54.230.39.45

server-54-230-39-45.jfk1.r.cloudfront.net

IP Address Information

The IP Address resolves to the DNS record of server-54-230-39-45.jfk1.r.cloudfront.net. Currently there are 41 domain names that utilize this address. This IP is part of Amazon's Cloudfront Content Delivery Network which distributes content for a number of domains.
Scanner detections:
Detections  (58% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BetterInstaller.Somoto.g, PUP.BetterInstaller.Somoto.d, PUP.BetterInstaller.Somoto.b, PUP.BetterInstaller.Somoto.j, PUP.BetterInstaller.Somoto.k, PUP.BetterInstaller.Somoto.?, PUP.BetterInstaller.Somoto.c, PUP.BetterInstaller.Somoto.m, PUP.BetterInstaller.Somoto.f, PUP.BetterInstaller.Somoto.t
100.00%

avast!
Win32:Somoto-F [PUP], Win32:Somoto-K [PUP], Win32:PUP-gen [PUP], Win32:Somoto-B [PUP], Somoto-J [PUP]
89.66%

Clam AntiVirus
Adware.Somoto-1, Win.Adware.Somoto
89.66%

Sophos
Somoto BetterInstaller
89.66%

Dr.Web
Adware.Somoto.17, Adware.Somoto.8
89.66%

VIPRE Antivirus
BetterInstaller, Trojan.Win32.Generic, Threat.4783461
89.66%

F-Prot
W32/SomotoBetterInstaller.A
89.66%

ESET NOD32
Win32/Somoto, Win32/Somoto (variant)
86.21%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.Somoto.A
86.21%

SUPERAntiSpyware
Adware.Somoto/Variant
86.21%

The following domains resolved to the IP address 54.230.39.45.

File URLs download from 54.230.39.45.

19 / 68    (Adware)

16 / 68    (Adware)

25 / 68    (Adware)

27 / 68    (Adware)

1 / 68      (Adware)

 
Latest 30 of 135,382 download URLs

The following 2 files have been seen to comunicate with this IP address in live environments.

TCP port 80

The geographical location of this IP address.

Country:
United States (US)

Region:
Virginia

City:
Ashburn

Coordinates:
39.0437, -77.4875

ARIN WHOIS:
Amazon Technologies Inc. AMAZON-2011L (NET-54-224-0-0-1) 54.224.0.0 - 54.239.255.255
Amazon.com, Inc. AMAZO-ZL4 (NET-54-230-0-0-1) 54.230.0.0 - 54.231.255.255



Autonomous System Assignment
ASNumber:
16509

ASName:
AMAZON-02 - Amazon.com, Inc.

ASHandle:
AS16509

Remove Malware from 54.230.39.45 - Powered by Reason Core Security