Locky Distribution Site :: ui.worklab.in

Host Information

Locky Distribution Site:ui.worklab.in
Threat:Distribution Site
Malware:Locky
URL:http://ui.worklab.in/g67eihnrv
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:Endurance Domains Technology Pvt. Ltd. (R173-AFIN)
Firstseen (UTC):2016-10-27 12:53:51
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-11-09 01:22:292019-11-12 01:23:0278.129.208.5078-129-208-50.webcrayons.bizNot listedAS20860IOMART-AS, GB- United Kingdom (GB)
no2016-10-27 13:51:022016-11-09 10:42:5563.142.248.87worklab.inNot listedAS8100ASN-QUADRANET-GLOBAL - QuadraNet, Inc, U[...]- United States (US)
no2019-06-11 01:23:032019-10-12 01:25:0778.129.208.16278-129-208-162.worklab.inNot listedAS20860IOMART-AS, GB- United Kingdom (GB)
no2016-11-09 12:57:362018-07-11 01:29:3978.129.208.5278-129-208-52.webcrayons.bizNot listedAS20860IOMART-AS , GB- United Kingdom (GB)
no2019-10-13 01:25:252019-11-08 01:22:4780.243.180.6060-180-243-80.rackcentre.redstation.net.ukNot listedAS20860IOMART-AS, GB- United Kingdom (GB)

# IPs found: 5 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-10-27 11:16:3509a7090b07de1d0709b905d278088a42278'528 bytesVirustotal results 0/55 (0.00%) n/a

Unique dropped files: 1