mp3clan.com

Registration Privacy, No-IP.com

Domain Information

The domain mp3clan.com registered by Registration Privacy, No-IP.com was initially registered in April of 2012 through VITALWERKS INTERNET SOLUTIONS LLC DBA NO-IP. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Irkutsk, Irkutsk within Russia which resides on the RIPE Network Coordination Centre network.
Remove Malware from mp3clan.com - Powered by Reason Core Security
Registrar:
VITALWERKS INTERNET SOLUTIONS LLC DBA NO-IP

Server location:
Irkutsk, Russia (RU)

Create date:
Monday, April 23, 2012

Expires date:
Tuesday, April 23, 2019

Updated date:
Thursday, April 10, 2014

ASN:
AS29182 ISPSYSTEM-AS ISPsystem, cjsc,LU

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.WebPick.Installer.g, Adware.WebPick.Installer.Z, Adware.WebPick.Installer.FF, PUP.SITEONSPOT.m, PUP.SITEONSPOT.y, Adware.WebPick.Installer.m, Adware.WebPick.Installer.EE, PUP.WebPick.Installer, Adware.WebPick.Installer (M), PUP.Somoto.SITEONSPOT.Bundler (M)
100.00%

avast!
Win32:InstalleRex-BI [PUP], Win32:InstalleRex-BO [PUP], Win32:Somoto-P [PUP], Win32:InstalleRex-CD [PUP]
57.89%

Malwarebytes
PUP.Optional.Installrex, PUP.Optional.InstalleRex, PUP.Optional.Somoto.A
57.89%

VIPRE Antivirus
Installerex/WebPick, Threat.4753027, Trojan.Win32.Generic, BetterInstaller, Threat.4150696
57.89%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Adware
57.89%

NANO AntiVirus
Riskware.Win32.InfoLeak.cvgqot, Riskware.Nsis.Adware.dbnhrj
57.89%

Kaspersky
Trojan.Win32.AntiFW, not-a-virus:AdWare.Win32.Agent
57.89%

Sophos
InstallRex, Somoto BetterInstaller, PUA 'InstallRex'
57.89%

Dr.Web
Trojan.WebPick.29, Trojan.WebPick.2452, Trojan.Packed.26824
57.89%

Avira AntiVirus
TR/Rogue.11241865, ADWARE/InstallRex.Gen, Adware/Kazy.207317.6, APPL/Somoto.hzis, TR/Rogue.11227301, TR/AntiFW.b.50
57.89%

Antiy Labs AVL
RiskWare[Downloader:not-a-virus,HEUR]/Win32.AdLoad, Trojan/Win32.AntiFW.b, Adware[:not-a-virus]/Win32.Agent.allm
57.89%

AVG
Generic, InstallRex
57.89%

McAfee Web Gateway
PUP-FHQ!D85F62B783A8, PUP-FHQ!99D13F43428B, Artemis, Somoto-BetterInstaller, BehavesLike.Win32.SomotoBetterInstaller.dc
52.63%

McAfee
PUP-FHQ!D85F62B783A8, PUP-FHQ!99D13F43428B, Artemis!09F76B296855, Somoto-BetterInstaller, Program.PUP-FHQ, Artemis!602B2E2D7679
47.37%

K7 AntiVirus
Unwanted-Program , Adware
47.37%

The domain mp3clan.com has been seen to resolve to the following 6 IP addresses.

mp3clan.com
November 7, 2015

mp3clan.com
June 19, 2015

November 18, 2014

October 20, 2014

October 20, 2014

May 21, 2014

File downloads found at URLs served by mp3clan.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

27 / 68    (Adware)
http://mp3clan.com/.../clank__downloader-I4i2jlGA6.exe  (602b2e2d7679454bffb2442ce2868780)

1 / 68      (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

28 / 68    (Adware)

28 / 68    (Adware)

24 / 68    (Adware)

28 / 68    (Adware)

26 / 68    (Adware)

27 / 68    (Adware)

January 3, 2016

URL:
http://mp3clan.com/

Title:
“mp3 Supply - Free Music Download”

Description:
“Free music downloads. mp3 Supply is an mp3 search engine allowing its users to listen to music online also enabling free mp3 downloads for all your favorite songs.”

SSL certificate subject:
CN=sni49761.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
nginx/1.6.2 (PHP/5.5.9-1ubuntu4.9)

Facebook:
Likes:  538
Shares:  3,693
Comments:  128

Statistics above are for the previous month of November 2016.

Remove Malware from mp3clan.com - Powered by Reason Core Security