172.0.0.1

Classification: Neutral

172.0.0.1 is a neutral IP address. Reported by 7 threat sources, last seen 2025-05-26. Network: AS7018 AT T Enterprises, LLC.

MITRE ATT&CK associations

Malware families: NJRAT (S0385) QUASARRAT (S0262)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Suspicious Host AbuseIPDB 2025-05-26 23:52:42 2025-05-26 23:52:42 anomalous-activity
Asyncrat Maltrail 2025-03-27 13:44:48 2025-03-27 13:44:48 malicious-activity
Quasar RAT ThreatFox Abuse.ch 2025-03-08 05:19:07 2025-03-09 22:23:40 malicious-activity S0262 QuasarRAT
Proxy FireHOL 2023-01-02 07:35:57 2024-02-13 11:16:43 anonymization
NjRAT ThreatFox Abuse.ch 2023-09-27 22:47:00 2023-09-29 13:50:05 malicious-activity S0385 njRAT
AsyncRAT ThreatFox Abuse.ch 2023-09-10 22:17:32 2023-09-12 21:27:31 malicious-activity
Malicious Host Alienvault Ip Reputation Database 2018-05-20 07:21:43 2018-08-31 06:28:05
Malicious Host CIArmy 2018-05-22 09:19:37 2018-08-09 07:07:46
rat Maltiverse 2018-03-08 09:07:55 2018-03-08 09:07:55
molerats Maltiverse 2017-12-08 00:46:01 2017-12-08 00:46:01

Tags

c2 historicalandnew njrat port:6666 bladabindi lime-worm port:6522 anonymization asyncrat mightcontainvariantsofasyncrat port:8908 port:80 port:443 molerats rat 8march2025 iocbottest port:4782 cinarat quasarrat yggdrasil

Whois information

AS name
AS7018 AT T Enterprises, LLC
AS registry
arin
AS date
2012-08-20 00:00:00
AS CIDR
172.0.0.0/12
CIDR
172.0.0.0/12
Registrant
AT T Enterprises, LLC
Address
3300 E Renner Rd Mailroom B2139 Attn:IP Management
City
Calera
State
AL
Postal code
98504
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected]
First indexed
2017-12-08 00:46:01
Last updated
2025-05-27 04:40:05