108.168.160.45

108.168.160.45-static.reverse.softlayer.com

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 108.168.160.45 is SoftLayer Technologies Inc. and located in Texas within the United States. The IP Address resolves to the DNS record of 108.168.160.45-static.reverse.softlayer.com. Currently there are 32 domain names that utilize this address. The primary domain hosted by this IP is files5.mirror6.net along with 31 other domains which are known adware distribution web sites.
Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
(M), PUP.InstallX.Bundle, PUP.Installer.Tucows, PUP.Installer.FullSpectrumInteractive.Z, Adware.Installer.FullSpectrumInteractive.Z, PUP.Tucows.Bundler.Installer.Meta (M), PUP.Installer.Groovecom.F, PUP.Installer.Groovecom.S, PUP.Groovecom.X, PUP.Groovecom.Y, PUP.Groovecom.R, PUP.Tightrope.Bundler, PUP.Bundler.Tightrope, PUP.Fintech.Installer (M), PUP.DownloadAdmin.CodeTechno.Installer (M), PUP.DownloadAdmin.FullSpectrumInteractive.Installer (M), PUP.DownloadAdmin.Groovecom.Installer (M), PUP.Tightrope.Sanflex.Bundler (M), PUP.DownloadAdmin.FullSpec.Installer (M)
95.74%

VIPRE Antivirus
DownloadAdmin, Threat.4783369, Threat.4150696
55.32%

Dr.Web
Adware.DownloadAdmin.1, Threat.Undefined, Adware.DAdmin.151, Adware.Downware.2220, Adware.Downware.9384
51.06%

Sophos
Download Admin, PUA 'Download Admin'
46.81%

AVG
Generic, InstallC
40.43%

avast!
Adware-OH [Adw], Adware-BRR [Adw], Win32:Rootkit-gen [Rtk], Win32:GenMalicious-AGF [Trj], Adware-SJ [PUP], DownloadAdmin-O [Trj], Win32:DownloadAdmin-N [PUP]
36.17%

ESET NOD32
Win32/DownloadAdmin.G potentially unwanted application, Win32/DownloadAdmin.H potentially unwanted application, Detection.Undefined
34.04%

F-Secure
Adware:W32/WebInstallBundle
34.04%

Malwarebytes
PUP.Optional.FullSpectrumAdmin, PUP.Optional.BundleInstaller.A, PUP.Optional.DownloadAdmin
31.91%

Avira AntiVirus
W32/Mabezat, ADWARE/Adware.Gen, APPL/Downloader.Gen, TR/Trash.Gen
29.79%

The following domains resolved to the IP address 108.168.160.45.

File URLs download from 108.168.160.45.

1 / 68      (PUP)

1 / 68      (Adware)
http://files5.mirror6.net/dl?bc=919437&aid=509981  (uplayermediaplayer-setup.exe)

1 / 68      (Adware)
http://files5.mirror6.net/dl?bc=1081986  (toydefense-setup.exe)

12 / 68    (PUP)
http://files5.mirror6.net/dl?bc=962730&v.id=office  (delugetorrentclient-setup.exe)

1 / 68      (PUP)
http://files5.mirror6.net/dl?bc=962730&v.id=avatar  (delugetorrentclient-setup.exe)

1 / 68      (Adware)

1 / 68      (PUP)

11 / 68    (PUP)

11 / 68    (Adware)

14 / 68    (PUP)

11 / 68    (PUP)
http://files5.mirror6.net/dl?bc=962730&v.id=cars  (delugetorrentclient-setup.exe)

11 / 68    (PUP)

11 / 68    (PUP)

3 / 68      (Malware)
http://files5.mirror6.net/dl?bc=919437&aid=30679  (uplayermediaplayer-setup.exe)

15 / 68    (Adware)

 
Latest 30 of 5,240 download URLs

The following file have been seen to comunicate with this IP address in live environments.

The geographical location of this IP address.

Country:
United States (US)

Region:
Texas

City:
Dallas

Coordinates:
32.9395, -96.8387

The ARIN network assigned organization for IP address 108.168.160.45.

Org name:
SoftLayer Technologies Inc.

Org identifier:
SOFTL

Org country:
United States (US)

Org region:
Texas

Org city:
Dallas

Org address:
4849 Alpha Rd.

ARIN WHOIS:
NetRange: 108.168.128.0 - 108.168.255.255
CIDR: 108.168.128.0/17
OriginAS: AS36351
NetName: SOFTLAYER-4-11
NetHandle: NET-108-168-128-0-1
Parent: NET-108-0-0-0-0
NetType: Direct Allocation
RegDate: 2012-01-06
Updated: 2013-07-12
Ref: http://whois.arin.net/rest/net/NET-108-168-128-0-1


OrgName: SoftLayer Technologies Inc.
OrgId: SOFTL
Address: 4849 Alpha Rd.
City: Dallas
StateProv: TX
PostalCode: 75244
Country: US
RegDate: 2005-10-26
Updated: 2013-02-20
Ref: http://whois.arin.net/rest/org/SOFTL

ReferralServer: rwhois://rwhois.softlayer.com:4321

OrgAbuseHandle: ABUSE1025-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-214-442-0601
OrgAbuseEmail: abuse@softlayer.com
OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE1025-ARIN

OrgTechHandle: IPADM258-ARIN
OrgTechName: IP Admin
OrgTechPhone: +1-214-442-0600
OrgTechEmail: ipadmin@softlayer.com
OrgTechRef: http://whois.arin.net/rest/poc/IPADM258-ARIN


Autonomous System Assignment
ASNumber:
36351

ASName:
SOFTLAYER - SoftLayer Technologies Inc.

ASHandle:
AS36351

Remove Malware from 108.168.160.45 - Powered by Reason Core Security