104.45.146.238

Classification: Suspicious

104.45.146.238 is a suspicious IP address. Linked to Bundlore malware. Reported by 2 threat sources, last seen 2021-11-29.

MITRE ATT&CK associations

Malware families: BUNDLORE (S0482)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Gen:Variant.Application.Bundler.DownloadGuide Hybrid-Analysis 2018-07-04 08:15:54 2021-11-29 13:30:25
Malware Hybrid-Analysis 2021-10-06 13:46:29 2021-10-06 13:46:29
Application.DownloadGuide Hybrid-Analysis 2020-12-07 12:00:22 2021-04-20 20:45:07
Generic.Malware Hybrid-Analysis 2018-12-23 16:30:09 2021-01-22 19:00:31
Application.Bundler.DownloadGuide Hybrid-Analysis 2020-03-27 08:30:15 2020-11-10 15:16:23
Application.Downloader Hybrid-Analysis 2020-01-16 20:47:08 2020-01-16 20:47:08
Malicious site Hybrid-Analysis 2019-08-14 10:00:08 2019-08-14 10:00:08
bundlore Maltiverse 2018-02-13 14:23:40 2018-03-07 09:47:04 S0482 Bundlore
adware,nsis Maltiverse 2017-11-16 04:31:51 2017-11-16 04:31:51

Tags

adware nsis bundlore

Whois information

AS name
AS8075 Microsoft Corporation
AS registry
arin
AS date
2014-05-07 00:00:00
AS CIDR
104.40.0.0/13
CIDR
104.40.0.0/13
Registrant
Microsoft Corporation
Address
One Microsoft Way
City
Washington
State
DC
Postal code
20500
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected], [email protected]
First indexed
2017-11-16 04:31:51
Last updated
2025-11-23 09:34:06