190.93.242.5

Latin American and Caribbean IP address Regional Registry

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 190.93.242.5 is Latin American and Caribbean IP address Regional Registry and located in Uruguay. Currently there are 10 domain names that utilize this address. The primary domain hosted by this IP is ez-download.com along with 9 other domains which are known adware distribution web sites. The address and domain is leased to Quick Downloader.
Scanner detections:
Detections  (88% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Ezdownload.V, PUP.Installer.QuickDownloader.J, PUP.Installer.FastDownloads.M, PUP.OutBrowse.H, PUP.Installer.Ezdownload.S, PUP.Adknowledge.FUSIONINSTALL.Installer (M), PUP.Adlogica.FastDownloads.Bundler (M), PUP.Outbrowse.Bundler (M), PUP.Adlogica.Ezdownload.Bundler (M), PUP.Adknowledge.OptimumInstaller.Installer (M), Threat.Win.Reputation.IMP, PUP.Adlogica.FastDown.Bundler (M), PUP.Adlogica.QuickDow.Bundler (M), PUP.installCore.SecureIn.Installer (M), PUP.Adknowledge.INSTALLD.Installer (M)
81.82%

Dr.Web
Adware.Downware.2468, Trojan.MulDrop5.10078, Adware.Downware.1664, Adware.InstallCore.133, Trojan.Crossrider1.49350, Adware.Downware.1143
45.45%

avast!
Win32:PUP-gen [PUP], Win32:Malware-gen, Win32:OutBrowse-CH [PUP], Win32:Installer-J [PUP], Win32:Evo-gen [Susp]
40.91%

ESET NOD32
Win32/InstallCore.BY potentially unwanted application, Win32/InstallCore.AZ potentially unwanted application, Win32/Adware.iBryte.G application, Win32/InstallCore.DF potentially unwanted application
38.64%

F-Prot
W32/A-dbe1ec51, W32/InstallCore.S.gen, W32/Ibryte.C.gen, W32/InstallCore.R.gen
27.27%

Sophos
Ez Toolbar Downloader, Install Core, PUA 'Install Core', PUA 'iBryte Optimum Installer'
25.00%

VIPRE Antivirus
InstallCore, OutBrowse, Threat.4786018, Threat.4778314, Threat.4150696
25.00%

AVG
Skodna.Generic, MalSign.OutBrowse, MalSign.Generic, Adware Generic5, Adware Generic5.BDFT, Adware InstallCore.VP
22.73%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A, Threat.Undefined
20.45%

Malwarebytes
PUP.Optional.Downloadster, PUP.Optional.InstallCore, PUP.Optional.Ibryte
15.91%

The following domains resolved to the IP address 190.93.242.5.

File URLs download from 190.93.242.5.

 
Latest 30 of 873 download URLs

The geographical location of this IP address.

Country:
Costa Rica (CR)

Region:
San Jose

City:
San Jose

Coordinates:
9.93333, -84.0833

The ARIN network assigned organization for IP address 190.93.242.5.

Org name:
Latin American and Caribbean IP address Regional Registry

Org identifier:
LACNIC

Org country:
Uruguay (UY)

Org city:
Montevideo

Org address:
Rambla Republica de Mexico 6125

ARIN WHOIS:
NetRange: 190.0.0.0 - 190.255.255.255
CIDR: 190.0.0.0/8
OriginAS:
NetName: NET190
NetHandle: NET-190-0-0-0-1
Parent:
NetType: Allocated to LACNIC
Comment: This IP address range is under LACNIC responsibility for further
Comment: allocations to users in LACNIC region.
Comment: Please see http://www.lacnic.net/ for further details, or check the
Comment: WHOIS server located at http://whois.lacnic.net
RegDate: 2005-06-17
Updated: 2010-07-21
Ref: http://whois.arin.net/rest/net/NET-190-0-0-0-1

OrgName: Latin American and Caribbean IP address Regional Registry
OrgId: LACNIC
Address: Rambla Republica de Mexico 6125
City: Montevideo
StateProv:
PostalCode: 11400
Country: UY
RegDate: 2002-07-27
Updated: 2011-09-24
Ref: http://whois.arin.net/rest/org/LACNIC

ReferralServer: whois://whois.lacnic.net

OrgTechHandle: LACNIC-ARIN
OrgTechName: LACNIC Whois Info
OrgTechPhone: 999-999-9999
OrgTechEmail: whois-contact@lacnic.net
OrgTechRef: http://whois.arin.net/rest/poc/LACNIC-ARIN

OrgAbuseHandle: LACNIC-ARIN
OrgAbuseName: LACNIC Whois Info
OrgAbusePhone: 999-999-9999
OrgAbuseEmail: whois-contact@lacnic.net
OrgAbuseRef: http://whois.arin.net/rest/poc/LACNIC-ARIN


Autonomous System Assignment
ASNumber:
13335

ASName:
CLOUDFLARENET - CloudFlare, Inc.

ASHandle:
AS13335

Remove Malware from 190.93.242.5 - Powered by Reason Core Security