d3s8yh4ki1ad1i.cloudfront.net

Amazon.com, Inc

Domain Information

The domain d3s8yh4ki1ad1i.cloudfront.net registered by Amazon.com, Inc was initially registered in April of 2008 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Registrar:
MARKMONITOR INC.

Server location:
Virginia, United States (US)

Create date:
Friday, April 25, 2008

Expires date:
Tuesday, April 25, 2017

Updated date:
Tuesday, February 25, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ProInstall.Installer (M), PUP.ProInstall (M), PUP.Spigot.Installer (M), PUP.Spigot (M)
94.00%

ESET NOD32
Win32/Spigot.A potentially unwanted application
4.00%

Dr.Web
Adware.Downware.11303
2.00%

Kaspersky
not-a-virus:HEUR:Downloader.NSIS.Spigot
2.00%

The domain d3s8yh4ki1ad1i.cloudfront.net has been seen to resolve to the following 95 IP addresses.

server-54-230-16-145.iad12.r.cloudfront.net
January 19, 2015

server-54-230-16-99.iad12.r.cloudfront.net
January 19, 2015

server-54-240-160-225.iad12.r.cloudfront.net
January 19, 2015

server-54-230-19-229.iad12.r.cloudfront.net
January 19, 2015

server-54-230-19-208.iad12.r.cloudfront.net
January 19, 2015

server-54-230-19-167.iad12.r.cloudfront.net
January 19, 2015

server-54-230-16-240.iad12.r.cloudfront.net
January 19, 2015

server-54-230-16-171.iad12.r.cloudfront.net
January 14, 2015

server-54-230-16-10.iad12.r.cloudfront.net
January 14, 2015

server-54-230-19-242.iad12.r.cloudfront.net
January 14, 2015

server-54-230-18-201.iad12.r.cloudfront.net
January 14, 2015

server-54-230-17-217.iad12.r.cloudfront.net
January 14, 2015

server-54-230-17-151.iad12.r.cloudfront.net
January 14, 2015

server-54-230-17-135.iad12.r.cloudfront.net
January 14, 2015

server-54-230-17-123.iad12.r.cloudfront.net
January 14, 2015

server-54-230-16-42.iad12.r.cloudfront.net
January 13, 2015

server-54-230-192-213.iad53.r.cloudfront.net
January 12, 2015

server-54-230-192-50.iad53.r.cloudfront.net
January 12, 2015

server-54-239-152-60.iad53.r.cloudfront.net
January 12, 2015

server-54-192-101-84.iad2.r.cloudfront.net
January 12, 2015

server-54-192-101-82.iad2.r.cloudfront.net
January 12, 2015

server-216-137-33-222.iad2.r.cloudfront.net
January 12, 2015

server-54-230-103-66.iad2.r.cloudfront.net
January 12, 2015

server-54-230-103-44.iad2.r.cloudfront.net
January 12, 2015

server-54-230-100-39.iad2.r.cloudfront.net
January 12, 2015

server-54-192-101-72.iad2.r.cloudfront.net
January 10, 2015

server-216-137-33-232.iad2.r.cloudfront.net
January 10, 2015

server-54-230-103-189.iad2.r.cloudfront.net
January 10, 2015

server-54-230-101-220.iad2.r.cloudfront.net
January 10, 2015

server-54-192-101-103.iad2.r.cloudfront.net
January 10, 2015

 
Showing 30 of 95 IP Addresses

File downloads found at URLs served by d3s8yh4ki1ad1i.cloudfront.net.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (inconclusive)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (inconclusive)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://d3s8yh4ki1ad1i.cloudfront.net/mpogmgbeftusgvncjg  (youtube_music_downloader_setup.exe)

 
Latest 30 of 255 download URLs

The following 14 files have been seen to comunicate with d3s8yh4ki1ad1i.cloudfront.net in live environments.