Locky Distribution Site :: flaxxup.com
Host Information
Locky Distribution Site: | flaxxup.com | |
---|---|---|
Threat: | Distribution Site | |
Malware: | Locky | |
URL: | http://flaxxup.com/87yg756f5.exe | |
Host Status: | ||
Blacklist check: | Spamhaus DBL: | |
SURBL: | ||
Domain Registar: | PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM | |
Nameserver(s): | ns25.hostcats.com | |
ns26.hostcats.com | ||
Firstseen (UTC): | 2016-03-15 14:29:43 | |
Lastseen (UTC): | never |
Associated IP addresses
The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.
Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address). yes = Active A record no = Historical record) | Firstseen (UTC) | Lastseen (UTC) | IP address | Hostname | SBL | AS number | AS name | Country |
---|---|---|---|---|---|---|---|---|
yes | 2019-08-29 07:28:29 | 2019-12-07 07:24:47 | 45.64.104.71 | Not listed | AS132335 | NETWORK-LEAPSWITCH-IN LeapSwitch Network[...] | ![]() | |
no | 2018-10-17 07:44:16 | 2019-02-25 07:27:18 | 158.69.103.88 | server75.hostcats.com | Not listed | AS16276 | OVH, FR | ![]() |
no | 2016-12-14 23:01:39 | 2017-12-14 01:53:46 | 209.99.40.222 | 209-99-40-222.fwd.datafoundry.com | Not listed | AS3900 | TEXASNET-ASN - YHC Corporation, US | ![]() |
no | 2016-12-12 21:21:41 | 2017-12-18 01:55:44 | 209.99.40.223 | 209-99-40-223.fwd.datafoundry.com | Not listed | AS3900 | TEXASNET-ASN - YHC Corporation, US | ![]() |
no | 2019-02-26 07:27:02 | 2019-08-28 07:28:35 | 45.64.104.39 | server102.hostcats.com | Not listed | AS132335 | NETWORK-LEAPSWITCH-IN LeapSwitch Network[...] | ![]() |
no | 2016-03-15 14:29:43 | 2018-04-04 01:48:50 | 98.131.204.1 | rev.opentransfer.com.1.204.131.98.in-addr.arpa | Not listed | AS32392 | OPENTRANSFER-ECOMMERCE - Ecommerce Corpo[...] | ![]() |
# IPs found: 6 (max. 25)
Dropped files
Latest 100 files (malware samples) dropped by this distribution site.
Firstseen (UTC) | MD5 hash | Filesize | VT | Signature |
---|---|---|---|---|
2016-03-15 14:57:17 | 69b933a694710f8ceb314dc897a94cbe | 180'224 bytes | ![]() | Locky |
Unique dropped files: 1