Locky Distribution Site :: builderbazaar.in

Host Information

Locky Distribution Site:builderbazaar.in
Threat:Distribution Site
Malware:Locky
URL:http://builderbazaar.in/c8or236
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:eNom, Inc. (R46-AFIN)
Nameserver(s):ns53.domaincontrol.com
 ns54.domaincontrol.com
Firstseen (UTC):2016-11-03 15:30:37
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-02-04 08:06:182019-07-23 08:11:45184.168.221.35ip-184-168-221-35.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-02-09 08:05:282019-06-23 08:15:53184.168.221.59ip-184-168-221-59.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-05-08 08:09:59never50.63.202.63ip-50-63-202-63.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-10 08:10:02never50.63.202.59ip-50-63-202-59.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-13 08:07:41never50.63.202.58ip-50-63-202-58.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-02-10 08:03:432019-03-25 08:00:4050.63.202.57ip-50-63-202-57.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-26 08:00:492019-03-29 08:03:5350.63.202.52ip-50-63-202-52.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-07-05 08:17:502019-07-20 08:05:4850.63.202.47ip-50-63-202-47.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-02-12 08:05:562019-04-01 08:06:0950.63.202.46ip-50-63-202-46.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-28 08:02:47never50.63.202.40ip-50-63-202-40.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-04 08:03:002019-05-25 08:09:3850.63.202.36ip-50-63-202-36.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-02-16 08:10:16never50.63.202.34ip-50-63-202-34.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-18 08:07:202019-07-17 08:11:4350.63.202.32ip-50-63-202-32.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-04-28 02:02:422018-06-07 01:57:10209.200.154.38a209-200-154-38.deploy.static.akamaitechnologies.comNot listedAS32787PROLEXIC-TECHNOLOGIES-DDOS-MITIGATION-NE[...]- United States (US)
no2019-06-05 08:12:482019-06-27 08:14:15184.168.221.63ip-184-168-221-63.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-07-10 08:13:44never184.168.221.61ip-184-168-221-61.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2016-11-03 17:02:302017-12-05 07:59:16119.81.175.39hk100.arvixeshared.comNot listedAS36351SOFTLAYER - SoftLayer Technologies Inc.,[...]- Hong Kong (HK)
no2019-02-07 08:05:142019-03-31 08:05:19184.168.221.56ip-184-168-221-56.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-07-03 08:14:17never184.168.221.55ip-184-168-221-55.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-03 08:04:532019-05-17 08:08:30184.168.221.52ip-184-168-221-52.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-02-05 08:08:062019-07-19 08:08:49184.168.221.50ip-184-168-221-50.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-02 08:07:052019-05-11 08:08:16184.168.221.49ip-184-168-221-49.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-07-13 08:06:232019-07-16 08:10:54184.168.221.45ip-184-168-221-45.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-06-30 08:12:522019-07-22 08:14:11184.168.221.42ip-184-168-221-42.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-06-02 08:05:352019-06-28 08:11:13184.168.221.41ip-184-168-221-41.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)

# IPs found: 25 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-11-03 17:02:30353db63d060906194babf25231eb97f2185'856 bytesVirustotal results 47/57 (82.46%) n/a

Unique dropped files: 1