www.gomplayer.tw

Domain Information

Remove Malware from www.gomplayer.tw - Powered by Reason Core Security
Server location:
Washington, United States (US)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!2E80A54680BB, Artemis!D8222AF5FC6E
100.00%

Malwarebytes
PUP.Optional.OpenCandy
100.00%

Avira AntiVirus
Adware/OpenCandy.AD.12
100.00%

ESET NOD32
Win32/OpenCandy
100.00%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
100.00%

Reason Heuristics
PUP.Optional.Installer.GRETECH.Q, PUP.Optional.Installer.T
100.00%

Trend Micro House Call
TROJ_GEN.F47V1225
50.00%

McAfee Web Gateway
Artemis!2E80A54680BB
50.00%

NANO AntiVirus
Trojan.Win32.OpenCandy.cumkex
50.00%

The domain www.gomplayer.tw has been seen to resolve to the following 10 IP addresses.

server-54-230-39-12.jfk1.r.cloudfront.net
May 5, 2015

server-54-230-38-123.jfk1.r.cloudfront.net
May 5, 2015

server-54-230-38-100.jfk1.r.cloudfront.net
May 5, 2015

server-54-230-38-102.jfk1.r.cloudfront.net
May 5, 2015

server-54-230-38-101.jfk1.r.cloudfront.net
May 5, 2015

server-54-230-37-173.jfk1.r.cloudfront.net
May 5, 2015

May 5, 2015

server-54-230-39-207.jfk1.r.cloudfront.net
May 5, 2015

April 16, 2014

April 16, 2014

File downloads found at URLs served by www.gomplayer.tw.

8 / 68      (PUP)
http://www.gomplayer.tw/.../GOMPLAYERTWSETUP.EXE  (2e80a54680bb971a70aecbe332bbe202)

7 / 68      (PUP)
http://www.gomplayer.tw/.../GOMPLAYERTWSETUP.EXE  (5b8e76e6c55daf36dc8a386f4f599a48)

The following 5 files have been seen to comunicate with www.gomplayer.tw in live environments.

Remove Malware from www.gomplayer.tw - Powered by Reason Core Security