208.91.197.132

Classification: Whitelisted

208.91.197.132 is a whitelisted (trusted) IP address. Reported by 10 threat sources, last seen 2026-07-17. Network: AS40034 Confluence Networks INC.

Current activity

  • Content Delivery Network β€” Belongs to a CDN with many allocated resources.
  • Hosting provider β€” Shared hosting infrastructure.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Hosting Provider Maltiverse 2026-07-17 17:16:07 2026-07-17 17:16:07 benign hosting
Vjw0rm ThreatFox Abuse.ch 2025-03-14 19:17:03 2025-03-14 19:17:03 malicious-activity
SSH Attacker Blocklist.de 2023-11-06 03:28:21 2023-11-07 03:31:27 malicious-activity
virut Maltiverse Research Team 2018-10-05 01:51:38 2022-04-25 00:55:27 malicious-activity
Generic.Malware Hybrid-Analysis 2019-02-08 21:30:05 2021-04-12 17:00:12
Malicious Hostname Cyber Threat Coalition 2020-12-16 10:15:54 2021-03-03 21:36:18 malicious-activity
Malicious url Cyber Threat Coalition 2021-01-30 15:50:05 2021-03-03 03:16:43 malicious-activity
Covid19 scam Cyber Threat Coalition 2020-11-21 01:42:09 2020-12-13 06:34:32 malicious-activity
Phishing site Hybrid-Analysis 2019-07-26 02:17:04 2020-10-20 14:45:12
Malicious site Hybrid-Analysis 2018-11-01 22:00:40 2020-08-29 09:00:17
Unauthorized scanning of hosts Blocklist.net.ua 2020-07-13 03:07:40 2020-07-13 09:14:25
Kryptik.BCI.gen Hybrid-Analysis 2020-02-27 10:45:18 2020-02-27 10:45:20
W32.eHeur Hybrid-Analysis 2018-10-04 09:15:08 2018-10-04 09:15:11
Pizd Bambernek 2018-09-17 06:47:53 2018-09-17 06:47:53
Suppobox Bambernek 2018-09-03 06:47:22 2018-09-03 06:47:22
Malware site Hybrid-Analysis 2018-07-09 08:45:21 2018-07-09 08:45:21
Phishing PayPal Phishtank 2017-10-15 16:09:55 2018-07-02 08:43:42
Social Engineering Google Safebrowsing 2018-07-02 08:43:42 2018-07-02 08:43:42
Simda Bambernek 2018-03-05 11:27:03 2018-03-05 11:27:03
Ramnit Bambernek 2018-03-04 12:00:28 2018-03-04 12:00:28
Anonymizer Maltiverse 2018-02-20 14:45:11 2018-02-20 14:45:11
Phishing Phishtank 2017-10-15 18:16:41 2017-10-15 18:16:41

Tags

c&c c2 dga phishing anonymizer malware ramnit simda suppobox pizd abuse covid19 coronavirus scam ssh bruteforce bot vjw0rm port:80

Whois information

AS name
AS40034 Confluence Networks INC
AS registry
arin
AS date
2011-04-15 00:00:00
AS CIDR
208.91.197.0/24
CIDR
208.91.196.0/23
Registrant
Confluence Networks INC
Address
3rd Floor, J & C Building, P.O. Box 362
City
Saint Augustine
State
FL
Postal code
32084
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected]
First indexed
2017-10-15 16:09:55
Last updated
2026-07-17 17:16:07