TorrentLocker Distribution Site ::

Host Information

TorrentLocker Distribution
Threat:Distribution Site
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
Domain Registar:InternetX GmbH
Firstseen (UTC):2017-03-28 09:25:24
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this TorrentLocker Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2017-03-29 01:00:482017-04-01 07:22:4991.227.18.48v110247.kvm.test-hf.suNot listedAS207027EXIMIUS-AS, RU- Russian Federation (RU)
no2017-03-28 09:25:242017-03-28 09:26:1993.119.123.203justsolutions.onlineNot listedAS49981WORLDSTREAM +++ Transit Imports, NL- Netherlands (NL)

# IPs found: 2 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2017-03-30 01:00:42e14d9ccebbb59db0c3a388027417606f353'123 bytesVirustotal results 17/62 (27.42%) n/a
2017-03-29 01:00:461f1e3a0b6fb6e95a77580beef6119630379'102 bytesVirustotal results 17/62 (27.42%) n/a
2017-03-28 09:26:18f955b3865481378c16f891d590df44ff379'098 bytesn/an/a

Unique dropped files: 3