myfreedownloadsnow.com

PROTECTSERVICE, LTD.

Domain Information

The domain myfreedownloadsnow.com registered by PROTECTSERVICE, LTD. was initially registered in May of 2014 through EVOPLUS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Riga, Riga within Latvia which resides on the RIPE Network Coordination Centre network.
Registrar:
EVOPLUS LTD

Server location:
Riga, Latvia (LV)

Create date:
Sunday, May 18, 2014

Expires date:
Thursday, May 18, 2017

Updated date:
Thursday, October 1, 2015

ASN:
AS56617 ASVPSHOSTING SIA _VPS Hosting_,LV

Google Safe Browsing:
malware,unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.KOMPANIYAR.d, PUP.Installer.KOMPANIYAR.j, PUP.Installer.KOMPANIYAR.CC, PUP.Installer.KOMPANIYAR.AA, PUP.Installer.Wilmaonline.k, (M), Threat.Win.Reputation.IMP
100.00%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
91.67%

ESET NOD32
Win32/Amonetize.BG (variant), Win32/Amonetize.BI (variant), Win32/Amonetize.BK (variant), Win32/Amonetize.BM (variant), Win32/Amonetize.BN (variant)
91.67%

AVG
Generic_r, Downloader.Generic14
83.33%

McAfee
Artemis!26B7076D0D0C, Artemis!DC01BCB8D8CA, Artemis!B5DC53227B0C, Artemis!EC0A55B83EF0, Artemis!8AB7F2FC9976, Artemis!435BCED10BAC, PUP-Amonetize, PUP-FQT, Artemis!6ED3A0646201, Artemis!3C63DFDEBDD0, Artemis!EA6EC4D9429A, Artemis!0AA4A9D3F32E, Artemis!F4C880259377, Artemis!F23EBE58EE48
79.17%

Avira AntiVirus
APPL/Amonetize.Z, ADWARE/Adware.Gen, ADWARE/Adware.Gen2, APPL/Amonetize.htzw, APPL/Amonetize.htzv, Adware/Amonetize.tzv
79.17%

G Data
Win32.Application.Amonetize, Application.Bundler.Amonetize, Gen:Variant.Application.Bundler.Amonetize.11, Gen:Variant.Application.Bundler.Amonetize.12
77.08%

Sophos
Generic PUA DP, Generic PUA MN, Generic PUA IF, Generic PUA OM, Generic PUA HN, Generic PUA OJ, Generic PUA HJ, Generic PUA ID
68.75%

Malwarebytes
PUP.Optional.Amonetize, PUP.Optional.Downloader, PUP.Optional.SVBun, Trojan.Downloader.Agent, PUP.Optional.Amonetize.A
66.67%

Bitdefender
Application.Bundler.Amonetize.N, Gen:Variant.Application.Bundler.Amonetize.11, Gen:Variant.Application.Bundler.Amonetize.12
64.58%

Qihoo 360 Security
Win32/Application.bcb, Win32/Application.c7d, Win32/Virus.Adware.e09, HEUR/Malware.QVM10.Gen, Win32/Application.0f2, HEUR/QVM10.1.Malware.Gen
64.58%

MicroWorld eScan
Application.Bundler.Amonetize.N, Gen:Variant.Application.Bundler.Amonetize.11, Gen:Variant.Application.Bundler.Amonetize.12, Gen:Variant.Adware.Strictor.68509, Gen:Variant.Application.Jaik.4831, Gen:Variant.Graftor.166062, Application.Bundler.Amonetize.AO
62.50%

Baidu Antivirus
Adware.Win32.Amonetize, PUA.Win32.Amonetize
60.42%

F-Secure
Application.Bundler.Amonetize, Gen:Variant.Application.Bundler, Gen:Variant.Application.Jaik, Gen:Variant.Adware.Strictor.68509
58.33%

Dr.Web
Adware.Downware.5717, Adware.Downware.5913, Adware.Downware.7374, Adware.Bundle.5, Adware.Downware.8012, Adware.Downware.8379, Trojan.Amonetize.341
56.25%

The domain myfreedownloadsnow.com has been seen to resolve to the following IP address.

d3630.core-vps.lv
August 7, 2014

File downloads found at URLs served by myfreedownloadsnow.com.

1 / 68      (Malware)
http://myfreedownloadsnow.com/download_direct.php?id=1592&name=file381112  (file381112 downloader__3687_i1438668060_il1722935.exe)

18 / 68    (Adware)

9 / 68      (Adware)

30 / 68    (Adware)

1 / 68      (Malware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=Cops_s_21_e_20_p1-1.avi  (cops s 21 e 20 p1 1 avi downloader__3687_i1421932406_il794853.exe)

21 / 68    (Adware)

14 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=24-_Redemption.flv  (wifi password hack v2.1 2014__5160_i1416989113_il225.exe)

18 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=Hellraiser__Inferno_p1-1.avi  (driverpack solution 2014 14.8 r418 türkçe full tek link indir__6666_i1171090396_il55469.exe)

16 / 68    (Adware)

17 / 68    (Adware)

13 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=235&name=Dragon Age: Inquisition Key Generator  (the night stalker the life an downloader__3687_i1414341288_il1189756.exe)

16 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=The_Beautiful_Life_TBL_s_1_e_1_p1-1.flv  (dragonfable trainer hack downloader__3687_i1157290778_il388675.exe)

26 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=2370&name=setup  (microsoftoffice2013proplusx86x64fullserialkey,licensefreedownload__11057_il1437.exe)

16 / 68    (Adware)

19 / 68    (Adware)

17 / 68    (Adware)

7 / 68      (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1100&name=Dragon_Age_Inquisition_Crack_CD_Key  (helixstudios account generator downloader__3687_i1422762726_il1072965.exe)

18 / 68    (Adware)

20 / 68    (Adware)

10 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1208&name=League Of Legends Riot Points Generator  (heroes and generals hack october 2014 no survey no password__10967_i1436325746_il311680.exe)

29 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=Star_Wars__The_Clone_Wars_s_2_e_14_p1-1.avi  (dragon age inquisition key ge downloader__3687_i1417080908_il596008.exe)

19 / 68    (Adware)
http://myfreedownloadsnow.com/download_direct.php?id=1813&name=Project_Runway_s_9_e_0_p1-1.avi  (windows loader v2.2.1 by daz__5160_i1208107063_il6044.exe)

 
Latest 30 of 59 download URLs

URL:
http://myfreedownloadsnow.com/

Title:
“Media Search”

Web server:
nginx/1.8.0 (PHP/5.3.3)