Ransomware IP address :: 54.85.100.38

IP Information

IP address:54.85.100.38
Hostname:ec2-54-85-100-38.compute-1.amazonaws.com
AS number:AS14618
AS name:AMAZON-AES - Amazon.com, Inc., US
Country:- United States (US)
Spamhaus SBL:Not listed

Associated Ransomware Infrastructure

The table below shows all Ransomware infrastructure that is associated with the IP address 54.85.100.38.

Firstseen (UTC)HostActive (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
RegistrarThreatMalware
2016-12-13 11:27:03dmlevents.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-12-06 07:56:31phaleshop.comnoONLINENIC, INC.Distribution SiteLocky
2016-12-02 18:15:37specimengear.comnoKEY-SYSTEMS GMBHDistribution SiteLocky
2016-12-02 18:12:44thamtutuuytin.comnoGMO INTERNET, INC. DBA ONAMAE.COMDistribution SiteLocky
2016-11-30 17:00:11outformat.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-11-28 12:05:25phaleshop.comnoONLINENIC, INC.Distribution SiteLocky
2016-11-24 11:19:59phaleshop.comnoONLINENIC, INC.Distribution SiteLocky
2016-11-22 08:25:45phaleshop.comnoONLINENIC, INC.Distribution SiteLocky
2016-11-04 14:23:31sozluktr.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-11-03 06:21:19outformat.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-10-27 10:10:50sozluktr.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-10-27 10:08:50dmlevents.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-10-06 11:31:51sozluktr.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-09-30 12:03:49serwing.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-09-30 05:23:30outformat.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-09-27 05:02:12serwing.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-09-22 07:11:47dmlevents.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-09-14 11:36:54outformat.comnoGODADDY.COM, LLCDistribution SiteLocky
2016-07-15 14:10:34lilabners.comnoNETWORK SOLUTIONS, LLC.Distribution SiteLocky

Ransomware infrastructure associated with this IP address: 19