download.freemake.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.freemake.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2004. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Remove Malware from download.freemake.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Tuesday, May 18, 2004

Expires date:
Monday, May 18, 2020

Updated date:
Thursday, August 01, 2013

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (60% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/OpenCandy, Win32/Bundled.Toolbar.Ask (variant), Win32/OpenCandy (variant)
94.87%

Dr.Web
Adware.Toolbar.213, Adware.OpenCandy.7, Adware.Toolbar.276, Threat.Undefined, Adware.OpenCandy.46, Adware.Toolbar.340
66.67%

Trend Micro House Call
TROJ_GEN.F47V1114, TROJ_GEN.F47V1111, TROJ_GEN.F47V0113, TROJ_GEN.F47V0129, TROJ_GEN.F47V0218, TROJ_GEN.F47V0312, TROJ_GEN.F47V1112, TROJ_GEN.F47V0528, Suspicious_GEN.F47V1203
48.72%

Fortinet FortiGate
Riskware/OpenCandy, W32/OpenCandy
48.72%

Malwarebytes
PUP.Optional.OpenCandy, PUP.Optional.Opencandy
38.46%

Baidu Antivirus
Win32.OpenCandy, Adware.Win32.OpenCandy
38.46%

AVG
AdLoad.OpenCandy, Generic
20.51%

Clam AntiVirus
Win.Adware.Agent-7758
20.51%

XVirus List
Win.Detected
17.95%

McAfee
Artemis!22D549BAA78F, Artemis!51CBAD9AA8EA, Artemis!41617CDFE868, Artemis!04172528BF95
15.38%

Antiy Labs AVL
Trojan/Win32.TSGeneric, Trojan[:HEUR]/Win32.AGeneric
15.38%

Trend Micro
ADW_OPENCANDY
12.82%

Comodo Security
TrojWare.Win32.Genome.xhtk
10.26%

Avira AntiVirus
Adware/OpenCandy.AD.3
10.26%

McAfee Web Gateway
Artemis!22D549BAA78F, Artemis!51CBAD9AA8EA, BehavesLike.Win32.BadFile.tc
10.26%

The domain download.freemake.com has been seen to resolve to the following 6 IP addresses.

ec2-52-91-136-186.compute-1.amazonaws.com
January 5, 2016

32-125-232-198.static.unitasglobal.net
November 17, 2014

32-124-232-198.static.unitasglobal.net
September 11, 2014

94.31.29.128.IPYX-077437-ZYO.above.net
January 22, 2014

December 18, 2013

August 5, 2013

File downloads found at URLs served by download.freemake.com.

1 / 68      (inconclusive)

6 / 68      (PUP)

9 / 68      (PUP)

2 / 68      (inconclusive)

7 / 68      (PUP)

5 / 68      (PUP)

8 / 68      (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

1 / 68      (inconclusive)

3 / 68      (PUP)

10 / 68    (PUP)

12 / 68    (PUP)

10 / 68    (PUP)

1 / 68      (inconclusive)

10 / 68    (PUP)

2 / 68      (inconclusive)

1 / 68      (inconclusive)

1 / 68      (inconclusive)

2 / 68      (inconclusive)

3 / 68      (PUP)

6 / 68      (PUP)

9 / 68      (PUP)

 
Latest 30 of 306 download URLs

The following 13 files have been seen to comunicate with download.freemake.com in live environments.

URL:
http://download.freemake.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx/1.4.6 (Ubuntu)

Compete.com:
US visitors:  18,332

Statistics are for the previous month.

Remove Malware from download.freemake.com - Powered by Reason Core Security