www.freemp3go.org

PERFECT PRIVACY, LLC  (Proxy Registrant)

Domain Information

The domain www.freemp3go.org is registered by proxy through Atomicdomainnames.com LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
Atomicdomainnames.com LLC

Server location:
Quebec, Canada (CA)

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.h, Adware.WebPick.Installer (M), Adware (M)
84.62%

Dr.Web
Trojan.Crossrider.36550
23.08%

Emsisoft Anti-Malware
Gen:Variant.Adware.MPlug.16
15.38%

VIPRE Antivirus
Threat.5085665
15.38%

avast!
Win32:Xpaj-gen, Win32:Agent-AYLT [PUP]
15.38%

Lavasoft Ad-Aware
Gen:Variant.Adware.MPlug.16
15.38%

F-Secure
Gen:Variant.Adware.MPlug
15.38%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.MultiPlug
15.38%

AVG
Adware Generic_r.VD
15.38%

Norman
Gen:Variant.Adware.MPlug.16
15.38%

Sophos
PUA 'MultiPlug' (of type Adware)
15.38%

ESET NOD32
Win32/AdWare.MultiPlug.CT application
15.38%

McAfee
Program.MultiPlug-FRO
7.69%

Microsoft Security Essentials
Threat.Undefined
7.69%

The domain www.freemp3go.org has been seen to resolve to the following 3 IP addresses.

ns513839.ip-167-114-156.net
January 4, 2016

March 14, 2014

March 14, 2014

File downloads found at URLs served by www.freemp3go.org.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.freemp3go.org/out.php?t=6&q=I wana see My Darling - H20 - Prabhu Deva and Upendra Top Romantic Songs - Kannada Songs&id=RDRJZ0xRMnVTcU0=  (i wana see my darling - h20 - prabhu deva and upendra top romantic songs - kannada songs.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

11 / 68    (PUP)
http://www.freemp3go.org/.../2&id=a3dEZFFHTTAza28=  (h t quan h tr n thuy n - p1 2.exe)

1 / 68      (Adware)

The following 36 files have been seen to comunicate with www.freemp3go.org in live environments.

 
Latest 20 of 41 files

URL:
http://www.freemp3go.org/

Web server:
Apache