Locky Distribution Site :: 917flw.com

Host Information

Locky Distribution Site:917flw.com
Threat:Distribution Site
Malware:Locky
URL:http://917flw.com/ruhcqho
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:ENAME TECHNOLOGY CO., LTD.
Nameserver(s):ns5.dnsdun.com
 ns5.dnsdun.net
Firstseen (UTC):2016-11-04 06:27:55
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-04-20 07:24:032019-07-21 07:21:18209.40.112.7designed.siongain.comNot listedAS55933CLOUDIE-AS-AP Cloudie Limited, HK- United States (US)
no2017-03-10 13:05:412018-03-11 01:55:55103.215.214.169Not listedAS132839SUNHK-DATA-AS-AP Sun Network (Hong Kong)[...]- Hong Kong (HK)
no2018-03-12 01:59:472018-03-14 01:57:02103.232.215.130Not listedAS18779EGIHOSTING - EGIHosting, US- China (CN)
no2017-01-16 08:23:022017-01-27 07:56:25107.167.19.80customer.sharktech.netNot listedAS46844ST-BGP - Sharktech, US- United States (US)
no2017-01-16 08:23:022017-01-27 07:56:24107.167.19.81customer.sharktech.netNot listedAS46844ST-BGP - Sharktech, US- United States (US)
no2018-09-02 07:36:102019-04-19 07:25:07107.178.107.169Not listedAS53755IOFLOOD - Input Output Flood LLC, US- United States (US)
no2016-11-04 07:26:502017-01-15 08:09:45122.228.244.196Not listedAS4134CHINANET-BACKBONE No.31,Jin-rong Street,[...]- China (CN)
no2018-03-15 01:58:302018-04-08 01:58:0150.117.113.221Not listedAS18779EGIHOSTING - EGIHosting, US- United States (US)

# IPs found: 8 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-11-04 07:26:36013dddc5b9c3b93f563c99dee2c9de3d199'168 bytesVirustotal results 34/57 (59.65%) n/a

Unique dropped files: 1