gift-edu.ru
Classification: Suspicious
gift-edu.ru is a suspicious hostname. Reported by 2 threat sources, last seen 2026-04-20. IoC context and downloadable threat intel on Maltiverse.
Current activity
- Online — resolving/reachable. Last checked 2026-06-02 12:07:10.
- Malware distribution — This indicator is distributing malware.
- Stores phishing content — Phishing resources are hosted here.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious.PDF | Maltiverse Threat Observatory | 2025-07-16 15:21:36 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| PDF.maliciousmalware | Maltiverse Threat Observatory | 2025-06-17 19:44:25 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| Phishing.artifact | Maltiverse Threat Observatory | 2025-06-17 19:44:25 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| Phishing.artifact.pdf | Maltiverse Threat Observatory | 2025-06-17 19:44:25 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| Trojan.generic | Maltiverse Threat Observatory | 2025-06-17 19:44:25 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| Trojan.phishing.pdf | Maltiverse Threat Observatory | 2025-06-17 19:44:25 | 2026-04-20 17:21:41 | country_code:us industry:education-and-nonprofits | |
| Top Popularity Site | Cisco Umbrella | 2022-12-31 22:10:05 | 2022-12-31 22:10:05 | benign |
IP addresses resolved by this hostname
- 89.223.126.88 (2022-12-31 22:10:05)
- 45.130.41.95 (2026-06-02 12:07:10)
Whois information
- AS name
- AS49345 Continental Ltd.
- Domain
- gift-edu.ru
- TLD
- ru
- Nameservers
- ns1.beget.com., ns2.beget.com.
- Registrant
- RU-CENTER-RU
- Domain created
- 2017-02-25 15:10:26
- Domain expires
- 2027-02-25 15:10:26
- First indexed
- 2022-12-31 22:10:05
- Last updated
- 2026-06-02 12:07:11