Locky Distribution Site :: 3tr.ru

Host Information

Locky Distribution Site:3tr.ru
Threat:Distribution Site
Malware:Locky
URL:http://3tr.ru/f92o6
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:REGTIME-RU
Firstseen (UTC):2016-11-03 06:00:29
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2017-01-11 09:22:312018-11-18 03:10:06185.117.153.236iakuvina.myihor.ruNot listedAS48666AS-MAROSNET Moscow, Russia, RU- Russian Federation (RU)
no2018-04-18 01:17:432018-09-04 03:12:04185.238.137.221ih1058774.vds.myihor.ruNot listedAS48666AS-MAROSNET Moscow, Russia, RU- Russian Federation (RU)
no2016-11-23 23:46:322017-01-10 09:00:2662.109.17.105bingvds.ruNot listedAS29182ISPSYSTEM-AS ISPsystem Autonomous System[...]- Russian Federation (RU)
no2016-11-03 07:09:422016-11-23 17:08:2291.238.24.218Not listedAS58048BEZHECK-AS , RU- Russian Federation (RU)

# IPs found: 4 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-11-03 07:09:41646dd16f2c4b516f8fd7685f1a2ff862118'784 bytesVirustotal results 22/57 (38.60%) n/a

Unique dropped files: 1