The Internet Service Provider (ISP) that owns the network address of 18.104.22.168 is Amazon Technologies Inc. and located in Virginia within the United States. The IP Address resolves to the DNS record of ec2-54-243-102-127.compute-1.amazonaws.com. Currently there are 2 domain names that utilize this address. The primary domain hosted by this IP is downloadju.com along with 1 other domains which are known adware distribution web sites. This is an Amazon Web Services (AWS) Elastic IP Address and is hosted within the AWS cloud computing platform.
Detections (100% detected)
PE:Malware.iBryte!6.14B5, PE:PUF.PremiumInstaller!1.9F73, PE:Malware.Agent!6.1684, PE:Malware.iBryte!6.192B, PE:Malware.Agent!6.175E
AdInstaller.ExpressInstall, Adware Skodna.Generic, AdPlugin, MalSign.Generic, Skodna.Generic.AVR, Adware Skodna.Generic.AVR
HEUR:Trojan.Win32.Generic, not-a-virus:Downloader.Win32.Agent, Trojan.Win32.Badur, not-a-virus:AdWare.Win32.iBryte
K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
PUP.Installer.FUSIONINSTALL.G, PUP.Installer.INSTALLDOTEXE.G, PUP.Installer.WARPINSTALL.G, PUP.Installer.WARPINSTALLER.G
Optimum Installer, Threat.4150696, Threat.4778314
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Somoto-N [PUP], Win32:IBryte-DA [PUP], Win32:IBryte-CX [PUP], Win32:IBryte-CY [PUP]
iBryte Optimum Installer
The following domains resolved to the IP address 22.214.171.124.
File URLs download from 126.96.36.199.
The geographical location of this IP address.
United States (US)
The ARIN network assigned organization for IP address 188.8.131.52.
Amazon Technologies Inc.
Amazon Technologies Inc. AMAZON-2011L (NET-54-240-0-0-1) 184.108.40.206 - 220.127.116.11
Amazon.com, Inc. AMAZO-ZIAD1 (NET-54-242-0-0-1) 18.104.22.168 - 22.214.171.124
AMAZON-AES - Amazon.com, Inc.