The Internet Service Provider (ISP) that owns the network address of 126.96.36.199 is Amazon Technologies Inc. and located in Virginia within the United States. The IP Address resolves to the DNS record of ec2-54-243-102-127.compute-1.amazonaws.com. Currently there are 2 domain names that utilize this address. The primary domain hosted by this IP is downloadju.com along with 1 other domains which are known adware distribution web sites. This is an Amazon Web Services (AWS) Elastic IP Address and is hosted within the AWS cloud computing platform.
Detections (98% detected)
PE:Malware.iBryte!6.14B5, PE:PUF.PremiumInstaller!1.9F73, PE:Malware.Agent!6.1684, PE:Malware.iBryte!6.192B, PE:Malware.Agent!6.175E
AdInstaller.ExpressInstall, Adware Skodna.Generic, AdPlugin, MalSign.Generic, Skodna.Generic.AVR, Adware Skodna.Generic.AVR
HEUR:Trojan.Win32.Generic, not-a-virus:Downloader.Win32.Agent, Trojan.Win32.Badur, not-a-virus:AdWare.Win32.iBryte
K7 Gateway Antivirus
Unwanted-Program , Unwanted-File
Optimum Installer, Threat.4150696, Threat.4778314
PUP.Installer.FUSIONINSTALL.G, PUP.Installer.INSTALLDOTEXE.G, PUP.Installer.WARPINSTALL.G, PUP.Installer.WARPINSTALLER.G
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:Somoto-N [PUP], Win32:IBryte-DA [PUP], Win32:IBryte-CX [PUP], Win32:IBryte-CY [PUP]
iBryte Optimum Installer
The following domains resolved to the IP address 188.8.131.52.
File URLs download from 184.108.40.206.
The geographical location of this IP address.
United States (US)
The ARIN network assigned organization for IP address 220.127.116.11.
Amazon Technologies Inc.
Amazon Technologies Inc. AMAZON-2011L (NET-54-240-0-0-1) 18.104.22.168 - 22.214.171.124
Amazon.com, Inc. AMAZO-ZIAD1 (NET-54-242-0-0-1) 126.96.36.199 - 188.8.131.52
AMAZON-AES - Amazon.com, Inc.