Analysis start time: 2025-11-24 20:30:36
Analysis duration: 0 minutes, 10.81 seconds
| Observable | Type | DNS Lookup | IPquery | IPinfo | AbuseIPDB | VirusTotal | Google Safe Browsing | Shodan | Phishtank | Abusix | RDAP | ThreatFox | Github | URLscan | Hudson Rock | MISP | 64.29.17.1 | IPv4 | Not applicable |
IP: 64.29.17.1 Score: 0 Geoloc: Walnut, California Country: United States ASN: AS16509 Amazon.com, Inc. Type: Not anonymous |
IP: 64.29.17.1 Geoloc: Walnut, California Country: United States Hostname: Unknown ASN: AS16509 Amazon.com, Inc. |
Reports:
1 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 80 443 |
Not applicable | Abuse contact: abuse@vercel.com | Not applicable | Not Found |
Search results: 64.29.17.1 WHOIS IP Address Lookup - Who.is 64.29.17.1 | Walnut, AS16509, & VPN Not Detected - IPinfo.io 64.29.17.1 - IP Address Lookup - BrowserLeaks Reporting false positive for ArcSight Threat Intelligence on ... All my new and old development domains are not working - Help ... GCP Abuse Intelligence | Community This site can't be reached, connection refused (Malaysia) - Help ... Van Auken CAB F4 Carbine - Official GTFO Wiki Domain loads blank on all iOS devices but works on Android and ... Cannot change name server addresses in namesilo. : r/dns |
Search results: is-a-dev/register multimodal-art-projection/MAP-NEO monthlyliaoyuan/Unofficial_Z_Access rekryt/iplist |
Scan count: 10000 Top related domains:
|
Not applicable |
First Seen: 2025-06-03 Last Seen: 2025-11-19 Events Count: 4 CanSSOC - Partner reported IOCs related to M365 phishing campaign BestPrivate logger downloader in gzip email attachment Link: See on MISP |
216.198.79.1 | IPv4 | Not applicable |
IP: 216.198.79.1 Score: 0 Geoloc: Atlanta (Buckhead), Georgia Country: United States ASN: AS16509 Network Billing Systems Type: Not anonymous |
IP: 216.198.79.1 Geoloc: Walnut, California Country: United States Hostname: Unknown ASN: AS16509 Amazon.com, Inc. |
Reports:
7 Risk: 0% |
Ratio:
0/95 Community: -2 |
Not applicable |
Ports: 80 443 |
Not applicable | Abuse contact: abuse@vercel.com | Not applicable | Not Found |
Search results: 216.198.79.1 | Walnut, AS16509, & VPN Not Detected - IPinfo.io 216.198.79.1 - IP Address Lookup - BrowserLeaks 216.198.79.1 IP Address Geolocation Lookup Demo | IP2Location 216.198.79.1 WHOIS IP Address Lookup - Who.is Can I get/use another vercel ip for my A record? - Help - Vercel ... Reporting false positive for ArcSight Threat Intelligence on ... All my new and old development domains are not working - Help ... Setting up Vercel with an is-a.dev subdomain | is-a.dev Docs URGENT: Domain stuck on "Linked to another Vercel account" - Help Check Website Availability |
Search results: is-a-dev/register |
Scan count: 10000 Top related domains:
|
Not applicable |
First Seen: 2025-08-29 Last Seen: 2025-11-19 Events Count: 2 CanSSOC - Partner reported IOCs related to M365 phishing campaign ACF25-00091 [Alerta] [Campaña Fraudulenta] Link: See on MISP |
172.66.47.67 | IPv4 | Not applicable |
IP: 172.66.47.67 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
IP: 172.66.47.67 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reports:
0 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 8080 2082 2083 2053 2086 2087 80 8880 8443 443 Tags: CDN |
Not applicable | Abuse contact: abuse@cloudflare.com | Not applicable | Not Found |
Search results: 172.66.47.0/24 IP Range - IPinfo.io MalwareURL Listing Report Malware analysis http://masmas.pages.dev Malicious activity | ANY ... |
Not Found |
Scan count: 3005 Top related domains:
|
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 2 UBC Blocking IOC Feed - IPv4 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
172.66.44.189 | IPv4 | Not applicable |
IP: 172.66.44.189 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
IP: 172.66.44.189 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reports:
0 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 2096 2082 2083 2052 2053 2086 2087 80 8880 8080 8443 443 Tags: CDN |
Not applicable | Abuse contact: abuse@cloudflare.com | Not applicable | Not Found |
Search results: 172.66.44.0/24 IP Range - IPinfo.io Automated Malware Analysis IOC Report for - Generated by Joe ... SWELL Airdrop Scam - Removal and recovery steps Malware analysis http://masmas.pages.dev Malicious activity | ANY ... V2ray Vless | فیلترشکن | سرور اختصاصی – Telegram Report - kr39.topgirl.co/ Dl.freebar.live Reviews: Check Scam or Safe? Low Trust 39/100 |
Not Found |
Scan count: 2993 Top related domains:
|
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 2 UBC Blocking IOC Feed - IPv4 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
172.67.203.24 | IPv4 | Not applicable |
IP: 172.67.203.24 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
IP: 172.67.203.24 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reports:
0 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 2096 2082 2083 2086 2087 80 8880 8080 8443 443 Tags: CDN |
Not applicable | Abuse contact: abuse@cloudflare.com | Not applicable | Not Found |
Search results: 172.67.203.0/24 IP Range - IPinfo.io IP地址信息(172.67.0.0 - 172.67.255.255) IP-адреса информации (172.67.0.0 - 172.67.255.255) Untitled IP位址資訊(172.67.0.0 - 172.67.255.255) IPアドレス情報 (172.67.0.0 - 172.67.255.255) Spmatka | DpBoss is SpBoss - Sp Matka | Dp Boss | Sp boss ... bozatv100.com at Website Informer. 다시보자. Visit Bozatv 100. Top 47 Javsubbed.net Alternatives & Competitors ดูหนังโป๊นะ ดูหนังโป๊ใหม่ หนังโป๊ออนไลน์ ดูหนังโป๊ฟรี คลิปโป๊ใหม่ คลิปหลุด ... |
Search results: 1andrevich/Re-filter-lists zhovner/zaborona_help |
Scan count: 600 Top related domains:
|
Not applicable |
First Seen: 2021-07-09 Last Seen: 2025-11-19 Events Count: 4 UBC Blocking IOC Feed - IPv4 CanSSOC - Partner reported IOCs related to M365 phishing campaign Daily Incremental ThreatFox Import - 2021-07-09 ThreatFox IOCs for 2021-07-09 Link: See on MISP |
104.21.77.14 | IPv4 | Not applicable |
IP: 104.21.77.14 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
IP: 104.21.77.14 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reports:
1 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 8080 2082 2083 2052 2053 2086 2087 80 8880 8443 443 Tags: CDN |
Not applicable | Abuse contact: abuse@cloudflare.com | Not applicable | Not Found |
Search results: 104.21.77.0/24 IP Range - IPinfo.io IP address information (104.21.0.0 - 104.21.255.255) Untitled IP地址信息(104.21.0.0 - 104.21.255.255) IP-адреса информации (104.21.0.0 - 104.21.255.255) IP位址資訊(104.21.0.0 - 104.21.255.255) IP 주소 정보 (104.21.0.0 - 104.21.255.255) IPアドレス情報 (104.21.0.0 - 104.21.255.255) bozatv100.com at Website Informer. 다시보자. Visit Bozatv 100. Spmatka | DpBoss is SpBoss - Sp Matka | Dp Boss | Sp boss ... |
Search results: 1andrevich/Re-filter-lists YasserDivaR/pr0xy |
Scan count: 143 Top related domains:
|
Not applicable |
First Seen: 2021-07-09 Last Seen: 2025-11-19 Events Count: 4 UBC Blocking IOC Feed - IPv4 CanSSOC - Partner reported IOCs related to M365 phishing campaign Daily Incremental ThreatFox Import - 2021-07-09 ThreatFox IOCs for 2021-07-09 Link: See on MISP |
https://dl.bidprocurement.ca/r/ | URL |
64.29.17.1 216.198.79.1 |
IP: 64.29.17.1 Score: 0 Geoloc: Walnut, California Country: United States ASN: AS16509 Amazon.com, Inc. Type: Not anonymous |
Reverse DNS applied IP: 64.29.17.1 Geoloc: Walnut, California Country: United States Hostname: Unknown ASN: AS16509 Amazon.com, Inc. |
Reverse DNS applied Reports: 1 Risk: 0% |
Ratio:
1/98 Community: 0 |
Not applicable |
Ports: 80 443 |
Not Found | Abuse contact: abuse@vercel.com |
Registrar: Open Provider Inc. Abuse contact: abuse@registrar.eu Creation: 2025-07-03 Expiration: 2026-07-03 Updated: 2025-09-01 Name servers: ns1.dns-parking.com ns2.dns-parking.com |
Not Found | Not applicable | Not Found |
Scan count: 4 Top domains:
|
Not applicable |
Not found |
1539afe74714bd63.vercel-dns-017.com | FQDN |
216.198.79.1 64.29.17.1 |
IP: 216.198.79.1 Score: 0 Geoloc: Atlanta (Buckhead), Georgia Country: United States ASN: AS16509 Network Billing Systems Type: Not anonymous |
Reverse DNS applied IP: 216.198.79.1 Geoloc: Walnut, California Country: United States Hostname: Unknown ASN: AS16509 Amazon.com, Inc. |
Reverse DNS applied Reports: 7 Risk: 0% |
Ratio:
0/95 Community: 0 |
Not applicable |
Ports: 80 443 |
Not Found | Abuse contact: abuse@vercel.com |
Registrar: Amazon Registrar, Inc. Abuse contact: trustandsafety@support.aws.com Creation: 2025-01-31 Expiration: 2026-01-31 Updated: 2025-05-13 Name servers: ns1.vercel-dns-017.com ns2.vercel-dns-017.com ns3.vercel-dns-017.com ns4.vercel-dns-017.com |
Not Found | Not applicable | Not Found |
Scan count: 0 Not Found |
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 1 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
dl.freebar.live | FQDN | Not applicable | Not applicable | Not applicable | Not applicable |
Ratio:
2/95 Community: 0 |
Not applicable | Not applicable | Not Found | Not applicable |
Registrar: NameCheap, Inc. Abuse contact: abuse@namecheap.com Creation: 2025-11-17 Expiration: 2026-11-17 Updated: 2025-11-22 Name servers: dns1.registrar-servers.com dns2.registrar-servers.com |
Not Found | Not applicable | Not Found |
Scan count: 13 Top domains:
|
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 1 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
main-new-8ks.pages.dev | FQDN |
172.66.47.67 172.66.44.189 |
IP: 172.66.47.67 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
Reverse DNS applied IP: 172.66.47.67 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reverse DNS applied Reports: 0 Risk: 0% |
Ratio:
1/95 Community: 0 |
Not applicable |
Ports: 8080 2082 2083 2053 2086 2087 80 8880 8443 443 Tags: CDN |
Not Found | Abuse contact: abuse@cloudflare.com |
Registrar: CloudFlare, Inc. Abuse contact: registrar-abuse@cloudflare.com Creation: 2020-09-02 Expiration: 2026-09-02 Updated: 2025-10-10 Name servers: adi.ns.cloudflare.com karl.ns.cloudflare.com |
Not Found | Not applicable | Not Found |
Scan count: 0 Not Found |
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 1 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
timezone.katraido.ru.com | FQDN |
172.64.80.1 |
IP: 172.64.80.1 Score: 0 Geoloc: Toronto, Ontario Country: Canada ASN: AS13335 Cloudflare, Inc. Type: Not anonymous |
Reverse DNS applied IP: 172.64.80.1 Geoloc: San Francisco, California Country: United States Hostname: Unknown ASN: AS13335 Cloudflare, Inc. |
Reverse DNS applied Reports: 4 Risk: 0% |
Ratio:
4/95 Community: 0 |
Not applicable |
Ports: 2096 2082 2083 2052 2053 2086 2087 2095 80 8880 8080 8443 443 Tags: CDN |
Not Found | Abuse contact: abuse@cloudflare.com |
Registrar: Sav.com, LLC Abuse contact: abuse-contact@sav.com Creation: 1996-02-05 Expiration: 2033-02-06 Updated: 2025-05-09 Name servers: ns1.centralnic.net ns2.centralnic.net ns3.centralnic.net ns4.centralnic.net |
Not Found | Not applicable | Not Found |
Scan count: 6 Top domains:
|
Not applicable |
First Seen: 2025-11-19 Last Seen: 2025-11-19 Events Count: 1 CanSSOC - Partner reported IOCs related to M365 phishing campaign Link: See on MISP |
|---|