware/OpenCandy.AD.12
100.00%

ESET NOD32
Win32/OpenCandy
100.00%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
100.00%

Reason Heuristics
PUP.Optional.Installer.T
100.00%

The domain appch.gomlab.com has been seen to resolve to the following 2 IP addresses.

April 16, 2014

April 16, 2014

File downloads found at URLs served by appch.gomlab.com.

7 / 68      (PUP)
http://appch.gomlab.com/cht/.../GOMPLAYERTWSETUP.EXE  (5b8e76e6c55daf36dc8a386f4f599a48)

URL:
http://appch.gomlab.com/

Google Analytics:
UA-3555958

Title:
“GOM”

SSL certificate subject:
CN=*.gomlab.com, OU=Development Team, O=Gretech Japan, L=Shinjuku, S=Tokyo, C=JP

SSL certificate issuer:
CN=Thawte SSL CA, O="Thawte, Inc.", C=US

Web server:
Apache (PHP/5.2.17)

Remove Malware from appch.gomlab.com - Powered by Reason Core Security