www.subtitles4free.net

Moniker Privacy Services  (Proxy Registrant)

Domain Information

The domain www.subtitles4free.net is registered by proxy through Moniker Online Services and was originally registered in October of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
Moniker Online Services

Server location:
Quebec, Canada (CA)

Create date:
Friday, October 18, 2013

Expires date:
Tuesday, October 18, 2016

Updated date:
Wednesday, October 7, 2015

ASN:
AS16276 OVH OVH Systems

Root domain:

Scanner detections:
Detections  (77% detected)

Scan engine
Details
Detections

Kaspersky
not-a-virus:NetTool.Win64.NetFilter
51.52%

Reason Heuristics
Threat.Installer.GTConsultoriaemInformaticaa, PUP.Installer.GTConsultoriaemInformaticaa, PUP.GTConsultoriaemInformaticaa.Installer (M), Adware.WebPick.Installer (M), PUP.Outbrowse.Bundler (M), PUP.Outbrowse (M), Adware (M)
48.48%

Dr.Web
Trojan.Fraudster.1791, Trojan.Fakealert.51956, infected with Trojan.Fakealert.51956
48.48%

G Data
Win64.Application.Agent.QX43TM, Win32.Application.Agent.VNB5AW, Win32.Riskware.Netfilter, Trojan.Generic.15336575, Trojan.Generic.15519110
45.45%

ESET NOD32
Win64/NetFilter.A potentially unsafe (variant), Win32/RiskWare.NetFilter
42.42%

Panda Antivirus
Generic Suspicious, Trj/CI.A
42.42%

Zillya! Antivirus
Trojan.Kryptik.Win32.822273, Trojan.Jorik.Win32.402811, Worm.Mabezat.Win32.53782, Downloader.Adload.Win32.28970
30.30%

AVG
Generic
27.27%

Baidu Antivirus
Adware.Win32.InstallCore, Hacktool.Win64.NetFilter
27.27%

McAfee
Artemis!6F29D97831BC, Artemis!6F0C638817AC, Artemis!80220909A75F, Artemis!BC6ECE099797, Artemis!4A3E9C6D36A3, Artemis!21CF5B7D0BC3
24.24%

Fortinet FortiGate
Riskware/NetFilter
24.24%

Qihoo 360 Security
Win32/Virus.NetTool.82f
21.21%

Emsisoft Anti-Malware
Trojan.Generic.15336575, Trojan.Generic.15519110
21.21%

Sophos
Generic PUA DA (PUA), Generic PUA FM (PUA), Generic PUA IH (PUA), Generic PUA OG (PUA), Generic PUA EO (PUA), Generic PUA PJ (PUA)
18.18%

K7 AntiVirus
Riskware , Unwanted-Program
18.18%

The domain www.subtitles4free.net has been seen to resolve to the following IP address.

ns4009631.ip-192-99-4.net
May 21, 2014

File downloads found at URLs served by www.subtitles4free.net.

0 / 68
http://www.subtitles4free.net/.../Legendas36.zip  (b380013e58964490bb18de7a1c3c38d2)

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Adware)

1 / 68      (Adware)

13 / 68    (Malware)

4 / 68      (Malware)
http://www.subtitles4free.net/.../Legendas34.exe  (400e8cb8d85e041f6bdf30ae9faa172f)

11 / 68    (Adware)

3 / 68      (inconclusive)

URL:
http://www.subtitles4free.net/

Google Analytics:
UA-4565730

Title:
“Download subtitles for movies and TV Series”

Description:
“Download subtitles on the biggest movie subtitles database in the world. More than two million in multiple languages.”

Web server:
nginx/1.6.0 (PHP/5.3.28)

Facebook:
Likes:  3
Shares:  60
Comments:  46

Statistics are for the previous month.