Locky Distribution Site :: prmiramar.com

Host Information

Locky Distribution Site:prmiramar.com
Threat:Distribution Site
Malware:Locky
URL:http://prmiramar.com/g3r7ewc
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:ENOM, INC.
Nameserver(s):nsb1.k8.com.br
 nsb2.k8.com.br
 nsb3.k8.com.br
 nsb4.k8.com.br
 nsb5.k8.com.br
 nsb6.k8.com.br
Firstseen (UTC):2016-11-24 11:20:37
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2018-05-08 02:02:252019-11-11 07:00:32192.241.146.220Not listedAS14061DIGITALOCEAN-ASN - DigitalOcean, LLC, US- United States (US)
yes2018-05-08 02:02:242019-11-11 07:00:3245.55.195.124Not listedAS14061DIGITALOCEAN-ASN - DigitalOcean, LLC, US- United States (US)
no2018-05-08 02:02:262018-08-08 07:13:13177.71.183.219ec2-177-71-183-219.sa-east-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Brazil (BR)
no2018-05-08 02:02:262018-08-08 07:13:12177.71.188.70ec2-177-71-188-70.sa-east-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Brazil (BR)
no2018-08-30 07:09:282018-09-14 07:11:5418.228.88.22ec2-18-228-88-22.sa-east-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2018-08-30 07:09:262018-09-14 07:11:5418.228.96.25ec2-18-228-96-25.sa-east-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2017-06-28 01:19:252018-05-07 07:13:12187.73.33.58web115.f1.k8.com.brNot listedAS262672Digirati Inform195161tica, servi195167os[...]- Brazil (BR)
no2016-11-24 16:08:442017-06-27 01:17:36187.73.33.61web118.f1.k8.com.brNot listedAS262672Digirati Inform195161tica, servi195167os[...]- Brazil (BR)
no2018-08-30 07:09:262019-01-31 07:01:52209.97.138.87eniyibahissiteleri2019.infoNot listedAS14061DIGITALOCEAN-ASN - DigitalOcean, LLC, US- United States (US)
no2018-08-30 07:09:282018-09-14 07:11:5334.248.93.175ec2-34-248-93-175.eu-west-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Ireland (IE)
no2018-05-08 02:02:252018-08-08 07:13:1254.228.191.204ec2-54-228-191-204.eu-west-1.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- Ireland (IE)
no2018-05-08 02:02:272018-08-08 07:13:1354.83.41.200ec2-54-83-41-200.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2017-03-05 01:24:472017-04-08 01:23:4498.124.204.16Not listedAS21740ENOMAS1 - eNom, Incorporated, US- United States (US)

# IPs found: 13 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-11-24 16:08:1874290d773da02911e9564ce964ee0d2d241'664 bytesVirustotal results 10/56 (17.86%) n/a

Unique dropped files: 1