Locky Distribution Site :: nguoitieudungthongthai.com

Host Information

Locky Distribution Site:nguoitieudungthongthai.com
Threat:Distribution Site
Malware:Locky
URL:http://nguoitieudungthongthai.com/system/logs/987i6u5y4t
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:ONLINENIC, INC.
Nameserver(s):ns16.unimon.asia
 nsx.unimon.asia
Firstseen (UTC):2016-03-09 12:47:10
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2017-09-21 01:51:092018-04-04 01:51:28103.28.39.132Not listedAS131353NHANHOA-AS-VN NhanHoa Software company, [...]- Vietnam (VN)
no2016-03-09 12:47:102017-05-13 02:01:28112.213.89.162ns89162.dotvndns.vnNot listedAS45544SUPERDATA-AS-VN SUPERDATA, VN- Vietnam (VN)
no2018-12-19 03:13:552019-01-16 07:51:4934.254.1.203ec2-34-254-1-203.eu-west-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Ireland (IE)

# IPs found: 3 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-07-28 00:53:543e6a91a0e043e17d2dd549ced24ffc4a1'040 bytesn/an/a
2016-06-28 04:24:351170527ca5133588c05343d3361ec8484'877 bytesn/an/a
2016-03-09 13:28:53536162e0df26db751c3aa192af512413172'544 bytesVirustotal results 6/57 (10.53%) n/a

Unique dropped files: 3