172.0.0.1
Classification: Neutral
172.0.0.1 is a neutral IP address. Reported by 7 threat sources, last seen 2025-05-26. Network: AS7018 AT T Enterprises, LLC.
MITRE ATT&CK associations
Malware families: NJRAT (S0385) QUASARRAT (S0262)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Suspicious Host | AbuseIPDB | 2025-05-26 23:52:42 | 2025-05-26 23:52:42 | anomalous-activity | |
| Asyncrat | Maltrail | 2025-03-27 13:44:48 | 2025-03-27 13:44:48 | malicious-activity | |
| Quasar RAT | ThreatFox Abuse.ch | 2025-03-08 05:19:07 | 2025-03-09 22:23:40 | malicious-activity | S0262 QuasarRAT |
| Proxy | FireHOL | 2023-01-02 07:35:57 | 2024-02-13 11:16:43 | anonymization | |
| NjRAT | ThreatFox Abuse.ch | 2023-09-27 22:47:00 | 2023-09-29 13:50:05 | malicious-activity | S0385 njRAT |
| AsyncRAT | ThreatFox Abuse.ch | 2023-09-10 22:17:32 | 2023-09-12 21:27:31 | malicious-activity | |
| Malicious Host | Alienvault Ip Reputation Database | 2018-05-20 07:21:43 | 2018-08-31 06:28:05 | ||
| Malicious Host | CIArmy | 2018-05-22 09:19:37 | 2018-08-09 07:07:46 | ||
| rat | Maltiverse | 2018-03-08 09:07:55 | 2018-03-08 09:07:55 | ||
| molerats | Maltiverse | 2017-12-08 00:46:01 | 2017-12-08 00:46:01 |
Tags
c2 historicalandnew njrat port:6666 bladabindi lime-worm port:6522 anonymization asyncrat mightcontainvariantsofasyncrat port:8908 port:80 port:443 molerats rat 8march2025 iocbottest port:4782 cinarat quasarrat yggdrasilWhois information
- AS name
- AS7018 AT T Enterprises, LLC
- AS registry
- arin
- AS date
- 2012-08-20 00:00:00
- AS CIDR
- 172.0.0.0/12
- CIDR
- 172.0.0.0/12
- Registrant
- AT T Enterprises, LLC
- Address
- 3300 E Renner Rd Mailroom B2139 Attn:IP Management
- City
- Calera
- State
- AL
- Postal code
- 98504
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2017-12-08 00:46:01
- Last updated
- 2025-05-27 04:40:05