t.go-for-files.com

Whois Privacy Corp.

Domain Information

The domain t.go-for-files.com registered by Whois Privacy Corp. was initially registered in October of 2013 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Tuesday, October 8, 2013

Expires date:
Saturday, October 8, 2016

Updated date:
Sunday, December 13, 2015

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Via Advertising.RighwayT.Bundler (M), Threat.Win.Reputation.IMP, PUP.Via Advertising.Technolo.Bundler (M), PUP.Via Advertising (M)
100.00%

The domain t.go-for-files.com has been seen to resolve to the following 4 IP addresses.

199.195.196.180.static.midphase.com
October 13, 2015

October 9, 2014

mail.goforfiles.com
May 23, 2014

December 18, 2013

File downloads found at URLs served by t.go-for-files.com.

1 / 68      (Adware)
http://t.go-for-files.com/.../ynipIr5wKSuHGVQLGjgZfgMBbC9A=  (live_ptv_sports_streaming_downloader.exe)

1 / 68      (Adware)
http://t.go-for-files.com/j5GrWHWbvVNnwL4UfdCwNyXV/.../59Ow==  (now_thats_what_i_call_music_86_downloader.exe)

1 / 68      (Adware)
http://t.go-for-files.com/.../q84QV7yIPA2kgnRat50QRanTE0HdyFgO3MVbDtEyQhifcBU1nWAfe8U4T2yPfOoqwSG2Yg==  (aleksander_solzenicyn_archipelag_gulag_po_polsku_downloader.exe)

1 / 68      (Adware)
http://t.go-for-files.com/.../dzng==  (autocad-civil-3d-drawings_downloader.exe)

1 / 68      (Adware)
http://t.go-for-files.com/.../ynipIr5wKSuHEUQrGjgZfgMBbC9s=  (10_auto_models_for_3dsmax_downloader.exe)

 
Latest 30 of 412 download URLs

The following 19 files have been seen to comunicate with t.go-for-files.com in live environments.

30 of 32 related domains