Ransomware IP address :: 208.91.197.91

IP Information

IP address:208.91.197.91
AS number:AS40034
AS name:CONFLUENCE-NETWORK-INC - Confluence Networks Inc, VG
Country:- Virgin Islands, British (VG)
Spamhaus SBL:Not listed

Associated Ransomware Infrastructure

The table below shows all Ransomware infrastructure that is associated with the IP address 208.91.197.91.

Firstseen (UTC)HostActive (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
RegistrarThreatMalware
2017-09-20 08:48:09digiviews.co.uknoFreeparking Domain Registrars Inc. t/a Freeparking Domain Registrars Inc.Distribution SiteLocky
2016-12-13 11:25:25srisaioilfield.comnoPDR LTD. D/B/A PUBLICDOMAINREGISTRY.COMDistribution SiteLocky
2016-11-29 07:08:37hotelsheikhpalace.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-11-21 10:37:47hotelsheikhpalace.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-11-04 06:43:12aircrew.co.innoEndurance Domains Technology Pvt. Ltd. (R173-AFIN)Distribution SiteLocky
2016-11-03 06:15:55aircrew.co.innoEndurance Domains Technology Pvt. Ltd. (R173-AFIN)Distribution SiteLocky
2016-10-28 10:20:45dotpixels.innoGoDaddy.com, LLC (R101-AFIN)Distribution SiteLocky
2016-10-27 16:07:30srisaioilfield.comnoPDR LTD. D/B/A PUBLICDOMAINREGISTRY.COMDistribution SiteLocky
2016-10-27 13:31:38uniquecoders.innoWild West Domains, LLC (R102-AFIN)Distribution SiteLocky
2016-10-27 05:24:41folddon.comyesPAKNIC (PRIVATE) LIMITEDDistribution SiteLocky
2016-10-27 05:19:52folddon.comyesPAKNIC (PRIVATE) LIMITEDDistribution SiteLocky
2016-10-27 05:12:30folddon.comyesPAKNIC (PRIVATE) LIMITEDDistribution SiteLocky
2016-10-26 09:33:11bajwainstitutes.comnoNAME.COM, INC.Distribution SiteLocky
2016-09-22 12:43:45stannscollege.co.innoGoDaddy.com, LLC (R101-AFIN)Distribution SiteLocky
2016-07-20 11:11:51makingitalia.netnoINTERNET DOMAIN SERVICE BS CORPDistribution SiteLocky
2016-07-18 10:23:25cloudbws.comyesGODADDY.COM, LLCDistribution SiteLocky

Ransomware infrastructure associated with this IP address: 16