Ransomware IP address ::

IP Information

IP address:
AS number:AS394695
Country:- United States (US)
Spamhaus SBL:Not listed

Associated Ransomware Infrastructure

The table below shows all Ransomware infrastructure that is associated with the IP address

Firstseen (UTC)HostActive (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
2017-10-18 06:21:44mbfce24rgn65bx3g.is0hvt1.comnoTrunkoz Technologies Pvt Ltd. d/b/a OwnRegistrar.comBotnet C&CSage
2016-12-16 08:12:35dealspari.comnoREBEL.COM CORP.Distribution SiteLocky
2016-12-14 11:42:31dealspari.comnoREBEL.COM CORP.Distribution SiteLocky
2016-11-22 08:30:18manhtienphat.comnoMAT BAO TRADING & SERVICE COMPANY LIMITED D/B/A MAT BAODistribution SiteLocky
2016-11-21 11:49:52apotekroxy.comnoTUCOWS DOMAINS INC.Distribution SiteLocky
2016-11-04 06:33:35w3hostingserver.comnoPDR LTD. D/B/A PUBLICDOMAINREGISTRY.COMDistribution SiteLocky
2016-11-03 15:27:58dealspari.comnoREBEL.COM CORP.Distribution SiteLocky
2016-10-04 09:31:49apotekroxy.comnoTUCOWS DOMAINS INC.Distribution SiteLocky
2016-10-04 08:46:04sanodent.orgnoPDR Ltd. d/b/a PublicDomainRegistry.comDistribution SiteLocky
2016-09-27 10:25:49homemadebakeryindonesia.comyesPT ARDH GLOBAL INDONESIADistribution SiteLocky
2016-09-23 11:29:34mahboob-e-rehmani.comyesPDR LTD. D/B/A PUBLICDOMAINREGISTRY.COMDistribution SiteLocky
2016-05-17 12:38:37apotekroxy.comnoTUCOWS DOMAINS INC.Distribution SiteLocky
2016-05-06 06:02:47shopngocquyen.comyesGODADDY.COM, LLCDistribution SiteLocky

Ransomware infrastructure associated with this IP address: 13