54.230.37.181

server-54-230-37-181.jfk1.r.cloudfront.net

IP Address Information

The IP Address resolves to the DNS record of server-54-230-37-181.jfk1.r.cloudfront.net. Currently there are 71 domain names that utilize this address. This IP is part of Amazon's Cloudfront Content Delivery Network which distributes content for a number of domains.
Scanner detections:
Detections  (57% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Somoto, Win32/Bundled.Toolbar.Google
84.21%

Reason Heuristics
PUP.BetterInstaller.Somoto.g, PUP.BetterInstaller.Somoto.d, PUP.BetterInstaller.Somoto.b, PUP.BetterInstaller.Somoto.f, PUP.BetterInstaller.Somoto.FF, PUP.BetterInstaller.Somoto.l, PUP.BetterInstaller.Somoto.EE, PUP.BetterInstaller.Somoto.h, PUP.BetterInstaller.Somoto.n, PUP.BetterInstaller.Somoto.j, PUP.BetterInstaller.Somoto.?
73.68%

avast!
Win32:Somoto-F [PUP], Win32:PUP-gen [PUP], Win32:Somoto-R [PUP]
68.42%

Clam AntiVirus
Adware.Somoto-1, Win.Adware.Somoto
68.42%

Sophos
Somoto BetterInstaller, PUA 'Somoto BetterInstaller'
68.42%

Dr.Web
Adware.Somoto.17, Trojan.Packed.28357
68.42%

VIPRE Antivirus
BetterInstaller, Threat.4783461, Trojan.Win32.Generic
68.42%

SUPERAntiSpyware
Adware.Somoto/Variant, PUP.Somoto/Variant
68.42%

AVG
BTInternet.G, AdInstaller.Somoto, Adware AdInstaller.Somoto, Generic
68.42%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.Somoto.A
65.79%

The following domains resolved to the IP address 54.230.37.181.

Latest 50 of 71 domains

File URLs download from 54.230.37.181.

18 / 68    (Adware)

25 / 68    (Adware)

22 / 68    (Adware)

23 / 68    (Adware)

0 / 68
http://download.piriform.com/ccsetup407.exe  (76b1717148c114d3a47147b1a5ccffea)

0 / 68
http://download.piriform.com/rcsetup144.exe  (3bfe7685fa597ea45b529bf250c3884d)

 
Latest 30 of 140,550 download URLs

The following 3 files have been seen to comunicate with this IP address in live environments.

The geographical location of this IP address.

Country:
United States (US)

Region:
Virginia

City:
Ashburn

Coordinates:
39.0437, -77.4875

ARIN WHOIS:
Amazon Technologies Inc. AMAZON-2011L (NET-54-224-0-0-1) 54.224.0.0 - 54.239.255.255
Amazon.com, Inc. AMAZO-ZL4 (NET-54-230-0-0-1) 54.230.0.0 - 54.231.255.255



Autonomous System Assignment
ASNumber:
16509

ASName:
AMAZON-02 - Amazon.com, Inc.

ASHandle:
AS16509

Remove Malware from 54.230.37.181 - Powered by Reason Core Security