217.70.184.38

Classification: Whitelisted

217.70.184.38 is a whitelisted (trusted) IP address. Reported by 24 threat sources, last seen 2026-07-17. Network: AS29169 GANDI FRANCE L/B SERVICES.

Current activity

  • Hosting provider — Shared hosting infrastructure.

MITRE ATT&CK associations

Malware families: CONFICKER (S0608) EMOTET (S0367)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Hosting Provider Maltiverse 2026-07-17 17:16:13 2026-07-17 17:16:13 benign hosting
tordwm Maltiverse Research Team 2022-07-07 03:20:33 2022-07-12 03:29:13 malicious-activity
monerominer Maltiverse Research Team 2022-07-05 03:18:04 2022-07-05 03:18:04 malicious-activity
suppobox Maltiverse Research Team 2018-10-10 01:32:59 2022-07-04 00:55:57 malicious-activity
virut Maltiverse Research Team 2018-10-04 01:42:49 2022-06-29 01:01:06 malicious-activity
Phishing Phishtank 2017-10-15 18:06:06 2022-05-24 22:20:06 compromised malicious-activity
Phishing OpenPhish 2022-05-16 12:40:51 2022-05-20 00:41:08 compromised
Tofsee tunPOT 2022-03-17 09:07:27 2022-03-17 09:09:47 malicious-activity
Generic.Ransom.Sodinokibi Hybrid-Analysis 2021-12-21 09:18:20 2021-12-21 09:18:20
Phishing site Hybrid-Analysis 2020-04-03 16:15:12 2021-07-01 00:00:26
Generic.Malware Hybrid-Analysis 2019-02-13 21:48:47 2021-04-29 13:15:46
Phishing Maltiverse 2020-12-28 00:40:44 2021-04-12 13:41:17 compromised
Unauthorized scanning of hosts Blocklist.net.ua 2021-04-03 10:49:18 2021-04-03 10:49:18
Malicious Hostname Cyber Threat Coalition 2020-12-14 04:43:38 2021-03-03 10:33:38 malicious-activity
Covid19 scam Cyber Threat Coalition 2020-11-20 20:23:44 2020-12-10 22:14:03 malicious-activity
Proxy Mr.Looquer 2020-09-15 06:08:23 2020-09-15 06:08:23
Covid19 scam DomainTools 2020-04-19 17:37:11 2020-08-25 00:25:34 malicious-activity
Phishing Mobile.de OpenPhish 2020-08-21 05:54:40 2020-08-21 05:54:40
Social Engineering OpenPhish 2020-08-21 05:54:40 2020-08-21 05:54:40 malicious-activity
uber phishing Antiphishing.com.ar 2019-12-06 01:43:47 2020-08-06 03:31:32
Malicious site Hybrid-Analysis 2018-10-22 15:30:08 2020-06-03 14:15:33
Covid19 scam CCN-CERT 2020-04-13 21:48:39 2020-06-02 11:03:36 malicious-activity
Phishing Bank of America OpenPhish 2020-05-21 04:18:53 2020-05-21 04:18:53
Malicious domain Telefonica Peru 2020-04-08 18:08:02 2020-04-10 04:37:44
Simda Bambernek 2017-10-15 13:02:47 2020-04-04 19:04:48 anomalous-activity
nymaim Maltiverse Research Team 2020-03-25 07:14:55 2020-03-25 07:14:55
linkedin phishing Antiphishing.com.ar 2020-01-07 01:47:07 2020-01-07 01:47:07
Emotet List CronUp Threat Intel 2019-12-30 04:38:52 2019-12-30 04:38:52
Ransomware Locky C2 Ransomware Tracker 2017-10-15 16:42:36 2019-12-08 08:42:29
banjori Bambernek 2017-10-15 09:28:50 2019-11-23 08:16:56 malicious-activity
Malicious Host Alienvault Ip Reputation Database 2019-09-22 06:52:30 2019-10-13 06:35:37
Emotet Abuse.ch 2019-10-05 00:02:36 2019-10-05 00:02:36 S0367 Emotet
Malicious Host CIArmy 2019-09-22 01:01:45 2019-09-23 07:26:01
Trojan.Agent Hybrid-Analysis 2019-08-11 21:00:17 2019-08-11 21:00:17
conficker Maltiverse Research Team 2019-07-23 00:32:23 2019-07-23 00:32:23 S0608 Conficker
Malware Download Abuse.ch 2019-01-19 06:01:30 2019-07-06 00:04:32
Pizd Bambernek 2019-07-02 00:28:52 2019-07-02 00:28:52
HTTP Spammer StopForumSpam.com 2019-03-13 09:18:17 2019-03-13 09:18:17
Spamming Alienvault Ip Reputation Database 2018-02-06 14:47:40 2019-02-19 07:10:11
Phishing T-Online OpenPhish 2019-01-24 08:47:14 2019-01-24 08:47:14
Malicious Host APT Notes 2019-01-12 08:28:02 2019-01-12 08:28:02
Backdoor.Shiz Hybrid-Analysis 2018-08-17 17:30:31 2018-08-17 17:30:33
Gen:Variant.Kazy Hybrid-Analysis 2018-06-28 11:17:35 2018-06-28 11:17:35
Virut Bambernek 2018-06-04 06:46:17 2018-06-04 06:46:17
virut Maltiverse 2018-04-08 12:44:32 2018-04-08 12:44:32
simda Maltiverse 2018-03-25 05:33:46 2018-03-25 05:33:46
suppobox Maltiverse 2018-03-24 14:51:35 2018-03-24 14:51:35
Defacement Zone-H 2017-12-25 17:30:13 2017-12-25 17:30:13
Malicious host IBM X-Force Exchange 2017-12-10 17:41:55 2017-12-10 17:41:55
Suppobox Bambernek 2017-10-31 11:06:38 2017-10-31 11:06:38
ZeuS Cybercrime-tracker.net 2017-10-15 16:06:39 2017-10-15 16:06:39

Tags

c&c c2 dga phishing malware banjori virut ransomware https://www.threatminer.org/report.php?q=apt-c-23 iocs_0-symantec.pdf&y=2018 zip sector:telecommunications t-online bot abuse pizd exe emotet simda payload maldoc covid19 coronavirus scam sector:financial bank of america mobile.de anonymization tor

Whois information

AS name
AS29169 GANDI FRANCE L/B SERVICES
AS registry
ripencc
AS date
2003-07-31 00:00:00
AS CIDR
217.70.184.0/24
Registrant
GANDI FRANCE L/B SERVICES
City
Paris
Postal code
75004
Country
FR — France 🇫🇷
First indexed
2017-10-15 09:28:50
Last updated
2026-07-17 17:16:14