208.146.36.220

Classification: Suspicious

208.146.36.220 is a suspicious IP address. Linked to Bundlore malware. Reported by 2 threat sources, last seen 2018-05-01.

MITRE ATT&CK associations

Malware families: BUNDLORE (S0482)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Attacker Blocklist.de 2018-05-01 06:49:29 2018-05-01 06:49:29
bundlore Maltiverse 2018-02-10 17:20:19 2018-02-10 17:20:19 S0482 Bundlore
phishing Maltiverse 2017-12-27 14:33:20 2017-12-27 14:33:20
miner Maltiverse 2017-10-17 19:32:16 2017-10-17 19:32:16

Tags

miner bundlore apache ddos rfi attacker

Whois information

AS name
AS3561 Centurylink Communications, LLC
AS registry
arin
AS date
1996-03-27 00:00:00
AS CIDR
208.146.36.0/22
CIDR
208.138.192.0/18, 208.144.0.0/13, 208.138.176.0/20, 208.152.0.0/14, 208.139.0.0/16, 208.140.0.0/14, 208.157.0.0/17, 208.156.0.0/16, 208.157.128.0/20
Registrant
Centurylink Communications, LLC
Address
1 Solutions Parkway
City
Atlanta
State
GA
Postal code
30303
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected], [email protected]
First indexed
2017-10-17 19:32:16
Last updated
2026-01-09 03:08:34