Locky Distribution Site :: nvwriter.com

Host Information

Locky Distribution Site:nvwriter.com
Threat:Distribution Site
Malware:Locky
URL:http://nvwriter.com/eh4zm
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:ENOM, INC.
Nameserver(s):nsg1.namebrightdns.com
 nsg2.namebrightdns.com
Firstseen (UTC):2016-09-28 10:37:39
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-07-01 04:48:362019-07-21 04:47:5923.20.239.12ec2-23-20-239-12.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2016-09-28 10:57:442017-10-28 01:31:15143.95.76.234ip-143-95-76-234.iplocalNot listedAS36024COLO4-CO - Colo4, LLC, US- United States (US)
no2017-11-05 01:32:232019-05-24 04:48:24192.145.233.48biz236.inmotionhosting.comNot listedAS22611IMH-WEST - InMotion Hosting, Inc., US- United States (US)
no2019-05-25 04:49:092019-06-30 04:49:1291.195.240.87Not listedAS47846SEDO-AS, DE- Germany (DE)

# IPs found: 4 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-09-28 10:57:4302e661d2ebd1a2a465d02616c4352d78164'356 bytesn/an/a

Unique dropped files: 1