Locky Distribution Site :: mondegraphic.com

Host Information

Locky Distribution Site:mondegraphic.com
Threat:Distribution Site
Malware:Locky
URL:http://mondegraphic.com/098tb
Host Status:offline
Blacklist check:Spamhaus DBL:LISTED
 SURBL:Not Listed
Domain Registar:ENOM, INC.
Firstseen (UTC):2016-12-09 06:38:49
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
no2018-09-27 02:15:042019-05-20 02:09:11195.22.26.248anubisnetworks.comNot listedAS8426CLARANET-AS ClaraNET LTD, GB- Portugal (PT)
no2019-05-21 02:09:432019-06-05 02:08:5464.95.103.188Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-05-31 02:10:592019-06-02 02:10:2364.95.103.187Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-05-24 02:09:282019-05-27 02:09:3364.95.103.184Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-06-06 02:09:242019-06-10 02:08:5564.95.103.182Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-05-28 02:09:432019-05-30 02:09:1664.95.103.181Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-06-11 02:09:152019-08-05 02:09:2063.251.106.21Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-09-27 02:11:132019-11-06 02:08:5352.4.209.250ec2-52-4-209-250.compute-1.amazonaws.comNot listedAS14618AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2016-12-09 07:15:522017-05-12 01:35:2237.187.143.115server01.agrawmedia.comNot listedAS16276OVH , FR- France (FR)
no2019-08-17 02:09:202019-08-18 02:08:51162.217.98.133Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-09-27 02:11:132019-11-06 02:08:5218.215.128.143ec2-18-215-128-143.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2019-09-27 02:11:132019-11-06 02:08:5218.213.250.117ec2-18-213-250-117.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2019-08-29 02:10:372019-09-02 02:10:29162.217.98.144Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-08-19 02:09:122019-08-28 02:09:17162.217.98.140Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-08-06 02:09:132019-08-16 02:10:42162.217.98.139Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-09-18 02:10:142019-09-26 02:08:59162.217.98.137Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)
no2019-09-04 02:08:512019-09-15 02:08:41162.217.98.134Not listedAS29791VOXEL-DOT-NET - Internap Corporation, US- United States (US)

# IPs found: 17 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-12-09 07:06:36fa50bbb7c874123cd87eff1f13f71d5c172'032 bytesVirustotal results 18/57 (31.58%) n/a

Unique dropped files: 1