54.230.195.35

server-54-230-195-35.iad53.r.cloudfront.net

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 54.230.195.35 is Amazon Technologies Inc. and located in Virginia within the United States. The IP Address resolves to the DNS record of server-54-230-195-35.iad53.r.cloudfront.net. Currently there are 83 domain names that utilize this address. This IP is part of Amazon's Cloudfront Content Delivery Network which distributes content for a number of domains.
Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
Bundler.PPI.Softonic.e, Bundler.PPI.Softonic.i, Bundler.PPI.Softonic.EE, Bundler.PPI.Softonic.GG, Bundler.PPI.Softonic.DD, Bundler.PPI.Softonic.m, Bundler.PPI.Softonic.k, Bundler.PPI.Softonic.l, Bundler.PPI.Softonic.FF, Bundler.PPI.Softonic.g, Bundler.PPI.Softonic.j, Bundler.PPI.Softonic.n, Bundler.PPI.Softonic.b, Bundler.PPI.Softonic.a, Bundler.PPI.Softonic.f, Bundler.PPI.Softonic.c, Bundler.PPI.Softonic.h, PUP.Softonic.Bundler (M), Bundler.PPI.Softonic.CC
93.88%

Dr.Web
Adware.Downware.1657, Adware.Downware.1132, Adware.Downware.1515, Adware.Downware.1486, Adware.Downware.910, Adware.Downware.804
89.80%

VIPRE Antivirus
Softonic Downloader, Trojan-Downloader.Win32.Agent
83.67%

Malwarebytes
PUP.Optional.Softonic.A, PUP.Optional.OpenCandy
81.63%

Trend Micro House Call
TROJ_GEN.F47V1214, TROJ_GEN.F47V1114, TROJ_GEN.F47V0506, TROJ_GEN.F47V1108, TROJ_GEN.F47V0921, TROJ_GEN.F47V1012, TROJ_GEN.F47V1015
79.59%

ESET NOD32
Win32/SoftonicDownloader (variant), Win32/OpenCandy
79.59%

herdProtect (fuzzy)
a variant of 801cf4c1f7a97171896b56fcd6f2caa42f909f28, a variant of 974cebf37ca33a392bcbf8eda40ba527f5eb085c, a variant of 759c0c13038b12c827dd5bcf389c725a76fc1d21
75.51%

Rising Antivirus
PE:Malware.Obscure/Heur!1.9E03, PE:PUF.OpenCandy!1.9DE5, PE:Malware.Obscure/Huer!1.9E03, PE:Malware.XPACK-LNR/Heur!1.5594
63.27%

McAfee
Artemis!2105458A6299, Artemis!9B01F1C57E7A, Artemis!0FC0982E2C91, Artemis!F8F51F5327A8, Artemis!68F72B842F87, Artemis!77A2DAD07D2E, Artemis!BC20686D6784, Artemis!4A974070A3BD, Artemis!6E8BE7F324D6, Artemis!3F5221D8D2D1
51.02%

Bkav FE
W32.Clod543.Trojan, W32.Clodac0.Trojan, W32.Clod823.Trojan, W32.Clodfeb.Trojan, W32.Clodcda.Trojan, HW32.CDB, W32.Clodd88.Trojan
22.45%

The following domains resolved to the IP address 54.230.195.35.

Latest 50 of 83 domains

File URLs download from 54.230.195.35.

15 / 68    (PUP)

1 / 68

8 / 68      (PUP)

9 / 68      (PUP)

8 / 68      (PUP)

9 / 68      (PUP)

0 / 68
http://sd-cf.en.softonic.com/92000/92269/.../FreeVK.exe  (9b66d883cd374f0efeeee9fc98281e99)

9 / 68      (PUP)

6 / 68      (PUP)

3 / 68      (PUP)

9 / 68      (PUP)

9 / 68      (PUP)

9 / 68      (PUP)

9 / 68      (PUP)

8 / 68      (PUP)

4 / 68      (Adware)

9 / 68      (PUP)

9 / 68      (PUP)

9 / 68      (PUP)

 
Latest 30 of 139,327 download URLs

The following 2 files have been seen to comunicate with this IP address in live environments.

The geographical location of this IP address.

Country:
United States (US)

Region:
Virginia

City:
Ashburn

Coordinates:
39.0437, -77.4875

The ARIN network assigned organization for IP address 54.230.195.35.

Org name:
Amazon Technologies Inc.

ARIN WHOIS:
Amazon Technologies Inc. AMAZON-2011L (NET-54-224-0-0-1) 54.224.0.0 - 54.239.255.255
Amazon.com, Inc. AMAZO-ZL4 (NET-54-230-0-0-1) 54.230.0.0 - 54.231.255.255



Autonomous System Assignment
ASNumber:
16509

ASName:
AMAZON-02 - Amazon.com, Inc.

ASHandle:
AS16509

Remove Malware from 54.230.195.35 - Powered by Reason Core Security