217.60.241.50
Classification: Malicious
217.60.241.50 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS51396 pfcloud.
Current activity
- Command & Control server — Used by cybercriminals to control victim computers.
- Malware distribution — This indicator is distributing malware.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Tofsee | Maltiverse Threat Observatory | 2026-08-08 22:40:06 | 2026-09-02 20:40:24 | botnet country_code:co industry:education-and-nonprofits malicious-activity | |
| Generic Malware | Maltiverse Threat Observatory | 2026-08-08 19:10:06 | 2026-08-18 17:15:12 | country_code:co industry:education-and-nonprofits malicious-activity malware | |
| Tofsee | ThreatFox Abuse.ch | 2026-08-08 17:35:00 | 2026-08-18 16:25:05 | malicious-activity |
Tags
port:422 port:417 port:430 port:427 port:428 port:416 port:420 port:418 port:424 port:419 port:425 port:423 gheg tofsee port:421 port:431 port:429Whois information
- AS name
- AS51396 pfcloud
- Registrant
- pfcloud
- City
- Kerkrade
- Postal code
- 6461 DW
- Country
- NL — Netherlands 🇳🇱
- First indexed
- 2026-08-08 18:25:06
- Last updated
- 2026-09-02 21:14:14