Locky Distribution Site :: santekhnicheskie-raboti.ru

Host Information

Locky Distribution Site:santekhnicheskie-raboti.ru
Threat:Distribution Site
Malware:Locky
URL:http://santekhnicheskie-raboti.ru/4g334g343
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:REGRU-RU
Firstseen (UTC):2016-03-31 15:57:56
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2016-09-11 03:54:23never185.53.177.10Not listedAS61969TEAMINTERNET-AS , DE- Germany (DE)
no2016-09-13 04:08:502016-11-01 09:54:44185.53.177.6Not listedAS61969TEAMINTERNET-AS , DE- Germany (DE)
no2016-11-17 17:09:422017-02-04 15:16:36185.53.178.6Not listedAS61969TEAMINTERNET-AS , DE- Germany (DE)
no2016-09-08 03:49:292016-09-09 03:50:42194.58.56.112Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-09-04 09:26:582016-09-05 09:06:32194.58.56.113Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-13 06:10:192016-09-04 05:21:35194.58.56.115Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-07 02:16:242016-08-13 00:22:37194.58.56.116Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-13 13:49:102017-10-10 01:46:34194.58.56.117Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-13 02:17:352017-09-22 01:47:15194.58.56.119Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-14 13:51:27never194.58.56.139Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-24 03:56:31never194.58.56.19Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-08-11 03:59:45never194.58.56.31Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2017-02-05 15:33:262017-05-13 01:50:4131.31.205.31Not listedAS197695AS-REGRU , RU- Russian Federation (RU)
no2016-03-31 15:57:562016-08-07 00:27:065.101.152.80m2.plasma.beget.ruNot listedAS198610BEGET-AS Beget Ltd, RU- Russian Federation (RU)

# IPs found: 14 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-03-31 16:20:12d8ab7b01bc47e837d74369d7a103b543172'032 bytesVirustotal results 44/57 (77.19%) Locky

Unique dropped files: 1