rebdownandlo.com
Classification: Suspicious
rebdownandlo.com is a suspicious hostname. Linked to H1N1 malware. Reported by 2 threat sources, last seen 2022-12-28.
Current activity
- Offline — no longer resolving. Last online 2022-12-28 08:06:35.
MITRE ATT&CK associations
Malware families: H1N1 (S0132)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| H1N1 | Cybercrime-tracker.net | 2017-10-15 14:31:28 | 2022-12-28 08:06:34 | malicious-activity | S0132 H1N1 |
| Malicious domain | SANS Internet Storm Center | 2019-12-19 02:40:25 | 2019-12-19 02:40:25 |
IP addresses resolved by this hostname
- 104.238.158.106 (2017-10-15 14:31:29)
- 192.187.111.220 (2022-12-28 08:06:35)
Whois information
- AS name
- AS33387 DataShack, LC
- Domain
- rebdownandlo.com
- TLD
- com
- DNSSEC
- ['unsigned']
- Nameservers
- DNS1.REGISTRAR-SERVERS.COM, DNS2.REGISTRAR-SERVERS.COM, dns1.registrar-servers.com, dns2.registrar-servers.com
- Whois server
- whois.namecheap.com
- Registrant
- NAMECHEAP INC
- Address
- P.O. Box 0823-03411
- City
- Panama
- State
- Panama
- Country
- PA — Panama 🇵🇦
- Contact email
- [email protected], [email protected]
- First indexed
- 2017-10-15 14:31:28
- Last updated
- 2024-12-09 15:19:51