217.60.241.48

Classification: Malicious

217.60.241.48 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS51396 pfcloud.

Current activity

  • Command & Control server — Used by cybercriminals to control victim computers.
  • Malware distribution — This indicator is distributing malware.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Tofsee Maltiverse Threat Observatory 2026-08-08 22:40:06 2026-09-02 20:40:24 botnet country_code:co industry:education-and-nonprofits malicious-activity
Generic Malware Maltiverse Threat Observatory 2026-08-08 19:10:06 2026-08-18 17:15:12 country_code:co industry:education-and-nonprofits malicious-activity malware
Tofsee ThreatFox Abuse.ch 2026-08-08 17:35:00 2026-08-18 16:25:05 malicious-activity

Tags

port:422 port:417 port:430 port:427 port:428 port:416 port:420 port:418 port:424 port:419 port:425 port:423 gheg tofsee port:421 port:431 port:429

Whois information

AS name
AS51396 pfcloud
Registrant
pfcloud
City
Kerkrade
Postal code
6461 DW
Country
NL — Netherlands 🇳🇱
First indexed
2026-08-08 18:25:06
Last updated
2026-09-02 21:14:14