www.mediafreeware.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.mediafreeware.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the Input Output Flood LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Saturday, March 2, 2013

Expires date:
Thursday, March 2, 2017

Updated date:
Monday, February 16, 2015

ASN:
AS53755 IOFLOOD - Input Output Flood LLC

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Rspark.W, PUP.Optional.Installer.K, PUP.Installer.Rspark.Q, PUP.Installer.Rspark.Z, PUP.Bundler.Outbrowse, Win32.Generic, PUP.OutBrowse.RSPARKLI.Installer (M)
100.00%

McAfee
Adware-OutBrowse, Artemis!7308B6CF7EDB, Artemis!E015E93FFF86
70.00%

NANO AntiVirus
Trojan.Win32.Generic.cthmwf, Trojan.Win32.Generic.dbxkzp
60.00%

Trend Micro House Call
TROJ_GE.5C6F1877, Suspicious_GEN.F47V0712, Suspicious_GEN.F47V0625, Suspici.DB6BCC95, TROJ_GEN.R08OH06D614
60.00%

ESET NOD32
Win32/OutBrowse, Win32/OutBrowse.AA
60.00%

AVG
MultiBundle.M, Generic
50.00%

herdProtect (fuzzy)
a variant of 071e1666ea0ef5ceecfaaf3faf553d799fde1a4a, a variant of 6a8476f628fadfad2d5a311d08a45f48af36b32e, a variant of 330d217b545f1e33b6c0ffb2fbdd7c1f783c8893
50.00%

Dr.Web
Adware.Downware.2081
40.00%

Qihoo 360 Security
HEUR/Malware.QVM06.Gen, Win32/Virus.Downloader.eb9
40.00%

Kaspersky
not-a-virus:Downloader.NSIS.OutBrowse
30.00%

VIPRE Antivirus
OutBrowse, Trojan.Win32.Generic
30.00%

Agnitum Outpost
PUA.OutBrowse
20.00%

Sophos
Generic PUA EK, Generic PUA MI
20.00%

Avira AntiVirus
APPL/Downloader.Gen
20.00%

avast!
Win32:Malware-gen, Win32:Rootkit-gen [Rtk]
20.00%

The domain www.mediafreeware.com has been seen to resolve to the following IP address.

we.love.servers.at.ioflood.com
June 21, 2014

File downloads found at URLs served by www.mediafreeware.com.

0 / 68
http://www.mediafreeware.com/.../spidersolitare_setup.exe  (701b4848c243f5c6382b38bf23987784)

1 / 68      (PUP)

1 / 68      (PUP)

0 / 68
http://www.mediafreeware.com/.../virtualpiano_setup.exe  (f23abe7fe3ea3fcc54b48166a29564ce)

1 / 68      (Adware)

1 / 68      (PUP)

10 / 68    (Adware)
http://www.mediafreeware.com/.../backupsoftware_setup.exe  (e015e93fff867f898555294999bc36f1)

14 / 68    (Adware)
http://www.mediafreeware.com/.../autoclicker_setup.exe  (cde38f3d9f49f42b810e52ee87eb3891)

8 / 68      (Adware)

10 / 68    (Adware)
http://www.mediafreeware.com/.../epubreader_setup.exe  (79e616d9bf742fed96f2f2d8f26d0cb7)

11 / 68    (Adware)
http://www.mediafreeware.com/.../epubreader_setup.exe  (7308b6cf7edb75a218ba0a47d5d2bdde)

11 / 68    (Adware)

8 / 68      (Adware)

The following file have been seen to comunicate with www.mediafreeware.com in live environments.

URL:
http://www.mediafreeware.com/

Title:
“Media Freeware - Free software downloads developed in house.”

Description:
“We develop software for all ages and specialize in user friendly solutions. Download our freeware today.”

Web server:
Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4

Facebook:
Likes:  6
Shares:  11

Statistics are for the previous month.