Cyberbro - Analysis Results

Analysis start time: 2025-11-24 20:30:36

Analysis duration: 0 minutes, 10.81 seconds

Observable Type DNS Lookup IPquery IPinfo AbuseIPDB VirusTotal Google Safe Browsing Shodan Phishtank Abusix RDAP ThreatFox Google Github URLscan Hudson Rock MISP
64.29.17.1 IPv4 Not applicable IP: 64.29.17.1
Score: 0
Geoloc: Walnut, California
Country: United States
ASN: AS16509 Amazon.com, Inc.
Type: Not anonymous
IP: 64.29.17.1
Geoloc: Walnut, California
Country: United States
Hostname: Unknown
ASN: AS16509 Amazon.com, Inc.
Reports: 1
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
80
443
Not applicable Abuse contact: abuse@vercel.com Not applicable Not Found Search results:
64.29.17.1 WHOIS IP Address Lookup - Who.is
64.29.17.1 | Walnut, AS16509, & VPN Not Detected - IPinfo.io
64.29.17.1 - IP Address Lookup - BrowserLeaks
Reporting false positive for ArcSight Threat Intelligence on ...
All my new and old development domains are not working - Help ...
GCP Abuse Intelligence | Community
This site can't be reached, connection refused (Malaysia) - Help ...
Van Auken CAB F4 Carbine - Official GTFO Wiki
Domain loads blank on all iOS devices but works on Android and ...
Cannot change name server addresses in namesilo. : r/dns
Search results:
is-a-dev/register
multimodal-art-projection/MAP-NEO
monthlyliaoyuan/Unofficial_Z_Access
rekryt/iplist
Scan count: 10000
Top related domains:
  • deitbook.com (2)
  • www.crdprotect.fr (2)
  • www.deborah-martin-services.fr (2)
  • www.jolitaliano.com (2)
  • www.templeorange.uk (2)
Not applicable First Seen: 2025-06-03
Last Seen: 2025-11-19
Events Count: 4
CanSSOC - Partner reported IOCs related to M365 phishing campaign
BestPrivate logger downloader in gzip email attachment
Link: See on MISP
216.198.79.1 IPv4 Not applicable IP: 216.198.79.1
Score: 0
Geoloc: Atlanta (Buckhead), Georgia
Country: United States
ASN: AS16509 Network Billing Systems
Type: Not anonymous
IP: 216.198.79.1
Geoloc: Walnut, California
Country: United States
Hostname: Unknown
ASN: AS16509 Amazon.com, Inc.
Reports: 7
Risk: 0%
Ratio: 0/95
Community: -2
Not applicable Ports:
80
443
Not applicable Abuse contact: abuse@vercel.com Not applicable Not Found Search results:
216.198.79.1 | Walnut, AS16509, & VPN Not Detected - IPinfo.io
216.198.79.1 - IP Address Lookup - BrowserLeaks
216.198.79.1 IP Address Geolocation Lookup Demo | IP2Location
216.198.79.1 WHOIS IP Address Lookup - Who.is
Can I get/use another vercel ip for my A record? - Help - Vercel ...
Reporting false positive for ArcSight Threat Intelligence on ...
All my new and old development domains are not working - Help ...
Setting up Vercel with an is-a.dev subdomain | is-a.dev Docs
URGENT: Domain stuck on "Linked to another Vercel account" - Help
Check Website Availability
Search results:
is-a-dev/register
Scan count: 10000
Top related domains:
  • www.dattreo.com (3)
  • www.yotebanco.com (3)
  • billibly.com (3)
  • monadpad.live (3)
  • www.crdprotect.fr (2)
Not applicable First Seen: 2025-08-29
Last Seen: 2025-11-19
Events Count: 2
CanSSOC - Partner reported IOCs related to M365 phishing campaign
ACF25-00091 [Alerta] [Campaña Fraudulenta]
Link: See on MISP
172.66.47.67 IPv4 Not applicable IP: 172.66.47.67
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
IP: 172.66.47.67
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reports: 0
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
8080
2082
2083
2053
2086
2087
80
8880
8443
443
Tags: CDN
Not applicable Abuse contact: abuse@cloudflare.com Not applicable Not Found Search results:
172.66.47.0/24 IP Range - IPinfo.io
MalwareURL Listing Report
Malware analysis http://masmas.pages.dev Malicious activity | ANY ...
Not Found Scan count: 3005
Top related domains:
  • robin-hod-login-us.pages.dev (3)
  • ibijcb.pages.dev (3)
  • help-trezor-iostart-app.pages.dev (2)
  • zorionis-haven.pages.dev (2)
  • vivalavida88-music.site (2)
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 2
UBC Blocking IOC Feed - IPv4
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP
172.66.44.189 IPv4 Not applicable IP: 172.66.44.189
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
IP: 172.66.44.189
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reports: 0
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
2096
2082
2083
2052
2053
2086
2087
80
8880
8080
8443
443
Tags: CDN
Not applicable Abuse contact: abuse@cloudflare.com Not applicable Not Found Search results:
172.66.44.0/24 IP Range - IPinfo.io
Automated Malware Analysis IOC Report for - Generated by Joe ...
SWELL Airdrop Scam - Removal and recovery steps
Malware analysis http://masmas.pages.dev Malicious activity | ANY ...
V2ray Vless | فیلترشکن | سرور اختصاصی – Telegram
Report - kr39.topgirl.co/
Dl.freebar.live Reviews: Check Scam or Safe? Low Trust 39/100
Not Found Scan count: 2993
Top related domains:
  • dl.freebar.live (6)
  • mailin-nycmailgw1-9c06.pages.dev (3)
  • view-coinbase-exetensoin.pages.dev (2)
  • data-center-assessment-messenger.pages.dev (2)
  • www.vivalavida88-music.site (2)
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 2
UBC Blocking IOC Feed - IPv4
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP
172.67.203.24 IPv4 Not applicable IP: 172.67.203.24
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
IP: 172.67.203.24
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reports: 0
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
2096
2082
2083
2086
2087
80
8880
8080
8443
443
Tags: CDN
Not applicable Abuse contact: abuse@cloudflare.com Not applicable Not Found Search results:
172.67.203.0/24 IP Range - IPinfo.io
IP地址信息(172.67.0.0 - 172.67.255.255)
IP-адреса информации (172.67.0.0 - 172.67.255.255)
Untitled
IP位址資訊(172.67.0.0 - 172.67.255.255)
IPアドレス情報 (172.67.0.0 - 172.67.255.255)
Spmatka | DpBoss is SpBoss - Sp Matka | Dp Boss | Sp boss ...
bozatv100.com at Website Informer. 다시보자. Visit Bozatv 100.
Top 47 Javsubbed.net Alternatives & Competitors
ดูหนังโป๊นะ ดูหนังโป๊ใหม่ หนังโป๊ออนไลน์ ดูหนังโป๊ฟรี คลิปโป๊ใหม่ คลิปหลุด ...
Search results:
1andrevich/Re-filter-lists
zhovner/zaborona_help
Scan count: 600
Top related domains:
  • pusat.us.com (5)
  • timezone.katraido.ru.com (4)
  • www.gaborus.us (3)
  • kometa-casino-ytx.top (3)
  • indexer.katraido.ru.com (2)
Not applicable First Seen: 2021-07-09
Last Seen: 2025-11-19
Events Count: 4
UBC Blocking IOC Feed - IPv4
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Daily Incremental ThreatFox Import - 2021-07-09
ThreatFox IOCs for 2021-07-09
Link: See on MISP
104.21.77.14 IPv4 Not applicable IP: 104.21.77.14
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
IP: 104.21.77.14
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reports: 1
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
8080
2082
2083
2052
2053
2086
2087
80
8880
8443
443
Tags: CDN
Not applicable Abuse contact: abuse@cloudflare.com Not applicable Not Found Search results:
104.21.77.0/24 IP Range - IPinfo.io
IP address information (104.21.0.0 - 104.21.255.255)
Untitled
IP地址信息(104.21.0.0 - 104.21.255.255)
IP-адреса информации (104.21.0.0 - 104.21.255.255)
IP位址資訊(104.21.0.0 - 104.21.255.255)
IP 주소 정보 (104.21.0.0 - 104.21.255.255)
IPアドレス情報 (104.21.0.0 - 104.21.255.255)
bozatv100.com at Website Informer. 다시보자. Visit Bozatv 100.
Spmatka | DpBoss is SpBoss - Sp Matka | Dp Boss | Sp boss ...
Search results:
1andrevich/Re-filter-lists
YasserDivaR/pr0xy
Scan count: 143
Top related domains:
  • kryzzip.com (5)
  • aib-review-portal2025.com (2)
  • yoamo.xyz (2)
  • artelledesigns.com (2)
  • www.mp3-center.org (2)
Not applicable First Seen: 2021-07-09
Last Seen: 2025-11-19
Events Count: 4
UBC Blocking IOC Feed - IPv4
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Daily Incremental ThreatFox Import - 2021-07-09
ThreatFox IOCs for 2021-07-09
Link: See on MISP
https://dl.bidprocurement.ca/r/ URL 64.29.17.1
216.198.79.1
IP: 64.29.17.1
Score: 0
Geoloc: Walnut, California
Country: United States
ASN: AS16509 Amazon.com, Inc.
Type: Not anonymous
Reverse DNS applied
IP: 64.29.17.1
Geoloc: Walnut, California
Country: United States
Hostname: Unknown
ASN: AS16509 Amazon.com, Inc.
Reverse DNS applied
Reports: 1
Risk: 0%
Ratio: 1/98
Community: 0
Not applicable Ports:
80
443
Not Found Abuse contact: abuse@vercel.com Registrar: Open Provider Inc.
Abuse contact: abuse@registrar.eu
Creation: 2025-07-03
Expiration: 2026-07-03
Updated: 2025-09-01
Name servers:
ns1.dns-parking.com
ns2.dns-parking.com
Not Found Not applicable Not Found Scan count: 4
Top domains:
  • dl.bidprocurement.ca (4)
Not applicable

Not found

1539afe74714bd63.vercel-dns-017.com FQDN 216.198.79.1
64.29.17.1
IP: 216.198.79.1
Score: 0
Geoloc: Atlanta (Buckhead), Georgia
Country: United States
ASN: AS16509 Network Billing Systems
Type: Not anonymous
Reverse DNS applied
IP: 216.198.79.1
Geoloc: Walnut, California
Country: United States
Hostname: Unknown
ASN: AS16509 Amazon.com, Inc.
Reverse DNS applied
Reports: 7
Risk: 0%
Ratio: 0/95
Community: 0
Not applicable Ports:
80
443
Not Found Abuse contact: abuse@vercel.com Registrar: Amazon Registrar, Inc.
Abuse contact: trustandsafety@support.aws.com
Creation: 2025-01-31
Expiration: 2026-01-31
Updated: 2025-05-13
Name servers:
ns1.vercel-dns-017.com
ns2.vercel-dns-017.com
ns3.vercel-dns-017.com
ns4.vercel-dns-017.com
Not Found Not applicable Not Found Scan count: 0
Not Found
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 1
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP
dl.freebar.live FQDN Not applicable Not applicable Not applicable Not applicable Ratio: 2/95
Community: 0
Not applicable Not applicable Not Found Not applicable Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Creation: 2025-11-17
Expiration: 2026-11-17
Updated: 2025-11-22
Name servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
Not Found Not applicable Not Found Scan count: 13
Top domains:
  • dl.freebar.live (13)
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 1
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP
main-new-8ks.pages.dev FQDN 172.66.47.67
172.66.44.189
IP: 172.66.47.67
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
Reverse DNS applied
IP: 172.66.47.67
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reverse DNS applied
Reports: 0
Risk: 0%
Ratio: 1/95
Community: 0
Not applicable Ports:
8080
2082
2083
2053
2086
2087
80
8880
8443
443
Tags: CDN
Not Found Abuse contact: abuse@cloudflare.com Registrar: CloudFlare, Inc.
Abuse contact: registrar-abuse@cloudflare.com
Creation: 2020-09-02
Expiration: 2026-09-02
Updated: 2025-10-10
Name servers:
adi.ns.cloudflare.com
karl.ns.cloudflare.com
Not Found Not applicable Not Found Scan count: 0
Not Found
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 1
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP
timezone.katraido.ru.com FQDN 172.64.80.1
IP: 172.64.80.1
Score: 0
Geoloc: Toronto, Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
Reverse DNS applied
IP: 172.64.80.1
Geoloc: San Francisco, California
Country: United States
Hostname: Unknown
ASN: AS13335 Cloudflare, Inc.
Reverse DNS applied
Reports: 4
Risk: 0%
Ratio: 4/95
Community: 0
Not applicable Ports:
2096
2082
2083
2052
2053
2086
2087
2095
80
8880
8080
8443
443
Tags: CDN
Not Found Abuse contact: abuse@cloudflare.com Registrar: Sav.com, LLC
Abuse contact: abuse-contact@sav.com
Creation: 1996-02-05
Expiration: 2033-02-06
Updated: 2025-05-09
Name servers:
ns1.centralnic.net
ns2.centralnic.net
ns3.centralnic.net
ns4.centralnic.net
Not Found Not applicable Not Found Scan count: 6
Top domains:
  • timezone.katraido.ru.com (6)
Not applicable First Seen: 2025-11-19
Last Seen: 2025-11-19
Events Count: 1
CanSSOC - Partner reported IOCs related to M365 phishing campaign
Link: See on MISP