54.230.37.244

server-54-230-37-244.jfk1.r.cloudfront.net

IP Address Information

The IP Address resolves to the DNS record of server-54-230-37-244.jfk1.r.cloudfront.net. Currently there are 41 domain names that utilize this address. This IP is part of Amazon's Cloudfront Content Delivery Network which distributes content for a number of domains.
Scanner detections:
Detections  (76% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Somoto, Win32/InstallCore.BL, Win32/Bundled.Toolbar.Google, Win32/InstallCore.CF (variant), Win32/Somoto (variant)
95.24%

Reason Heuristics
PUP.BetterInstaller.Somoto.g, PUP.Webcellence.V, PUP.BetterInstaller.Somoto.d, PUP.BetterInstaller.Somoto.b, PUP.Webcellence.P, PUP.BetterInstaller.Somoto.m, PUP.BetterInstaller.Somoto.EE, PUP.BetterInstaller.Somoto.k, PUP.BetterInstaller.Somoto.f, PUP.BetterInstaller.Somoto.v, PUP.BetterInstaller.Somoto.h, PUP.BetterInstaller.Somoto.HH, PUP.BetterInstaller.Somoto.DD
88.10%

Dr.Web
Adware.Somoto.17, Adware.InstallCore.122, Trojan.Packed.24524, Adware.Somoto.8
85.71%

Sophos
Somoto BetterInstaller, Install Core Click run software
83.33%

VIPRE Antivirus
BetterInstaller, InstallCore.b, Threat.4783461, Trojan.Win32.Generic
83.33%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.InstallCore, PUP.Optional.Installcore, PUP.Optional.Somoto.A
78.57%

F-Prot
W32/SomotoBetterInstaller.A, W32/InstallCore.R.gen, W32/InstallCore.R2.gen, W32/InstallCore.R4.gen
78.57%

SUPERAntiSpyware
Adware.Somoto/Variant
61.90%

Clam AntiVirus
Adware.Somoto-1
59.52%

Avira AntiVirus
APPL/Somoto.fbb, Adware/BetterInstall.BJ, APPL/Somoto.hdq, ADWARE/InstallCore.Gen7, APPL/Somoto.Gen2, APPL/Somoto.JBI, APPL/Somoto.ITU.172
59.52%

The following domains resolved to the IP address 54.230.37.244.

File URLs download from 54.230.37.244.

7 / 68      (Adware)

18 / 68    (Adware)

7 / 68      (Adware)

23 / 68    (Adware)

0 / 68
http://download.piriform.com/ccsetup323pro.exe  (0a0c218800831cd6362e5cfa294ddf17)

0 / 68
http://download.piriform.com/ccsetup326.exe  (5f3d2eb5c6cb581c892734ba197bd8d3)

0 / 68
http://download.piriform.com/ccsetup327.exe  (0d7ada905282247f87161be6e0a0b93d)

0 / 68
http://download.piriform.com/ccsetup328.exe  (dfe1f53a9d02fd6cdb4f152f7ffc5255)

 
Latest 30 of 11,351 download URLs

The following 2 files have been seen to comunicate with this IP address in live environments.

The geographical location of this IP address.

Country:
United States (US)

Region:
Virginia

City:
Ashburn

Coordinates:
39.0437, -77.4875

ARIN WHOIS:
Amazon Technologies Inc. AMAZON-2011L (NET-54-224-0-0-1) 54.224.0.0 - 54.239.255.255
Amazon.com, Inc. AMAZO-ZL4 (NET-54-230-0-0-1) 54.230.0.0 - 54.231.255.255



Autonomous System Assignment
ASNumber:
16509

ASName:
AMAZON-02 - Amazon.com, Inc.

ASHandle:
AS16509

Remove Malware from 54.230.37.244 - Powered by Reason Core Security