www.mp3rocket.com

MP3 Rocket Inc

Domain Information

The domain www.mp3rocket.com registered by MP3 Rocket Inc was initially registered in June of 2003 through REGIONAL NETWORK INFORMATION CENTER, JSC DBA RU-CENTER. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the Netelligent Hosting Services Inc. network.
Registrar:
REGIONAL NETWORK INFORMATION CENTER, JSC DBA RU-CENTER

Server location:
Quebec, Canada (CA)

Create date:
Tuesday, June 10, 2003

Expires date:
Thursday, June 10, 2021

Updated date:
Thursday, February 16, 2012

ASN:
AS10929 NETELLIGENT - Netelligent Hosting Services Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MP3Support.P, PUP.MP3Support.N, PUP.MP3Support.J, Win32.Generic.Installer.SCCE.Meta, Win32.Generic.SCCE.Installer.Meta, PUP.installCore.MP3TechSupport.Installer (M), PUP.installCore.MP3TechS.Installer (M)
100.00%

ESET NOD32
Win32/OpenCandy, Win32/Kryptik.BVVE (variant), Win32/Bundled.Toolbar.Ask (variant), Win32/OpenCandy.A potentially unsafe (variant)
87.50%

Dr.Web
Adware.Downware.1417, Trojan.MulDrop5.10078, Adware.OpenCandy.144, Adware.OpenCandy.155, Adware.OpenCandy.163, Adware.OpenCandy.171
81.25%

VIPRE Antivirus
Opencandy, Trojan.Win32.Generic
68.75%

Fortinet FortiGate
W32/Kryptik.BVVE!tr, Riskware/OpenCandy
68.75%

Baidu Antivirus
Adware.Win32.OpenCandy
68.75%

Trend Micro House Call
TROJ_GEN.F47V1214, TROJ_GEN.F47V0324, Suspicious_GEN.F47V0427, Suspicious_GEN.F47V0413, Suspicious_GEN.F47V0418
62.50%

Zillya! Antivirus
Downloader.Agent.Win32.248040, Downloader.Agent.Win32.260269, Trojan.Kryptik.Win32.805012
62.50%

K7 AntiVirus
Unwanted-Program
62.50%

McAfee
Artemis!4D68E3F49A97, Artemis!6A8CE2A97254, Artemis!09672008FF00, Artemis!087198B1243C, Artemis!03401FFC6A8D
56.25%

Agnitum Outpost
Trojan.Kryptik, Riskware.Agent
56.25%

AVG
Generic
56.25%

Bkav FE
W32.HfsAdware
50.00%

Kaspersky
not-a-virus:Downloader.Win32.Agent
50.00%

Sophos
Generic PUA JB
50.00%

The domain www.mp3rocket.com has been seen to resolve to the following 5 IP addresses.

February 20, 2016

December 22, 2015

April 16, 2014

April 16, 2014

mail.mp3rocket.me
April 16, 2014

File downloads found at URLs served by www.mp3rocket.com.

21 / 68    (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (a2197b373abb04c36033e63f9531eede)

21 / 68    (Adware)
http://www.mp3rocket.com/.../mp3rocket.exe  (6c468a0c5c602456b783fc1282f48e06)

4 / 68      (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (1d20dc4fef86928454a652e6a2371a55)

1 / 68      (Adware)

19 / 68    (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (6a8ce2a9725447d6f53c86084773fbe7)

11 / 68    (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (2ffd4d15370fae3f5ae7f92735661a1a)

19 / 68    (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (09672008ff00a56471d5c5f6263a288d)

21 / 68    (Adware)
http://www.mp3rocket.com/.../mp3rocket.exe  (d6ffadd18894e8b4eacf27171af60c62)

20 / 68    (Adware)
http://www.mp3rocket.com/.../mp3rocket.exe  (9b027dba43e76602c185ed5de15e84dc)

21 / 68    (Adware)
http://www.mp3rocket.com/.../mp3rocket.exe  (0f74dbca0b8bddf3efa908c4bdeb696a)

21 / 68    (Adware)
http://www.mp3rocket.com/.../mp3rocket.exe  (ce5c76214ca70b97e46c911ca54eac0a)

10 / 68    (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (89727d57603d9b16ce24d0d4ea741143)

3 / 68      (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (8b48bb66f006021422fe73f82b71d063)

2 / 68      (PUP)
http://www.mp3rocket.com/.../mp3rocket.exe  (68aed7c48411a20f5416a33e89ed478c)

8 / 68      (PUP)

8 / 68      (PUP)

URL:
http://www.mp3rocket.com/

Title:
“MP3 Rocket Download YouTube to mp3 conversion done right”

Description:
“MP3 Rocket is dedicated to collecting the most popular music, videos, and MP3s. The best top music :) Home”

Web server:
Apache/2.4.18 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4

Facebook:
Likes:  13,041
Shares:  118,351
Comments:  8,577

Statistics are for the previous month.