144.208.127.223

Classification: Malicious

144.208.127.223 is a malicious IP address. Linked to Sliver malware. Reported by 2 threat sources, last seen 2026-08-19. Network: AS395092 Shock Hosting LLC.

Current activity

  • Command & Control server — Used by cybercriminals to control victim computers.

MITRE ATT&CK associations

Malware families: SLIVER (S0633)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Sliver ThreatFox Abuse.ch 2026-08-19 09:21:48 2026-08-19 09:25:06 botnet malicious-activity S0633 Sliver
Malware Download URLhaus Abuse.ch 2024-12-22 18:19:28 2024-12-22 18:19:28 malicious-activity

Tags

backdoor sliver port:17575

Whois information

AS name
AS395092 Shock Hosting LLC
AS registry
arin
AS date
2016-05-18 00:00:00
AS CIDR
144.208.124.0/22
CIDR
144.208.124.0/22
Registrant
Shock Hosting LLC
Address
371 Hoes Lane, Suite 200
City
New York City
State
NY
Postal code
10007
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected], [email protected]
First indexed
2024-12-22 18:19:28
Last updated
2026-08-19 10:38:47

Malicious IPs in the same CIDR

144.208.127.223