Locky Distribution Site :: stxtrade.com

Host Information

Locky Distribution Site:stxtrade.com
Threat:Distribution Site
Malware:Locky
URL:http://stxtrade.com/6v5r7thh
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:GODADDY.COM, LLC
Nameserver(s):jm1.dns.com
 jm2.dns.com
Firstseen (UTC):2016-12-02 13:02:22
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-05-15 01:13:102019-07-20 01:13:11154.223.251.29Not listedAS134705ITACE-AS-AP Itace International Limited,[...]- United States (US)
no2017-12-16 02:13:352017-12-17 02:10:26184.168.221.81ip-184-168-221-81.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-16 01:04:26never50.63.202.94ip-50-63-202-94.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-24 01:01:512018-01-03 01:03:2050.63.202.93ip-50-63-202-93.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-28 01:01:17never50.63.202.90ip-50-63-202-90.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-22 01:34:472018-01-02 01:03:2150.63.202.87ip-50-63-202-87.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-18 02:11:18never50.63.202.85ip-50-63-202-85.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-08 01:03:16never50.63.202.83ip-50-63-202-83.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-06 01:03:132018-01-17 01:05:2350.63.202.80ip-50-63-202-80.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-19 01:04:29never50.63.202.71ip-50-63-202-71.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-09 01:03:25never50.63.202.68ip-50-63-202-68.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2016-12-15 04:34:522016-12-17 03:45:4050.63.202.38ip-50-63-202-38.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-15 01:04:162018-01-20 01:04:11184.168.221.92ip-184-168-221-92.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-20 05:41:312017-12-27 01:00:31184.168.221.89ip-184-168-221-89.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-05 01:03:192018-01-13 01:04:31184.168.221.82ip-184-168-221-82.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-01 01:13:012019-03-23 01:12:33103.232.215.153Not listedAS18779EGIHOSTING - EGIHosting, US- China (CN)
no2018-01-12 01:03:072018-01-14 01:04:29184.168.221.78ip-184-168-221-78.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-19 05:33:122017-12-30 01:15:32184.168.221.77ip-184-168-221-77.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-04 01:03:12never184.168.221.75ip-184-168-221-75.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-01-11 01:03:302018-01-18 01:04:53184.168.221.74ip-184-168-221-74.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-23 01:02:302018-01-01 01:03:24184.168.221.70ip-184-168-221-70.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-12-29 01:14:062017-12-31 01:03:14184.168.221.65ip-184-168-221-65.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-24 01:12:382019-03-29 01:12:31127.0.0.1localhostNot listedAS9498BBIL-AP BHARTI Airtel Ltd., INn/a
no2016-12-02 17:25:372017-03-27 01:35:57113.10.206.225Not listedAS17444NWT-AS-AP AS number for New World Teleph[...]- Hong Kong (HK)
no2017-08-19 01:21:242017-12-15 02:09:50113.10.199.66Not listedAS17444NWT-AS-AP AS number for New World Teleph[...]- Hong Kong (HK)

# IPs found: 25 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-12-02 11:32:29d03e52875d280fb14b6299135afe21cd180'224 bytesVirustotal results 10/59 (16.95%) n/a

Unique dropped files: 1