The Internet Service Provider (ISP) that owns the network address of 126.96.36.199 is Amazon Technologies Inc. and located in Virginia within the United States. The IP Address resolves to the DNS record of ec2-54-243-102-127.compute-1.amazonaws.com. Currently there are 2 domain names that utilize this address. The primary domain hosted by this IP is downloadju.com along with 1 other domains which are known adware distribution web sites. This is an Amazon Web Services (AWS) Elastic IP Address and is hosted within the AWS cloud computing platform.
Detections (98% detected)
PE:Malware.iBryte!6.14B5, PE:PUF.PremiumInstaller!1.9F73, PE:Malware.Agent!6.1684, PE:Malware.iBryte!6.192B, PE:Malware.Agent!6.175E
AdInstaller.ExpressInstall, Adware Skodna.Generic, AdPlugin, MalSign.Generic, Adware Skodna.Generic.AVR, Adware Skodna.Generic.AUF
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Somoto-N [PUP], Win32:IBryte-DA [PUP], Win32:IBryte-CY [PUP], Win32:IBryte-CX [PUP]
HEUR:Trojan.Win32.Generic, not-a-virus:Downloader.Win32.Agent, Trojan.Win32.Badur, not-a-virus:AdWare.Win32.iBryte
K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
PUP.Installer.FUSIONINSTALL.G, PUP.Installer.INSTALLDOTEXE.G, PUP.Installer.WARPINSTALL.G, PUP.Installer.WARPINSTALLER.G
Optimum Installer, Threat.4150696, Threat.4778314, Trojan.Win32.Generic
iBryte Optimum Installer
The following domains resolved to the IP address 188.8.131.52.
File URLs download from 184.108.40.206.
The geographical location of this IP address.
United States (US)
The ARIN network assigned organization for IP address 220.127.116.11.
Amazon Technologies Inc.
Amazon Technologies Inc. AMAZON-2011L (NET-54-240-0-0-1) 18.104.22.168 - 22.214.171.124
Amazon.com, Inc. AMAZO-ZIAD1 (NET-54-242-0-0-1) 126.96.36.199 - 188.8.131.52
AMAZON-AES - Amazon.com, Inc.