Ransomware IP address :: 209.99.40.220

IP Information

IP address:209.99.40.220
Hostname:209-99-40-220.fwd.datafoundry.com
AS number:AS3900
AS name:CONFLUENCE-NETWORK-INC - Confluence Networks Inc, VG
Country:- United States (US)
Spamhaus SBL:Not listed

Associated Ransomware Infrastructure

The table below shows all Ransomware infrastructure that is associated with the IP address 209.99.40.220.

Firstseen (UTC)HostActive (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
RegistrarThreatMalware
2017-09-19 10:25:27arsmakina.orgnoReg2C.com Inc.Distribution SiteLocky
2016-12-12 13:17:34www.russwat.orgnoPDR Ltd. d/b/a PublicDomainRegistry.comDistribution SiteLocky
2016-12-12 13:02:55sinanagirman.comnoIHS TELEKOM, INC.Distribution SiteLocky
2016-12-08 06:00:01sarawakcars.comnoSHINJIRU MSC SDN BHDDistribution SiteLocky
2016-12-02 18:31:29vioozmovies.netnoBIGROCK SOLUTIONS LIMITEDDistribution SiteLocky
2016-12-01 15:38:38vioozmovies.netnoBIGROCK SOLUTIONS LIMITEDDistribution SiteLocky
2016-12-01 08:26:41sinanagirman.comnoIHS TELEKOM, INC.Distribution SiteLocky
2016-11-04 14:35:40gencemiz.biznoPDR LTD. D/B/A PUBLICDOMAINREGISTRY.COMDistribution SiteLocky
2016-11-04 06:43:12aircrew.co.innoEndurance Domains Technology Pvt. Ltd. (R173-AFIN)Distribution SiteLocky
2016-11-03 06:15:55aircrew.co.innoEndurance Domains Technology Pvt. Ltd. (R173-AFIN)Distribution SiteLocky
2016-10-28 10:01:26aspirekitchens.innoEndurance Domains Technology Pvt. Ltd. (R173-AFIN)Distribution SiteLocky
2016-10-26 10:05:50crazyindiya.comyesBIGROCK SOLUTIONS LIMITEDDistribution SiteLocky
2016-10-25 14:50:41www.russwat.orgnoPDR Ltd. d/b/a PublicDomainRegistry.comDistribution SiteLocky
2016-09-27 14:03:26ccaglobal.orgnoeNom, Inc.Distribution SiteLocky
2016-04-03 08:41:47www.realistikkampanya.infonoPDR Ltd. d/b/a PublicDomainRegistry.comDistribution SiteLocky

Ransomware infrastructure associated with this IP address: 15