Locky Distribution Site :: upperclassmeninc.com

Host Information

Locky Distribution Site:upperclassmeninc.com
Threat:Distribution Site
Malware:Locky
URL:http://upperclassmeninc.com/67qo91yrv
Host Status:offline
Blacklist check:Spamhaus DBL:Not Listed
 SURBL:Not Listed
Domain Registar:GODADDY.COM, LLC
Nameserver(s):ns1626.ztomy.com
 ns2626.ztomy.com
Firstseen (UTC):2016-12-14 11:45:30
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Locky Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2019-06-06 06:37:372019-08-25 06:39:33204.11.56.48Not listedAS40034CONFLUENCE-NETWORK-INC - Confluence Netw[...]- Virgin Islands, British (VG)
no2016-12-14 13:11:002017-05-04 01:01:33192.138.189.69vt.bkwstudios.netNot listedAS13647TRANQUIL-HOSTING - Tranquil Hosting, Inc[...]- United States (US)
no2019-03-29 06:33:362019-04-02 06:37:4250.63.202.95ip-50-63-202-95.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-03 06:36:38never50.63.202.87ip-50-63-202-87.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-25 06:33:312019-03-27 06:35:2050.63.202.86ip-50-63-202-86.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-07 06:39:222019-04-18 06:31:0150.63.202.76ip-50-63-202-76.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-26 06:33:53never50.63.202.75ip-50-63-202-75.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-30 06:34:09never50.63.202.66ip-50-63-202-66.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-25 06:31:312019-04-28 06:33:0550.63.202.64ip-50-63-202-64.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-28 06:33:55never184.168.221.65ip-184-168-221-65.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2017-05-05 01:03:442019-03-24 06:35:05192.138.189.66rs11.webaccountserver.comNot listedAS36236NETACTUATE - NetActuate, Inc, US- United States (US)
no2019-04-05 06:39:532019-04-29 06:36:47184.168.221.90ip-184-168-221-90.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-04 06:39:092019-04-26 12:06:11184.168.221.84ip-184-168-221-84.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-06 06:34:162019-04-24 06:31:39184.168.221.82ip-184-168-221-82.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-11 06:36:00never184.168.221.71ip-184-168-221-71.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-03-31 06:36:16never184.168.221.69ip-184-168-221-69.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)
no2019-04-10 06:34:482019-04-27 06:35:18184.168.221.67ip-184-168-221-67.ip.secureserver.netNot listedAS26496AS-26496-GO-DADDY-COM-LLC - GoDaddy.com,[...]- United States (US)

# IPs found: 17 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2016-12-14 13:10:59372bbca8742bc6fea48b838a5eecf3c9172'904 bytesVirustotal results 0/55 (0.00%) n/a

Unique dropped files: 1