50.63.202.43

ip-50-63-202-43.ip.secureserver.net

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 50.63.202.43 is GoDaddy.com, LLC and located in Arizona within the United States. The IP Address resolves to the DNS record of ip-50-63-202-43.ip.secureserver.net. Currently there are 43 domain names that utilize this address. The primary domain hosted by this IP is downloader.ez-download.com along with 42 other domains which are known adware distribution web sites.
Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Dr.Web
Adware.InstallCore.53, Adware.Downware.1664, Adware.InstallCore.86, Adware.InstallCore.122, Adware.InstallCore.133, Trojan.Packed.27643, Program.Unwanted.79, Threat.Undefined
90.00%

Sophos
Install Core, Generic PUA OL, OutBrowse Revenyou, PUA 'Install Core', PUA 'OutBrowse' (of type Adware), PUA 'Install Core Click run software'
87.50%

VIPRE Antivirus
InstallCore, OutBrowse, Threat.4150696, Threat.4823950, Threat.4786018
87.50%

K7 Gateway Antivirus
Unwanted-Program , Adware , Backdoor
85.00%

F-Prot
W32/InstallCore.W.gen, W32/InstallCore.R.gen, W32/InstallCore.R3.gen, W32/Outbrowse.B.gen, W32/A-c9057ef6, W32/A-dbe1ec51
85.00%

Avira AntiVirus
ADWARE/InstallCore.Gen, Adware/InstallCo.HB, Adware/InstallCore.AU.23, APPL/Downloader.Gen, Adware/InstallCo.HK, Adware/InstallCore.AU.1
85.00%

K7 AntiVirus
Unwanted-Program , Adware
80.00%

ESET NOD32
Win32/InstallCore.BL potentially unwanted application, Win32/InstallCore.DP potentially unwanted application, Win32/OutBrowse.G potentially unwanted application
80.00%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594, PE:Malware.InstallCore!6.4, PE:Trojan.Win32.Generic.168E759E!378434974
77.50%

Vba32 AntiVirus
Downloader.OutBrowse, Downware.InstallCore, Downloader.NSIS.OutBrowse.o
77.50%

The following domains resolved to the IP address 50.63.202.43.

File URLs download from 50.63.202.43.

 
Latest 30 of 570 download URLs

The following 5 files have been seen to comunicate with this IP address in live environments.

The geographical location of this IP address.

Country:
United States (US)

Region:
Arizona

City:
Scottsdale

Coordinates:
33.602, -111.888

The ARIN network assigned organization for IP address 50.63.202.43.

Org name:
GoDaddy.com, LLC

Org identifier:
GODAD

Org country:
United States (US)

Org region:
Arizona

Org city:
Scottsdale

Org address:
14455 N Hayden Road

ARIN WHOIS:
NetRange: 50.62.0.0 - 50.63.255.255
CIDR: 50.62.0.0/15
OriginAS: AS26496
NetName: GO-DADDY-COM-LLC
NetHandle: NET-50-62-0-0-1
Parent: NET-50-0-0-0-0
NetType: Direct Allocation
Comment: Please send abuse complaints to abuse@godaddy.com
RegDate: 2011-02-02
Updated: 2014-02-25
Ref: http://whois.arin.net/rest/net/NET-50-62-0-0-1

OrgName: GoDaddy.com, LLC
OrgId: GODAD
Address: 14455 N Hayden Road
Address: Suite 226
City: Scottsdale
StateProv: AZ
PostalCode: 85260
Country: US
RegDate: 2007-06-01
Updated: 2012-03-15
Comment: Please send abuse complaints to abuse@godaddy.com
Ref: http://whois.arin.net/rest/org/GODAD

OrgTechHandle: NOC124-ARIN
OrgTechName: Network Operations Center
OrgTechPhone: +1-480-505-8809
OrgTechEmail: noc@godaddy.com
OrgTechRef: http://whois.arin.net/rest/poc/NOC124-ARIN

OrgAbuseHandle: ABUSE51-ARIN
OrgAbuseName: Abuse Department
OrgAbusePhone: +1-480-624-2505
OrgAbuseEmail: abuse@godaddy.com
OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE51-ARIN

OrgNOCHandle: NOC124-ARIN
OrgNOCName: Network Operations Center
OrgNOCPhone: +1-480-505-8809
OrgNOCEmail: noc@godaddy.com
OrgNOCRef: http://whois.arin.net/rest/poc/NOC124-ARIN

RAbuseHandle: ABUSE51-ARIN
RAbuseName: Abuse Department
RAbusePhone: +1-480-624-2505
RAbuseEmail: abuse@godaddy.com
RAbuseRef: http://whois.arin.net/rest/poc/ABUSE51-ARIN

RTechHandle: NOC124-ARIN
RTechName: Network Operations Center
RTechPhone: +1-480-505-8809
RTechEmail: noc@godaddy.com
RTechRef: http://whois.arin.net/rest/poc/NOC124-ARIN

RNOCHandle: NOC124-ARIN
RNOCName: Network Operations Center
RNOCPhone: +1-480-505-8809
RNOCEmail: noc@godaddy.com
RNOCRef: http://whois.arin.net/rest/poc/NOC124-ARIN


Remove Malware from 50.63.202.43 - Powered by Reason Core Security