download.forfreeminecraft.com

Whois Privacy Corp.

Domain Information

The domain download.forfreeminecraft.com registered by Whois Privacy Corp. was initially registered in May of 2013 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the Cogswell Enterprises Inc. network.
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Illinois, United States (US)

Create date:
Wednesday, May 01, 2013

Expires date:
Monday, May 01, 2017

Updated date:
Tuesday, April 05, 2016

ASN:
AS19066 WIREDTREE - Cogswell Enterprises Inc.

Google Safe Browsing:
malware

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize, PUP.Optional.Amonetize.A, PUP.Optional.Downloader
97.37%

ESET NOD32
Win32/Amonetize.AA (variant), Win32/Amonetize.AD (variant), Win32/Amonetize.AG (variant), Win32/Amonetize.AI (variant), Win32/Amonetize.AJ (variant)
94.74%

Reason Heuristics
PUP.Installer.Amonetizeltd.O, PUP.Installer.Amonetizeltd.d, PUP.Installer.Amonetizeltd.AA, PUP.Installer.Amonetizeltd.Y, PUP.Installer.ShetefSolutionsConsulting1998.n
92.11%

VIPRE Antivirus
Amonetize, Trojan.Win32.Generic
84.21%

McAfee
Artemis!577A16D372DC, Artemis!07ACD8BF8EAC, Artemis!80228DBE0E81, Artemis!8BD496B8564F, Artemis!43FAAEE39B14, Artemis!C3B43106B5F0, Adware-Amonetize!4C9E62787C6A, Adware-Amonetize!822B883C5AD6, Adware-Amonetize!806486D56A37, Adware-Amonetize!5AEC0313A736, Adware-Amonetize!C5A1A30C1D91, Adware-Amonetize!BE0E2E71EA9E, Adware-Amonetize!0DE7113F0DBA, Artemis!EED95BD36931, Artemis!81BA3E147029, Adware-Amonetize!DC035ED17CF1, Artemis!C3A15DB2A582, Artemis!AC04B4FDAB43, Adware-Amonetize!9E63DD19C5B7, Artemis!EF81A9F21DE8, PUP-FBM!55FF1C116CD7, Artemis!D089980445A3, Adware-Amonetize!EADE0579F1AB
84.21%

Sophos
Amonetize, Generic PUA BP, Generic PUA GM
81.58%

avast!
Win32:Dropper-gen [Drp], Win32:PUP-gen [PUP], Win32:Adware-BJY [PUP], Win32:Amonetize-F [PUP], Win32:Amonetize-N [PUP], Win32:Amonetize-M [PUP], Win32:Amonetize-DF [PUP]
81.58%

McAfee Web Gateway
Artemis!577A16D372DC, Artemis!07ACD8BF8EAC, Artemis!80228DBE0E81, Artemis!8BD496B8564F, Artemis!43FAAEE39B14, Artemis!C3B43106B5F0
81.58%

Dr.Web
Adware.Downware.1655, Adware.Downware.1833, Adware.Downware.1575, Adware.Downware.2250, Adware.Downware.2467, Adware.Downware.2453
78.95%

Avira AntiVirus
ADWARE/Adware.Gen2, APPL/Amonetize.Z, APPL/Amonetize.147281, Adware/Amonetize.tzv
76.32%

Trend Micro House Call
TROJ_GEN.F47V1219, TROJ_GEN.F47V1217, TROJ_GEN.F47V1222, TROJ_GEN.F47V1215, TROJ_GEN.F47V1226, TROJ_GEN.F47V0102, TROJ_SPNR.08C314
63.16%

AVG
MalSign.Generic, Generic5, Generic_r, MalSign.Wilmo
63.16%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
63.16%

Fortinet FortiGate
Riskware/Amonetize, Adware/Amonetize
57.89%

Kaspersky
not-a-virus:Downloader.Win32.Agent, not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:AdWare.Win32.Amonetize
50.00%

The domain download.forfreeminecraft.com has been seen to resolve to the following 3 IP addresses.

May 3, 2015

May 3, 2015

host.webcharp.com
January 14, 2014

File downloads found at URLs served by download.forfreeminecraft.com.

30 / 68    (PUP)

31 / 68    (PUP)
http://download.forfreeminecraft.com/Minecraft-Install.exe  (psp sonic rivals 2 full iso downloader__3687_i542193143_il3719384.exe)

26 / 68    (Adware)

13 / 68    (Adware)

13 / 68    (Adware)

URL:
http://download.forfreeminecraft.com/

Google Analytics:
UA-39324947

Title:
“Download Minecraft for Free | Cracked Minecraft”

Description:
“Download Minecraft for Free, Download Free Minecraft Cracked . Play online multi-player. Full game included in this completely free Download.”

SSL certificate subject:
CN=sni90234.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx

Facebook:
Likes:  5,919
Shares:  5,317
Comments:  1,190

Statistics are for the previous month.