GlobeImposter Distribution Site :: kooshesh-co.com

Host Information

GlobeImposter Distribution Site:kooshesh-co.com
Threat:Distribution Site
Malware:GlobeImposter
URL:http://kooshesh-co.com/Mndv63
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:Hosting Concepts B.V. d/b/a Openprovider
Nameserver(s):irns59.serverpars.com
 irns60.serverpars.com
Firstseen (UTC):2017-12-29 08:12:42
Lastseen (UTC):

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this GlobeImposter Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2018-05-23 01:01:272018-12-10 01:08:58185.55.227.119atis.dnswebhost.comNot listedAS201999SERVERPARS, IR- Iran, Islamic Republic of (IR)
no2017-12-29 08:15:352018-05-22 01:01:02107.173.228.238cpa-usa1.servercap.comNot listedAS36352AS-COLOCROSSING - ColoCrossing, US- United States (US)

# IPs found: 2 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Ransomware Tracker could not find any dropped files for this GlobeImposter Distribution Site.