204.11.56.48

Classification: Whitelisted

204.11.56.48 is a whitelisted (trusted) IP address. Reported by 26 threat sources, last seen 2026-07-04. Network: AS40034 Confluence Networks INC.

Current activity

  • Hosting provider — Shared hosting infrastructure.

MITRE ATT&CK associations

Malware families: LOKIBOT (S0447) PONY (S0453) ANDROMEDA (S1074) XLOADER (S1207) CONFICKER (S0608)

Blacklist sightings showing the 100 most recent of 228

Description Source First seen Last seen Labels MITRE ATT&CK
Hosting Provider Maltiverse 2026-07-04 09:32:08 2026-07-04 09:32:28 benign
Generic Malware Maltiverse Threat Observatory 2026-02-10 13:35:06 2026-02-10 13:35:06 country_code:us industry:education-and-nonprofits
virut Maltiverse Research Team 2018-10-04 01:55:17 2022-04-30 00:55:42 malicious-activity
Hosting Maltiverse Research Team 2022-02-07 18:50:05 2022-02-07 18:50:05
Phishing site Hybrid-Analysis 2018-06-01 01:00:20 2022-01-20 12:16:13
Malicious site Hybrid-Analysis 2018-05-31 23:00:21 2022-01-01 00:00:12
CVE-2018-8453 Hybrid-Analysis 2021-12-21 10:01:55 2021-12-21 10:02:38
Generic.Ransom.Sodinokibi Hybrid-Analysis 2021-12-17 09:30:39 2021-12-21 09:19:02
Adware.Fusioncore Hybrid-Analysis 2021-12-06 14:00:24 2021-12-06 14:00:25
Trojan.Scar Hybrid-Analysis 2018-04-30 21:30:13 2021-11-25 14:15:31
Gen:Variant.Barys Hybrid-Analysis 2019-05-31 10:45:14 2021-11-22 09:17:12
Gen:Trojan.Heur.ZGY Hybrid-Analysis 2021-11-22 09:16:49 2021-11-22 09:17:05
Trojan.HideLink Hybrid-Analysis 2021-11-21 21:45:22 2021-11-21 21:45:25
Trojan.Generic Hybrid-Analysis 2018-12-30 16:15:04 2021-11-03 06:17:07
Application.Agent Hybrid-Analysis 2019-03-14 20:45:47 2021-08-05 14:45:41
Adware.Eorezo Hybrid-Analysis 2019-03-10 09:45:04 2021-07-28 17:30:43
Artemis Hybrid-Analysis 2021-07-28 13:47:55 2021-07-28 13:48:02
Backdoor.Fonten Hybrid-Analysis 2021-07-15 14:30:35 2021-07-15 14:30:36
Trojan.AntiSandbox.GenericKDS Hybrid-Analysis 2021-07-09 18:30:24 2021-07-09 18:30:24
CVE-2017-8759 Hybrid-Analysis 2021-06-29 06:00:32 2021-06-29 06:00:32
Backdoor.MSIL Hybrid-Analysis 2021-06-04 10:17:12 2021-06-04 11:30:24
Spybot.621de428 Hybrid-Analysis 2021-06-02 20:45:28 2021-06-02 20:45:34
Malicious url Cyber Threat Coalition 2020-12-14 15:33:10 2021-05-03 01:20:42 malicious-activity
Generic.Malware Hybrid-Analysis 2018-04-24 00:00:28 2021-04-29 16:21:50
Injector.EPFX Hybrid-Analysis 2021-04-29 06:30:16 2021-04-29 07:21:19
Virus.Sality Hybrid-Analysis 2020-01-13 15:30:20 2021-04-20 14:45:34
Cutwail Hybrid-Analysis 2021-03-26 22:01:02 2021-03-26 22:01:02
Gen:Variant.Adware.Hotbar Hybrid-Analysis 2021-03-26 06:00:21 2021-03-26 06:00:21
Malicious Hostname Cyber Threat Coalition 2020-12-14 04:38:27 2021-03-03 23:44:32 malicious-activity
DomaIQ.Gen Hybrid-Analysis 2021-02-19 09:00:52 2021-02-19 09:00:56
Malware Download Abuse.ch 2021-02-12 08:15:29 2021-02-12 08:15:29 malicious-activity
Gen:Variant.MSILHeracles Hybrid-Analysis 2021-02-01 14:45:41 2021-02-01 14:45:50
Virus.Parite Hybrid-Analysis 2021-01-25 19:15:36 2021-01-25 19:15:37
Social Engineering Cyber Threat Coalition 2020-12-10 08:15:46 2021-01-18 08:14:48 malicious-activity
Trojan.Dropper Hybrid-Analysis 2021-01-07 20:30:42 2021-01-07 20:30:43
Generic.JS.BondatA Hybrid-Analysis 2018-06-21 15:45:41 2021-01-05 16:15:19
PUA.iBryte Hybrid-Analysis 2021-01-04 01:30:13 2021-01-04 01:30:15
Worm.Win64.AutoRun Hybrid-Analysis 2020-12-30 03:00:22 2020-12-30 03:00:32
Adware.Linkury Hybrid-Analysis 2020-12-26 18:15:16 2020-12-26 18:15:17
Trojan.MSIL.Basic.6 Hybrid-Analysis 2020-12-23 04:45:18 2020-12-23 04:45:23
Covid19 scam Cyber Threat Coalition 2020-11-20 20:19:52 2020-12-14 01:10:43 malicious-activity
Js.Worm.Bondat Hybrid-Analysis 2020-12-01 23:45:10 2020-12-01 23:45:11
Gen:Trojan.Brresmon.Gen Hybrid-Analysis 2020-11-25 00:15:47 2020-11-25 00:15:47
Generic.TeslaCryptB Hybrid-Analysis 2020-11-24 16:45:54 2020-11-24 16:45:55
Trojan.JS.Agent Hybrid-Analysis 2019-08-01 15:30:23 2020-11-23 16:19:39
Malware.SF.Generic Hybrid-Analysis 2020-11-18 10:45:15 2020-11-18 10:45:15
Gen:Trojan.ExplorerHijack Hybrid-Analysis 2020-10-11 00:45:15 2020-10-11 00:45:15
VB:Trojan.Valyria Hybrid-Analysis 2020-08-18 20:15:08 2020-10-06 12:15:26
Phishing Phishtank 2017-10-15 17:00:09 2020-09-01 20:34:39 compromised malicious-activity
uber phishing Antiphishing.com.ar 2019-12-01 01:44:43 2020-08-02 08:41:58
Covid19 scam DomainTools 2020-07-07 22:24:10 2020-07-30 02:07:59 malicious-activity
Trojan.JS.Downloader.JS Hybrid-Analysis 2020-07-28 14:45:42 2020-07-28 14:45:42
Gen:Variant.Mikey Hybrid-Analysis 2020-07-02 20:00:48 2020-07-02 20:00:48
VB:Trojan.VBA.Agent Hybrid-Analysis 2020-06-27 10:45:18 2020-06-27 10:45:20
paypal phishing Antiphishing.com.ar 2019-11-26 08:12:59 2020-06-22 03:22:17
Gen:Variant.Zusy Hybrid-Analysis 2018-06-23 16:30:18 2020-06-17 14:45:44
Injector.ELXR Hybrid-Analysis 2020-06-15 12:15:15 2020-06-15 12:15:15
Social Engineering Antiphishing.com.ar 2020-02-21 01:46:20 2020-06-03 03:15:22 malicious-activity
Covid19 scam CCN-CERT 2020-04-13 21:36:28 2020-06-02 11:01:16 malicious-activity
DeepScan:Generic.Ransom.Sodinokibi Hybrid-Analysis 2020-03-03 07:15:16 2020-05-20 14:15:17
IOC_19052020 CronUp Threat Intel 2020-05-20 02:57:59 2020-05-20 02:57:59
Phishing Mr.Looquer 2020-05-15 04:39:54 2020-05-15 04:39:54
VBInject.ADP.gen Hybrid-Analysis 2020-05-05 14:30:13 2020-05-05 14:30:13
VBKrypt.AJS.gen Hybrid-Analysis 2020-05-01 14:15:14 2020-05-01 14:15:17
Injector.ABN.gen Hybrid-Analysis 2020-04-29 14:30:08 2020-04-29 14:30:29
FileRepMalware Hybrid-Analysis 2020-04-21 05:17:09 2020-04-21 05:17:13
Trojan.W97M.POWLOAD Hybrid-Analysis 2020-04-20 19:45:22 2020-04-20 19:45:22
Malicious domain Telefonica Peru 2020-04-08 17:56:02 2020-04-08 17:56:02
Social Engineering Phishtank 2020-01-04 09:12:45 2020-04-04 08:22:21 malicious-activity
Backdoor.Prorat Hybrid-Analysis 2020-04-03 22:30:09 2020-04-03 22:30:10
Malware IBM X-Force Exchange 2015-03-19 03:36:00 2020-03-29 06:52:00
Botnet Command and Control Server IBM X-Force Exchange 2015-03-16 12:20:00 2020-03-29 06:52:00
godzilla IBM X-Force Exchange 2018-02-25 18:23:00 2020-03-29 06:52:00
Adware.Imali Hybrid-Analysis 2020-03-10 08:15:09 2020-03-10 08:15:09
Gen:Variant.Kazy Hybrid-Analysis 2018-04-19 16:45:27 2020-03-06 08:30:16
Trojan.KeyLogger Hybrid-Analysis 2020-03-06 00:33:28 2020-03-06 00:33:28
KeyLogger Hybrid-Analysis 2020-02-11 00:30:10 2020-03-06 00:30:04
IOC_03032020 CronUp Threat Intel 2020-03-03 05:51:29 2020-03-03 05:51:29
Trojan.VBKrypt Hybrid-Analysis 2020-02-29 19:45:06 2020-02-29 19:45:06
Virus.Neshta Hybrid-Analysis 2020-02-27 13:30:10 2020-02-27 13:30:18
Gen:Variant.Ransom.LockCrypt Hybrid-Analysis 2020-02-27 00:30:06 2020-02-27 00:30:06
Gen:Variant.Ulise Hybrid-Analysis 2020-01-28 12:16:37 2020-02-21 15:45:06
Threats200220200050 CronUp Threat Intel 2020-02-20 03:50:59 2020-02-20 03:50:59
TOP AMENAZAS - 19022020 CronUp Threat Intel 2020-02-19 16:40:06 2020-02-19 16:42:53
Trojan.Bitman Hybrid-Analysis 2020-02-18 06:45:08 2020-02-18 06:45:15
Gen:Variant.Razy Hybrid-Analysis 2020-02-17 12:30:40 2020-02-17 12:30:40
Trojan.Win64 Hybrid-Analysis 2020-01-28 12:16:51 2020-01-28 12:16:57
Ransom.Win64.PORNOASSET.SM1 Hybrid-Analysis 2020-01-28 12:16:17 2020-01-28 12:16:20
Bunndle.A.gen Hybrid-Analysis 2019-06-16 21:15:08 2020-01-24 08:15:55
Trojan.Script Hybrid-Analysis 2018-10-09 05:45:11 2020-01-14 10:15:23
VB:Trojan.VBA.Downloader Hybrid-Analysis 2020-01-09 21:15:10 2020-01-09 21:15:10
Gen:Heur.Zard Hybrid-Analysis 2020-01-09 00:00:44 2020-01-09 00:00:44
target unspecified phishing Antiphishing.com.ar 2019-08-03 07:54:43 2020-01-08 01:48:25
Trojan.Upatre Hybrid-Analysis 2019-12-20 08:45:05 2019-12-20 08:45:05
Application.QLCQ Hybrid-Analysis 2019-12-17 22:45:10 2019-12-17 22:45:26
Gen:Trojan.Heur.JP Hybrid-Analysis 2019-12-02 22:00:04 2019-12-02 22:00:04
Trojan.Swizzor.Gen Hybrid-Analysis 2019-11-26 21:15:05 2019-11-26 21:15:05
Trojan.SW.gen Hybrid-Analysis 2019-11-18 01:00:06 2019-11-18 01:00:37
Generic.Ransom.GandCrab4 Hybrid-Analysis 2019-11-13 21:00:08 2019-11-13 21:00:13
Adware.SpeedingUpMyPC Hybrid-Analysis 2019-11-10 20:30:05 2019-11-10 20:30:05

Tags

c&c c2 dga malware banjori ransomware adware evasive banker formbook simda vawtrak autorun backdoor bublik crypt downloader injector keylogger rat riskware sakula1.3 trojan wabot worm exploit sinkhole hotbar pua spyware fakeav fakecog virut phishing nymaim kraken https://www.threatminer.org/report.php?q=oopsie! oilrig uses threedollars to deliver new trojan.pdf&y=2018 https://www.threatminer.org/report.php?q=apt15 is alive and strong_ an analysis of royalcli and royaldns.pdf&y=2018 https://www.threatminer.org/report.php?q=a song of intel and fancy _ exploiting fancy bear’s use of ssl certificate.pdf&y=2018 https://www.threatminer.org/report.php?q=on the hunt for fin7_ pursuing an enigmatic and evasive global criminal operation « on the hunt for fin7_ pursuing an enigmatic and evasive global criminal operation _ fireeye inc.pdf&y=2018 apt cnc covid19 coronavirus scam fraud encrypted

Whois information

AS name
AS40034 Confluence Networks INC
AS registry
arin
AS date
2012-09-24 00:00:00
AS CIDR
204.11.56.0/24
CIDR
204.11.56.0/23
Registrant
Confluence Networks INC
Address
3rd Floor, J & C Building, P.O. Box 362
City
Road Town
State
Tortola
Postal code
VG1110
Country
VG — Virgin Islands, British 🇻🇬
Contact email
[email protected], [email protected]
First indexed
2017-10-15 09:29:17
Last updated
2026-07-04 09:32:39