Locky Distribution Site :: gdhd1588.com

Host Information

Locky Distribution Site:gdhd1588.com
Threat:Distribution Site
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Firstseen (UTC):2016-10-04 18:03:31
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2018-10-11 08:11:372019-08-12 07:59:01136.0.60.4Not listedAS18779EGIHOSTING - EGIHosting, US- China (CN)
no2016-10-13 10:31:362018-08-10 08:15:13218.247.81.90hks115.edm.myhostadmin.netNot listedAS132719CWDDTCL-AS-AP Chengdu West Dimension Dig[...]- China (CN)
no2018-09-07 08:11:022018-09-09 08:11:1450.117.113.218Not listedAS18779EGIHOSTING - EGIHosting, US- United States (US)
no2018-08-11 08:16:032018-09-06 08:12:2350.117.113.219Not listedAS18779EGIHOSTING - EGIHosting, US- United States (US)
no2018-09-10 08:10:092018-10-08 08:10:4552.78.124.149ec2-52-78-124-149.ap-northeast-2.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Korea, Republic of (KR)
no2016-10-05 00:03:442016-10-06 02:17:2058.64.185.128Not listedAS17444NWT-AS-AP AS number for New World Teleph[...]- Hong Kong (HK)

# IPs found: 6 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-10-04 23:58:23856c3169e2d686bc2ed226f611821923245'760 bytesVirustotal results 5/55 (9.09%) n/a

Unique dropped files: 1