Locky Distribution Site :: ekolapsm.top

Host Information

Locky Distribution Site:ekolapsm.top
Threat:Distribution Site
Malware:Locky
URL:http://ekolapsm.top/admin.php?f=1
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:Eranet International Limited
Firstseen (UTC):2017-09-18 12:12:33
Lastseen (UTC):

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2017-09-20 08:20:452017-09-20 15:41:54107.23.194.179ec2-107-23-194-179.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2018-09-20 05:33:152018-10-21 05:36:47127.0.0.1localhostNot listedAS9498BBIL-AP BHARTI Airtel Ltd., INn/a
no2017-09-19 14:40:102017-09-19 15:43:5613.59.9.13ec2-13-59-9-13.us-east-2.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2017-09-18 12:13:112017-09-19 14:37:5647.88.51.250Not listedAS45102CNNIC-ALIBABA-CN-NET-AP Alibaba (China) [...]- United States (US)
no2017-09-20 15:44:332017-09-27 15:35:1547.89.249.183Not listedAS45102CNNIC-ALIBABA-CN-NET-AP Alibaba (China) [...]- United States (US)
no2017-09-19 15:46:102017-09-20 08:18:0449.51.135.41ptr-default.cloud.tencent.comNot listedAS132203TENCENT-NET-AP-CN Tencent Building, Keji[...]- China (CN)

# IPs found: 6 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2017-09-18 14:00:08ffbd23b7061d68dd794e8a0bc312ccb7649'216 bytesVirustotal results 14/65 (21.54%) n/a
2017-09-18 13:30:094b1bba7257743de7bfdaef3e0d4a30e7649'216 bytesVirustotal results 16/65 (24.62%) n/a
2017-09-18 12:13:09cd5ccd80f3dcc530a4c48595d4e87e56528'896 bytesVirustotal results 33/65 (50.77%) n/a

Unique dropped files: 3