The domain musicdoldin.net is registered by proxy through NAME.COM, INC. and was originally registered in March of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Oregon, United States (US)
Thursday, March 27, 2014
Friday, March 27, 2015
Saturday, May 10, 2014
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Detections (100% detected)
Adware.WebPick.Installer.I, Adware.WebPick.Installer.i, Adware.WebPick.Installer.DD, Adware.WebPick.Installer.?, Adware.WebPick.Installer.r
PUP-FHQ!B11EF13D23BE, PUP-FHQ!EB5AD95C80B9, PUP-FHQ!392DC566084C, PUP-FHQ!1676FE22ED17, Program.PUP-FHQ
Trojan.Win32.Generic, Installerex/WebPick, Threat.4150696
McAfee Web Gateway
PUP-FHQ!B11EF13D23BE, PUP-FHQ!EB5AD95C80B9, Heuristic.LooksLike.Win32.Suspicious.B, PUP-FHQ!1676FE22ED17, BehavesLike.Win32.Downloader.fc
AhnLab V3 Security
The domain musicdoldin.net has been seen to resolve to the following 3 IP addresses.
September 15, 2014
File downloads found at URLs served by musicdoldin.net.
The following file have been seen to comunicate with musicdoldin.net in live environments.
“Welcome to nginx!”
Amazon Web Services (AWS), running an EC2 instance