klipdalygeo.shop
Classification: Suspicious
klipdalygeo.shop is a suspicious hostname. Reported by 1 threat source, last seen 2025-01-04. IoC context and downloadable threat intel on Maltiverse.
Current activity
- Offline — no longer resolving. Last online 2025-01-04 09:21:56.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Lumma Stealer | ThreatFox Abuse.ch | 2025-01-04 09:18:03 | 2025-01-04 09:18:03 | malicious-activity |
Tags
lumma lummac2 stealerIP addresses resolved by this hostname
- 172.64.80.1 (2025-01-04 09:21:56)
Whois information
- Domain
- klipdalygeo.shop
- TLD
- shop
- DNSSEC
- ['unsigned, Unsigned', 'unsigned']
- Nameservers
- BRIT.NS.CLOUDFLARE.COM, DONALD.NS.CLOUDFLARE.COM, brit.ns.cloudflare.com, donald.ns.cloudflare.com
- Registrant
- PDR Ltd. d/b/a PublicDomainRegistry.com
- Address
- GDPR Masked
- City
- GDPR Masked
- State
- Coventry(Cityof)
- Country
- GB — United Kingdom 🇬🇧
- Contact email
- [email protected], [email protected]
- Domain created
- 2024-12-12 19:27:00
- Domain expires
- 2025-12-12 23:59:59
- First indexed
- 2025-01-04 09:18:03
- Last updated
- 2025-05-07 03:51:36