54.235.115.186

ec2-54-235-115-186.compute-1.amazonaws.com

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 54.235.115.186 is Amazon.com, Inc. and located in Virginia within the United States. The IP Address resolves to the DNS record of ec2-54-235-115-186.compute-1.amazonaws.com. Currently there are 9 domain names that utilize this address. The primary domain hosted by this IP is www.joydownload.com along with 8 other domains which are known adware distribution web sites. This is an Amazon Web Services (AWS) Elastic IP Address and is hosted within the AWS cloud computing platform.
Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SevasS.b, PUP.SevasS.R, PUP.SevasS.Z, PUP.SevasS.V, PUP.SevasS.P, PUP.Installer.SevasS.R, PUP.Installer.SevasS.DD, PUP.SevasS.BB, PUP.SevasS.M, PUP.Installer.SevasS.V, PUP.SevasS.Q, PUP.SevasS.J, PUP.SevasS.DD
97.87%

Malwarebytes
PUP.Optional.OpenCandy
95.74%

Dr.Web
Adware.Downware.1446
93.62%

ESET NOD32
Win32/JoyDownloader, Win32/OpenCandy
93.62%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
87.23%

Trend Micro House Call
TROJ_GEN.F47V0912, TROJ_GEN.F47V1017, TROJ_GEN.F47V1009, TROJ_GEN.F47V1029, TROJ_GEN.F47V0909, TROJ_GEN.F47V1018, TROJ_GEN.F47V1104
82.98%

McAfee
Artemis!EF44C75D74F2, Artemis!7B21141237E8, Artemis!182E2784F78F, Artemis!8063DADAF8FD, Artemis!DEF32AE932B4, Artemis!27E37E902169, Artemis!F08AA3B17AAF, Artemis!4630DCFEFB06, Artemis!1DB7012130E5, Artemis!3ED3202235F0, Artemis!30F793226CF5, Artemis!C3542218EAC1, Artemis!5163BA407AA3, Artemis!76AC77091783, Artemis!130EEDA1E119, Artemis!CD67D7AB623B, Artemis!CA10E8AF699B, Artemis!A32DA0691E74, Artemis!D82DD19BA09F, Artemis!86B8BF9EDA78, Artemis!B96AEDCF4888, Artemis!AE227656F901
78.72%

McAfee Web Gateway
Artemis!EF44C75D74F2, Artemis!7B21141237E8, Artemis!182E2784F78F, Artemis!8063DADAF8FD, Artemis!DEF32AE932B4, Artemis!27E37E902169
78.72%

Antiy Labs AVL
Trojan/Win32.Generic
74.47%

herdProtect (fuzzy)
a variant of 0cf5301154f5f364e803d712a10a0b01ed501d87, a variant of 8d82c286fdf9a4ae392e7601e0fb0b09ddf760a1, a variant of 53f0c3bade2df7bce7eafd48c79581cce4d416e6
74.47%

The following domains resolved to the IP address 54.235.115.186.

File URLs download from 54.235.115.186.

13 / 68    (Adware)

23 / 68    (Adware)

15 / 68    (Adware)

9 / 68      (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

24 / 68    (Adware)

14 / 68    (Adware)

8 / 68      (Adware)
http://www.joydownload.com/d/.../idman617b7-aoc-jd.exe  (f98e22661ae56d5662cbe603151262bc)

13 / 68    (Adware)

17 / 68    (Adware)

12 / 68    (Adware)

12 / 68    (Adware)

4 / 68      (Adware)
http://www.joydownload.com/d/.../DM-338-jd.exe  (c96471e150bf6493e66fbcc74bf2fa07)

1 / 68      (Adware)
http://www.joydownload.com/d/.../RealPlayer-avg-jd.exe  (9af4f100a168d18b071560c05b804602)

13 / 68    (Adware)
http://www.joydownload.com/d/.../fdminst-aoc-jd.exe  (c3542218eac1fef5c5872cae06e5b11f)

 
Latest 30 of 2,014 download URLs

The geographical location of this IP address.

Country:
United States (US)

Region:
Virginia

City:
Ashburn

Coordinates:
39.0437, -77.4875

The ARIN network assigned organization for IP address 54.235.115.186.

Org name:
Amazon.com, Inc.

ARIN WHOIS:

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# http://www.arin.net/public/whoisinaccuracy/index.xhtml
#


#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=54.235.115.186?showDetails=true&showARIN=false&showNonArinTopLevelNet=false&ext=netref2
#

Amazon.com, Inc. AMAZO-ZIAD2 (NET-54-234-0-0-1) 54.234.0.0 - 54.235.255.255
Amazon Technologies Inc. AMAZON-2011L (NET-54-224-0-0-1) 54.224.0.0 - 54.239.255.255



#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# http://www.arin.net/public/whoisinaccuracy/index.xhtml
#


Autonomous System Assignment
ASNumber:
14618

ASName:
AMAZON-AES - Amazon.com, Inc.,US

ASHandle:
AS14618

Remove Malware from 54.235.115.186 - Powered by Reason Core Security