IDS alerts on a clean executable?

See: https://urlquery.net/report.php?id=1446043617765
compare with: https://www.reasoncoresecurity.com/flusb3.0-3.5.107.0.exe-ab7ae9225175159585d27f878d1f352e5f280e03.aspx
The badness history of that IP: https://www.virustotal.com/nl/ip-address/54.231.0.153/information/
Threat events reported: -https://cymon.io/54.231.0.153 (mind that Bitdefender TrafficLight blocks -cymon.io)

polonus