jdcdnnet.blob.core.windows.net

Microsoft Corporation

Domain Information

The domain jdcdnnet.blob.core.windows.net registered by Microsoft Corporation was initially registered in August of 1995 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the Microsoft Corp network.
Registrar:
MARKMONITOR INC.

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Thursday, August 10, 1995

Expires date:
Saturday, June 4, 2016

Updated date:
Wednesday, November 20, 2013

ASN:
AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation,US

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InnovativeSystems.M, PUP.InnovativeSystems.J, PUP.InnovativeSystems.O, PUP.Installer.InnovativeSystems.q, PUP.InnovativeSystems.BB, PUP.InnovativeSystems.Installer (M), PUP.OpenCandy.SoftwareAssociation.Installer (M), PUP.RICHMEDIASYSTEMS.Installer (M), PUP.Innovati.Installer (M), PUP.RICHMEDI.Installer (M), PUP.OpenCandy.Software.Installer (M), PUP (M)
87.50%

McAfee
Artemis!C5E8D0BFF605, Artemis!7506561759C0, Artemis!045AAB13437B, Artemis!BD92292065B2, Artemis!00235C8EC44B, Artemis!6AE35B7DD6A4, Artemis!B49FC79BD931, Artemis!BA4E6AF3E003, Artemis!2A2CC871B2C2, Artemis!8E666F0CBA46, Artemis!463844C85CE5, Artemis!7B285454B706, Artemis!1BBA45FB268E, Artemis!344425C0ECB8, Artemis!B9097CB3AFBB, Artemis!413A5679F012
54.17%

AVG
AdLoad.OpenCandy, Sevas, Worm/Delf.KHX
52.08%

Malwarebytes
PUP.Optional.OpenCandy
50.00%

Dr.Web
Threat.Undefined, Adware.Toolbar.282, Adware.OpenCandy.55, Adware.Downware.9759, Adware.Downware.6712, Trojan.Inject1.28681
47.92%

Agnitum Outpost
Riskware.Agent
47.92%

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant), Win32/JoyDownloader, Win32/OpenCandy.C potentially unsafe (variant)
45.83%

Baidu Antivirus
Adware.Win32.OpenCandy
45.83%

AhnLab V3 Security
PUP/Win32.OpenCandy
43.75%

Clam AntiVirus
Win.Trojan.Agent-803351, Win.Trojan.Agent-855157
41.67%

Avira AntiVirus
APPL/Downloader.Gen
35.42%

Trend Micro House Call
Suspici.C63558EC, Suspicious_GEN.F47V1105, Suspici.792C221A, Suspicious_GEN.F47V1114, ADW_OPENCANDY, TROJ_GEN.R092H05DO15
31.25%

G Data
Win32.Adware.OpenCandy, Gen:Trojan.Heur.Fu3@x0Eu0Uii, Win32.Application.OpenCandy, Gen:Trojan.Heur.Iu3@xyzGxymi
25.00%

K7 AntiVirus
Adware , Unwanted-Program , Trojan
25.00%

VIPRE Antivirus
Trojan.Win32.Generic, Opencandy, Sevas-S Installer
25.00%

The domain jdcdnnet.blob.core.windows.net has been seen to resolve to the following IP address.

blob.am3prdstr07a.store.core.windows.net
September 30, 2014

File downloads found at URLs served by jdcdnnet.blob.core.windows.net.

1 / 68      (Adware)

14 / 68    (Adware)

15 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (PUP)

17 / 68    (PUP)

1 / 68      (Adware)

16 / 68    (PUP)

14 / 68    (Adware)

10 / 68    (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

12 / 68    (Adware)

1 / 68      (PUP)

15 / 68    (Adware)

22 / 68    (Adware)

8 / 68      (Adware)

15 / 68    (PUP)

13 / 68    (Adware)

1 / 68      (PUP)

1 / 68      (Adware)

17 / 68    (PUP)

1 / 68      (PUP)

12 / 68    (Adware)

1 / 68      (Adware)

16 / 68    (PUP)

 
Latest 30 of 120 download URLs

URL:
http://jdcdnnet.blob.core.windows.net/

SSL certificate subject:
CN=*.blob.core.windows.net

SSL certificate issuer:
CN=MSIT Machine Auth CA 2, DC=redmond, DC=corp, DC=microsoft, DC=com

Web server:
Microsoft-HTTPAPI/2.0