Locky Distribution Site :: kraskileto.ru

Host Information

Locky Distribution Site:kraskileto.ru
Threat:Distribution Site
Malware:Locky
URL:http://kraskileto.ru/2bu58w8
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:REGRU-RU
Nameserver(s):ns1.expired.reg.ru
 ns2.expired.reg.ru
Firstseen (UTC):2016-05-21 12:35:54
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-10-17 04:55:382019-10-19 04:53:56194.58.56.80Not listedAS197695AS-REG, RU- Russian Federation (RU)
no2016-05-21 12:35:542017-05-13 01:36:44192.185.21.133Not listedAS20013- United States (US)
no2017-09-21 01:29:262018-04-04 01:30:18192.185.4.85gator4074.hostgator.comNot listedAS20013CYRUSONE - CyrusOne LLC, US- United States (US)
no2018-10-17 05:06:322019-06-11 04:59:1845.33.60.216li1079-216.members.linode.comNot listedAS63949LINODE-AP Linode, LLC, US- United States (US)

# IPs found: 4 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-05-19 15:22:06a24b28c47a307fa9754d2f64c81d7133787'968 bytesVirustotal results 30/56 (53.57%) n/a

Unique dropped files: 1