Download
Community
knowledgeBase
» www.free-gogo.com
Overview
Analysis
IPs Addresses (5)
Downloads (25)
Network (60)
www.free-gogo.com
Privacy Protection Service INC d/b/a PrivacyProtect.org (Proxy Registrant)
Domain Information
The domain www.free-gogo.com is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in August of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
Privacy Protection Service INC d/b/a PrivacyProtect.org
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM
Server location:
Virginia, United States (US)
Create date:
Tuesday, August 19, 2014
Expires date:
Friday, August 19, 2016
Updated date:
Tuesday, July 28, 2015
ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US
Root domain:
free-gogo.com
Whois:
1 free-gogo.com record
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Optional.Installer.I, Win32.Generic, PUP.YTD.Optional.Installer.Meta (L), PUP.installCore.ICSSetup.Installer (M), PUP.NewMedia.NMH.installCore.Installer (M), PUP.installCore (M), PUP.NewMedia.NMH (M)
100.00%
Qihoo 360 Security
Malware.QVM20.Gen, HEUR/Malware.QVM06.Gen
8.00%
Bkav FE
W32.HfsAdware
4.00%
McAfee
Artemis!8A5AE67E0CA6
4.00%
Malwarebytes
PUP.Optional.APNToolBar.A
4.00%
Dr.Web
Adware.Downware.10873
4.00%
Vba32 AntiVirus
Backdoor.Sinowal
4.00%
Baidu Antivirus
Adware.Win32.AskToolbar
4.00%
ESET NOD32
Win32/Bundled.Toolbar.Ask.G potentially unsafe (variant)
4.00%
IKARUS anti.virus
PUA.Offer
4.00%
Fortinet FortiGate
Riskware/Ask
4.00%
avast!
Win32:Adware-gen [Adw]
4.00%
G Data
Win32.Adware.Spigot
4.00%
Quick Heal
AdWare.MSIL.g6 (Not a Virus)
4.00%
K7 AntiVirus
Trojan
4.00%
IPs Addresses
The domain www.free-gogo.com has been seen to resolve to the following 5 IP addresses.
209.99.40.223
209-99-40-223.fwd.datafoundry.com
September 13, 2016
209.99.40.222
209-99-40-222.fwd.datafoundry.com
August 21, 2016
54.84.143.69
ec2-54-84-143-69.compute-1.amazonaws.com
March 2, 2016
52.7.132.182
ec2-52-7-132-182.compute-1.amazonaws.com
February 29, 2016
107.23.203.23
ec2-107-23-203-23.compute-1.amazonaws.com
January 29, 2016
Downloads
File downloads found at URLs served by www.free-gogo.com.
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlOvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNZi1AZiRATiRvm5EIKiWXzi3ATn1OTAyNja=&campaignId=9jn0ATC1OTndAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlOvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNZi1AZiRATiRvm5EIKiWXzLzATa1OTAyNja=&campaignId=9jn0ATCyNZiyAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlLvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjA1AZiRATiRvm5EIKiWXzg0NzM0OTAyNja=&campaignId=9jn0ATC0ATcwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLvSvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNTA1AZiRATiRvm5EIKiWXzM4ATM0OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlOvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNZi1AZiRATiRvm5EIKiWXzCyAja1OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVsavmNBDz1l QDjhTnmDZ0wvmNpDZ1fOTL1AZiRATiRvm5EIKiWXzgRNTn3OTAyNja=&campaignId=9jn0ATL4NjawAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLVTvmNBDz1l QDjhTnmDZ0wvmNpDZ1fOTA1AZiRATiRvm5EIKiWXzC4NTi0OTAyNja=&campaignId=9jn0AT7zNTA0AZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhL17vmNBDz1l QDjhTnmDZ0wvmNpDZ1fOZA1AZiRATiRvm5EIKiWXzAdOZA0OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhL17vmNBDz1l QDjhTnmDZ0wvmNpDZ1fOZA1AZiRATiRvm5EIKiWXzAdOZA0OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=cHaWck1F2rim2r0Wc32lDXiyvENyhKvEvmCWcyDEcmlChSDBDz1l QDj7z1vTQDj rcWDK4m7z0RvmiWAkDjIKiWXzLyNjiRAzn0ASDPDdlChV8dATCyOTMzATMz&campaignId=9jn0ATCzOZnwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=cHaWck1F2rim2r0Wc32lDXiyvENyhKvEvmCWcyDEcmlChSDBDz1l QDj7z1vTQDj rcWDK4m7z0RvmiWAkDjIKiWXzLyNjiRAzn0ASDPDdlChV8dATCyOTMzATMz&campaignId=9jn0AjM1NjCwAZMq
(ytdsetup.exe)
24 / 68 (PUP)
http://www.free-gogo.com/?dl=1&dr=cHaWck1F2rim2r0Wc32lDXiyvENyhKvEvmCWcyDEcmlChSDBDz1l QDj7z1vTQDj rcWDK4m7z0RvmiWAkDjIKiWXzLyNjiRAzn0ASDPDdlChV8dATCyOTMzATMz&campaignId=9jn0ATg1Njc0AZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLVTvmNBDz1l QDjhTnmDZ0wvmNpDZ1fOTA1AZiRATiRvm5EIKiWXzC4NTi0OTAyNja=&campaignId=9jn0AT71OZawAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVNHvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjL1AZiRATiRvm5EIKiWXzCdNTcdOTAyNja=&campaignId=9jn0AT7yAznwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVNHvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjL1AZiRATiRvm5EIKiWXzCdNTcdOTAyNja=&campaignId=9jn0AT7yAznwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVNHvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjL1AZiRATiRvm5EIKiWXzCdNTcdOTAyNja=&campaignId=9jn0AT7yAznwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVNHvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjL1AZiRATiRvm5EIKiWXzCdNTcdOTAyNja=&campaignId=9jn0AT7yAznwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhVNHvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNjL1AZiRATiRvm5EIKiWXzCdNTcdOTAyNja=&campaignId=9jn0AT7yAznwAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=cHaWck1F2rim2r0Wc32lDXiyvENyhKvEvmCWcyDEcmlChSDBDz1l QDj7z1vTQDj rcWDK4m7z0RvmiWAkDjIKiWXzLyNjiRAzn0ASDPDdlChV8dATCyOTMzATMz&campaignId=9jn0AjM4NzgdAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhL55vmNBDz1l QDjhTnmDZ0wvmNpDZ1fOZi1AZiRATiRvm5EIKiWXzczAZc1OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhL2kvmNBDz1l QDjhTnmDZ0wvmNpDZ1fAZi1AZiRATiRvm5EIKiWXznFNj70OTAyNja=&campaignId=9jn0ATL4AZ7yAZMq
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLVTvmNBDz1l QDjhTnmDZ0wvmNpDZ1fOTA1AZiRATiRvm5EIKiWXzc1Nji0OTAyNja=
(ytdsetup.exe)
1 / 68 (Adware)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlOvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNZi1AZiRATiRvm5EIKiWXza4Nzn1OTAyNja=
(ytdsetup.exe)
1 / 68 (PUP)
http://www.free-gogo.com/?dl=1&dr=cHaWck1F2rim2r0Wc32lDXiyvENyhKvEvmCWcyDEcmlChSDBDz1l QDj7z1vTQDj rcWDK4m7z0RvmiWAkDjIKiWXzLyNjiRAzn0ASDPDdlChV8dATCyOTMzATMz&campaignId=9jn0ATC4NTC4AZMq
(ytdsetup.exe)
2 / 68 (PUP)
http://www.free-gogo.com/?dl=1&dr=c3aW7mcm2r0Wc32lDXimcHaWck1F2rimIT1zvm2yIKiWvmREhKVuvmNjhLlOvmNBDz1l QDjhTnmDZ0wvmNpDZ1fNZi1AZiRATiRvm5EIKiWXzc0ATa1OTAyNja=&campaignId=9jn0ATCdNzi0AZMq
(ytdsetup.exe)
Network Communications
The following 60 files have been seen to comunicate with www.free-gogo.com in live environments.
TCP »
209.99.40.222
:80
UCBrowser.exe (by UCWeb)
TCP »
209.99.40.223
:80
UCBrowser.exe (by UCWeb)
TCP »
209.99.40.223
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.222
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.222
:80
ContentFinder.exe (ContentFinder by ContentFinder Software)
TCP »
209.99.40.222
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.222
:80
citrio.exe (Citrio by CatalinaGroup)
TCP »
209.99.40.222
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.222
:80
hkcmd.exe (Intel Common User Interface by Intel)
TCP »
209.99.40.222
:80
ContentFinder.exe (ContentFinder by DigitalSoftware Group)
TCP »
209.99.40.223
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.222
:80
jingling.exe
TCP »
209.99.40.222
:80
online-guardian-v2.0.9.exe
TCP »
209.99.40.223
:80
jingling.exe
TCP »
209.99.40.223
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.223
:443
UCBrowser.exe (UC Browser by UCWeb)
TCP »
209.99.40.223
:80
hkcmd.exe (Intel Common User Interface by Intel)
TCP »
209.99.40.222
:80
msn.exe
TCP »
209.99.40.222
:80
apptrailers.exe
TCP »
209.99.40.223
:80
online-guardian-v2.0.9.exe
Latest 20 of 86 files
X