www.freembtc.net

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain www.freembtc.net is registered by proxy through ENOM, INC. and was originally registered in September of 2015. Currently this domain has been known to host various forms of malware. The hosted servers are located in Austin, Texas within the United States which resides on the Incero LLC network.
Registrar:
ENOM, INC.

Server location:
Texas, United States (US)

Create date:
Sunday, September 27, 2015

Expires date:
Tuesday, September 27, 2016

Updated date:
Sunday, September 27, 2015

ASN:
AS54540 INCERO - Incero LLC,US

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Kaspersky
UDS:DangerousObject.Multi.Generic
100.00%

Rising Antivirus
PE:Malware.RDM.39!5.2D[F1]
100.00%

Avira AntiVirus
TR/Dldr.Agent.382976.7
100.00%

ESET NOD32
MSIL/TrojanDownloader.Banload.EV (variant), MSIL/TrojanDownloader.Banload.EU (variant)
100.00%

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
100.00%

MicroWorld eScan
Trojan.GenericKD.2761270
50.00%

nProtect
Trojan.GenericKD.2761270
50.00%

Bitdefender
Trojan.GenericKD.2761270
50.00%

K7 AntiVirus
Trojan-Downloader
50.00%

avast!
MSIL:Banker-DO [Trj]
50.00%

Lavasoft Ad-Aware
Trojan.GenericKD.2761270
50.00%

Sophos
Mal/Generic-S
50.00%

F-Secure
Trojan.GenericKD.2761270
50.00%

VIPRE Antivirus
Trojan.Win32.Generic
50.00%

Emsisoft Anti-Malware
Trojan.GenericKD.2761270
50.00%

The domain www.freembtc.net has been seen to resolve to the following IP address.

October 6, 2015

File downloads found at URLs served by www.freembtc.net.

22 / 68    (Malware)
http://www.freembtc.net/link.php  (flashplayer_update.exe)

5 / 68      (Malware)
http://www.freembtc.net/link.php  (flashplayer_update.exe)

URL:
http://www.freembtc.net/

Google Analytics:
UA-67515777

Title:
“Apache2 Ubuntu Default Page: It works”

Web server:
Apache