multifungames.free.fr

FREE SAS  (Proxy Registrant)

Domain Information

The domain multifungames.free.fr is registered by proxy through ONLINE SAS. Currently this domain has been known to host various forms of malware. The hosted servers are located in Bezons, Ile-De-France within France which resides on the RIPE Network Coordination Centre network.
Registrar:
ONLINE SAS

Server location:
Ile-De-France, France (FR)

ASN:
AS12322 PROXAD Free SAS,FR

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Graftor.1088
100.00%

Quick Heal
Trojan.Ardamax.A
100.00%

McAfee
Keylog-Ardamax
100.00%

Malwarebytes
Trojan.Ardamax
100.00%

K7 AntiVirus
Riskware
100.00%

NANO AntiVirus
Trojan.Win32.Gbot.edhsx
100.00%

F-Prot
W32/Ardamax.F_1.gen
100.00%

Norman
Suspicious_Gen2.UCOCJ
100.00%

Trend Micro House Call
TROJ_GEN.R06H1DR
100.00%

avast!
Win32:KeyLogger-AVO [Spy]
100.00%

Clam AntiVirus
Win.Trojan.Ardamax-965
100.00%

Kaspersky
HEUR:Hoax.Win32.ArchSMS
100.00%

Bitdefender
Gen:Variant.Graftor.1088
100.00%

Agnitum Outpost
Backdoor.Gbot
100.00%

ViRobot
Trojan.Win32.A.Ardamax.1015808
100.00%

The domain multifungames.free.fr has been seen to resolve to the following IP address.

perso169-g5.free.fr
November 19, 2013

File downloads found at URLs served by multifungames.free.fr.

32 / 68    (Malware)
http://multifungames.free.fr/.../DofusFK_v1.exe  (dd77e29dba0a47e24ab8718ae6776904)

The following 3 files have been seen to comunicate with multifungames.free.fr in live environments.

URL:
http://multifungames.free.fr/

Title:
“.:Multi Fun Game:.”

Description:
“.:Multi Fun Game:. les jeux vidos gratuits sur TON ordi”

Web server:
Apache/ProXad [Apr 20 2012 15:06:05]