13.225.195.123
Classification: Whitelisted
13.225.195.123 is a whitelisted (trusted) IP address. Reported by 6 threat sources, last seen 2026-07-30. Network: AS16509 Amazon.com, Inc..
Current activity
- Content Delivery Network — Belongs to a CDN with many allocated resources.
- Hosting provider — Shared hosting infrastructure.
MITRE ATT&CK associations
Malware families: COBALT STRIKE (S0154)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Hosting Provider | Maltiverse | 2026-07-30 09:15:25 | 2026-07-30 09:15:25 | benign hosting | |
| Phishing | OpenPhish | 2022-05-19 12:41:22 | 2022-06-30 00:43:57 | compromised | |
| Phishing | Phishtank | 2022-06-06 20:20:09 | 2022-06-06 20:20:09 | compromised malicious-activity | |
| Phishing | Maltiverse | 2021-04-27 13:44:48 | 2022-05-13 12:41:07 | compromised | |
| Cobalt Strike | ThreatFox Abuse.ch | 2022-04-09 00:01:19 | 2022-04-09 00:01:19 | malicious-activity | S0154 Cobalt Strike |
| Malware Download | URLhaus Abuse.ch | 2022-04-04 21:15:28 | 2022-04-04 21:15:28 | malicious-activity | |
| Social Engineering | Maltiverse | 2022-03-25 01:42:04 | 2022-03-28 12:40:21 | malicious-activity | |
| Phishing site | Hybrid-Analysis | 2021-04-27 02:21:14 | 2021-04-27 02:21:14 |
Tags
phishing cobaltstrike digitalocean-asn agentemis beacon malware_downloadWhois information
- AS name
- AS16509 Amazon.com, Inc.
- AS registry
- arin
- AS date
- 2019-10-01 00:00:00
- AS CIDR
- 13.225.192.0/21
- CIDR
- 13.208.0.0/12, 13.224.0.0/12, 13.200.0.0/13
- Registrant
- Amazon.com, Inc.
- Address
- 410 Terry Ave N.
- City
- Montreal
- State
- WA
- Postal code
- H3A 2B7
- Country
- CA — Canada 🇨🇦
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2021-04-27 02:21:14
- Last updated
- 2026-07-30 09:15:25