Locky Distribution Site :: imckart.com

Host Information

Locky Distribution Site:imckart.com
Threat:Distribution Site
Malware:Locky
URL:http://imckart.com/487ygfh
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM
Firstseen (UTC):2016-11-11 16:00:54
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2018-02-24 02:05:14never184.168.221.62ip-184-168-221-62.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-23 02:02:382018-02-27 02:07:3350.63.202.62ip-50-63-202-62.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-12 02:05:272018-03-04 02:08:5550.63.202.59ip-50-63-202-59.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-25 02:07:562018-02-09 02:02:1750.63.202.52ip-50-63-202-52.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-17 02:02:302018-03-10 02:07:4050.63.202.47ip-50-63-202-47.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-23 02:02:582018-01-31 02:04:5850.63.202.40ip-50-63-202-40.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-03-01 02:07:362018-03-02 02:03:5850.63.202.39ip-50-63-202-39.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-11 02:01:362018-02-16 01:59:3050.63.202.32ip-50-63-202-32.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-08-20 01:13:202017-09-28 01:39:05209.99.40.223209-99-40-223.fwd.datafoundry.comNot listedAS3900TEXASNET-ASN - YHC Corporation, US- United States (US)
no2017-08-19 01:13:352017-09-27 01:49:02209.99.40.222209-99-40-222.fwd.datafoundry.comNot listedAS3900TEXASNET-ASN - YHC Corporation, US- United States (US)
no2018-06-01 02:01:532018-06-03 02:02:44185.53.179.8Not listedAS61969TEAMINTERNET-AS , DE- Germany (DE)
no2018-06-04 02:00:312018-06-05 02:04:09185.53.179.7Not listedAS61969TEAMINTERNET-AS, DE- Germany (DE)
no2016-11-11 17:48:492017-08-18 01:14:27103.26.99.147server12.hostingraja.inNot listedAS18229CTRLS-AS-IN CtrlS Datacenters Ltd., IN- India (IN)
no2018-02-08 02:02:30never184.168.221.61ip-184-168-221-61.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-03-08 02:07:55never184.168.221.59ip-184-168-221-59.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-03-11 02:07:18never184.168.221.56ip-184-168-221-56.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-03-06 02:06:282018-03-07 02:05:22184.168.221.54ip-184-168-221-54.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-19 02:06:162018-01-30 02:05:01184.168.221.53ip-184-168-221-53.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-03-12 02:07:21never184.168.221.52ip-184-168-221-52.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-01 02:04:432018-02-05 02:02:30184.168.221.47ip-184-168-221-47.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-29 02:06:422018-03-05 02:08:39184.168.221.39ip-184-168-221-39.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-19 02:02:072018-03-03 02:06:19184.168.221.38ip-184-168-221-38.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-22 02:06:492018-02-14 02:03:30184.168.221.36ip-184-168-221-36.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-02-13 02:02:242018-03-09 02:07:47184.168.221.33ip-184-168-221-33.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)

# IPs found: 24 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-11-11 17:36:320c166763d7342acc2a36f5168ed9a866258'048 bytesVirustotal results 18/60 (30.00%) # Not authorized

Unique dropped files: 1