install-cdn.melondrea.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain install-cdn.melondrea.net is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Washington, United States (US)

Create date:
Tuesday, November 19, 2013

Expires date:
Saturday, November 19, 2016

Updated date:
Thursday, November 19, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.melondrea.F, PUP.Yontoo.melondrea.Installer (M), PUP.Yontoo.melondre.Installer (M)
100.00%

McAfee
Artemis!86EF5CF77048, Artemis!89D2B484795E
33.33%

Malwarebytes
PUP.Optional.Melondrea.A
33.33%

Trend Micro House Call
TROJ_GEN.F47V0310, TROJ_GEN.F47V0323
33.33%

Kaspersky
not-a-virus:AdWare.Win32.Agent
33.33%

NANO AntiVirus
Riskware.Win32.Agent.crkvek
33.33%

SUPERAntiSpyware
Adware.BrowseFox/Variant
33.33%

Sophos
Generic PUA MG, Generic PUA CB
33.33%

Comodo Security
Application.Win32.Altbrowse.AK
33.33%

Dr.Web
Trojan.BPlug.17, Trojan.BPlug.35
33.33%

VIPRE Antivirus
Yontoo
33.33%

ESET NOD32
Win32/BrowseFox (variant)
33.33%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF
33.33%

Fortinet FortiGate
Adware/Agent
33.33%

AVG
MalSign.Melond
33.33%

The domain install-cdn.melondrea.net has been seen to resolve to the following 12 IP addresses.

a23-15-7-107.deploy.static.akamaitechnologies.com
July 25, 2016

a23-15-7-128.deploy.static.akamaitechnologies.com
July 25, 2016

a104-112-235-18.deploy.static.akamaitechnologies.com
July 25, 2016

a104-96-220-240.deploy.static.akamaitechnologies.com
July 25, 2016

a104-96-221-57.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-221-81.deploy.static.akamaitechnologies.com
May 16, 2016

a23-220-148-17.deploy.static.akamaitechnologies.com
April 12, 2016

a23-220-148-26.deploy.static.akamaitechnologies.com
April 12, 2016

February 26, 2016

February 26, 2016

a23-220-148-35.deploy.static.akamaitechnologies.com
February 23, 2016

a23-220-148-49.deploy.static.akamaitechnologies.com
February 23, 2016

File downloads found at URLs served by install-cdn.melondrea.net.

16 / 68    (Adware)
http://install-cdn.melondrea.net/setup.exe  (89d2b484795e32dd0cda5a1ef3b2cda5)

1 / 68      (Adware)
http://install-cdn.melondrea.net/setup.exe  (5f6e28ba8609dbc3b9c8f1060b710bd5)

19 / 68    (Adware)
http://install-cdn.melondrea.net/setup.exe  (86ef5cf770486bacab63cc94afabb303)

1 / 68      (Adware)
http://install-cdn.melondrea.net/setup.exe  (a28d6e4e65172439ebeddd109a911f40)

1 / 68      (Adware)
http://install-cdn.melondrea.net/setup.exe  (adc11325db163a60064bf0a36abe8fe5)

1 / 68      (Adware)
http://install-cdn.melondrea.net/setup.exe  (4fc89437b695acda25882283d4523e2a)

The following 21 files have been seen to comunicate with install-cdn.melondrea.net in live environments.

 
Latest 20 of 26 files

URL:
http://install-cdn.melondrea.net/

Web server:
Microsoft-IIS/7.5 (ASP.NET)