31.41.244.11
Classification: Neutral
31.41.244.11 is a neutral IP address. Reported by 2 threat sources, last seen 2025-01-30. Network: AS57678 Red Bytes LLC.
MITRE ATT&CK associations
Malware families: AMADEY (S1025)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malware Download | URLhaus Abuse.ch | 2024-08-18 13:23:21 | 2025-01-30 01:22:15 | malicious-activity | |
| Lumma Stealer | ThreatFox Abuse.ch | 2024-12-30 12:17:14 | 2025-01-20 14:22:50 | malicious-activity | |
| Stealc | ThreatFox Abuse.ch | 2024-12-30 12:17:16 | 2024-12-30 12:17:16 | malicious-activity | |
| Lumar | ThreatFox Abuse.ch | 2024-12-30 12:17:15 | 2024-12-30 12:17:15 | malicious-activity | |
| Amadey | ThreatFox Abuse.ch | 2024-08-18 14:17:17 | 2024-08-18 14:17:17 | malicious-activity | S1025 Amadey |
Tags
exe amadey c2 none cmd stealc marsstealer netsupport lummastealer 32 growtopia coinminer asyncrat danabot connectwise vidar darktortilla povertystealer xenorat gcleaner rustystealer venomrat dcrat socks5systemz ps1 formbook stormkitty babadeda sliver infostealer lumma lummac2 stealer lumar ua-wget donutloader booking dropper meduzastealer port:80Whois information
- AS name
- AS57678 Red Bytes LLC
- AS registry
- ripencc
- AS date
- 2011-04-06 00:00:00
- AS CIDR
- 31.41.244.0/24
- Registrant
- Red Bytes LLC
- City
- Saint Petersburg
- Postal code
- 191186
- Country
- RU — Russian Federation 🇷🇺
- First indexed
- 2024-08-18 13:23:21
- Last updated
- 2025-03-16 17:20:02