Hosted at Amazon AWS (cloud).
- ASN kind
- cloud
- ASN operator
- Amazon AWS
| Source | Finding | Confidence | Age | Signal |
|---|---|---|---|---|
| Listed as botnet_cc for Unknown malware at 50% confidence, today. | 50% | 0 days recent | Moderate | |
| Marked as a known false positive or whitelisted. | — | — | Benign | |
| IOCSCAPE knowledge base | Hosted at Amazon AWS (cloud). | — | — | Context |
| Network AT-88-Z (NET-34-192-0-0-1), country unknown; Amazon Technologies Inc.. | — | — | Context | |
| Announced in 34.224.0.0/12 by AS14618 (AMAZON-AES - Amazon.com, Inc.). | — | — | Context | |
| Open ports 80. | — | — | Context | |
| Reverse DNS (ip.thc.org) | 1 domain(s) point at this IP in ip.thc.org's DNS index. | — | — | Context |
| Only 1/91 vendors (1.1%) flag it: an isolated detection, not corroboration. | 1/91 | 54 days aging | Neutral |
Coverage · checked, no record: GreyNoise, AbuseIPDB, URLhaus, Feodo Tracker, Emerging Threats, Tor exit list, VPN ranges, CrowdSec, Spamhaus DROP, DShield · failed: none
This IP is suspicious (medium confidence). Listed as botnet_cc for Unknown malware at 50% confidence, today.
Links the indicator to Unknown malware activity, hosted at Amazon AWS; this does not identify a specific threat actor or implicate the hosting provider.
No group is directly linked to this indicator by any source.
| Source | Finding | Confidence | Age | Signal |
|---|---|---|---|---|
| Listed as botnet_cc for Unknown malware at 50% confidence, today. | 50% | 0 days recent | Moderate | |
| Marked as a known false positive or whitelisted. | — | — | Benign | |
| IOCSCAPE knowledge base | Hosted at Amazon AWS (cloud). | — | — | Context |
| Network AT-88-Z (NET-34-192-0-0-1), country unknown; Amazon Technologies Inc.. | — | — | Context | |
| Announced in 34.224.0.0/12 by AS14618 (AMAZON-AES - Amazon.com, Inc.). | — | — | Context | |
| Open ports 80. | — | — | Context | |
| Reverse DNS (ip.thc.org) | 1 domain(s) point at this IP in ip.thc.org's DNS index. | — | — | Context |
| Only 1/91 vendors (1.1%) flag it: an isolated detection, not corroboration. | 1/91 | 54 days aging | Neutral | |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| VPN ranges | No record. | — | — | No record |
| No record. | — | — | No record | |
| No record. | — | — | No record | |
| DShield | Not among the 1,000 IPs most reported by DShield sensors today. | — | — | No record |
This IP is suspicious (medium confidence). Listed as botnet_cc for Unknown malware at 50% confidence, today.
Links the indicator to Unknown malware activity, hosted at Amazon AWS; this does not identify a specific threat actor or implicate the hosting provider.
1 domain point here.
From ip.thc.org's index of DNS records.
Hosted at Amazon AWS (cloud).
Network AT-88-Z (NET-34-192-0-0-1), country unknown; Amazon Technologies Inc..
Announced in 34.224.0.0/12 by AS14618 (AMAZON-AES - Amazon.com, Inc.).
Open ports 80.
1 domain(s) point at this IP in ip.thc.org's DNS index.
Links the indicator to Unknown malware activity, hosted at Amazon AWS; this does not identify a specific threat actor or implicate the hosting provider.
Relationship ≠ ownership. Shared IPs, ASNs or platforms never imply the same operator.
No group is directly linked to this indicator by any source.
Opens the indicator in the source's own site (new tab).