Locky Distribution Site :: allcateringservices.in

Host Information

Locky Distribution Site:allcateringservices.in
Threat:Distribution Site
Malware:Locky
URL:http://allcateringservices.in/8rcybi43
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:Endurance Domains Technology Pvt. Ltd. (R173-AFIN)
Nameserver(s):ns19.domaincontrol.com
 ns20.domaincontrol.com
Firstseen (UTC):2016-09-23 09:43:54
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-09-14 06:42:522019-09-19 06:42:56184.168.221.94ip-184-168-221-94.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-09-08 06:57:492018-10-12 06:56:0650.63.202.50ip-50-63-202-50.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-09-11 06:42:30never184.168.221.91ip-184-168-221-91.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-05-23 01:47:422018-07-02 07:02:32209.99.40.225209-99-40-225.fwd.datafoundry.comNot listedAS3900CONFLUENCE-NETWORK-INC - Confluence Netw[...]- United States (US)
no2018-12-13 06:53:122019-08-19 06:44:4650.116.93.98Not listedAS46606UNIFIEDLAYER-AS-1 - Unified Layer, US- United States (US)
no2018-10-15 06:56:542018-10-18 06:58:0850.63.202.33ip-50-63-202-33.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-23 06:57:492018-09-04 06:58:3850.63.202.35ip-50-63-202-35.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-18 06:56:012018-12-08 06:53:0750.63.202.37ip-50-63-202-37.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-09-27 07:00:162018-10-01 06:57:0750.63.202.38ip-50-63-202-38.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-11-23 06:54:402018-12-04 06:57:4450.63.202.39ip-50-63-202-39.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-09-07 06:58:032018-10-21 07:00:4650.63.202.40ip-50-63-202-40.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-16 06:57:41never50.63.202.42ip-50-63-202-42.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-29 07:01:39never50.63.202.43ip-50-63-202-43.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-11-02 06:55:562018-11-12 06:57:1250.63.202.44ip-50-63-202-44.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-11-17 06:57:572018-12-11 06:54:2750.63.202.45ip-50-63-202-45.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-09-13 06:42:042019-09-18 06:43:22184.168.221.86ip-184-168-221-86.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-11-21 06:56:132018-12-10 06:52:1450.63.202.55ip-50-63-202-55.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-17 06:57:262018-09-01 06:57:4950.63.202.56ip-50-63-202-56.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-10-06 06:58:452018-10-09 06:56:2750.63.202.57ip-50-63-202-57.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-10-31 06:54:35never50.63.202.59ip-50-63-202-59.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-11-13 06:57:56never50.63.202.60ip-50-63-202-60.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-08-14 06:58:44never50.63.202.62ip-50-63-202-62.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2018-09-02 06:59:26never50.63.202.63ip-50-63-202-63.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-08-30 06:44:172019-09-08 06:43:3950.63.202.67ip-50-63-202-67.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-08-24 06:43:442019-09-03 06:45:4450.63.202.72ip-50-63-202-72.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)

# IPs found: 25 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-09-23 10:04:12b120121d61b152347c1f1fb15fff9e40246'784 bytesVirustotal results 5/57 (8.77%) n/a

Unique dropped files: 1