3.2.2.2 Threat Intelligence and Host Information
Jul 08, 2025
ipinfopage
General
IP Address
3.2.2.2
Location
🇺🇸 Ashburn, United States
Network
AS16509
Threat Score
86/100
Attack Intelligence
MITRE ATT&CK Techniques
T1027 - Obfuscated Files or Information, T1030 - Data Transfer Size Limits, T1036 - Masquerading, T1056 - Input Capture, T1059 - Command and Scripting Interpreter, T1070 - Indicator Removal on Host, T1105 - Ingress Tool Transfer, T1106 - Native API, T1119 - Automated Collection, T1134 - Access Token Manipulation, T1140 - Deobfuscate/Decode Files or Information, T1176 - Browser Extensions, T1547 - Boot or Logon Autostart Execution
Geographic Location
Country
United States
City
Ashburn
Region
Virginia
Coordinates
39.0469, -77.4903
Network Information
ASN
AS16509
Organization
AMAZON-02
Network
AS16509 AMAZON-02
WHOIS Information
NetRange
3.0.0.0 - 3.127.255.255
CIDR
3.0.0.0/9
NetName
AT-88-Z
NetHandle
NET-3-0-0-0-1
Parent
NET3 (NET-3-0-0-0-0)
NetType
Direct Allocation
OriginAS
Organization
Amazon Technologies Inc. (AT-88-Z)
RegDate
2011-12-08
Updated
2024-01-24
Ref
https://rdap.arin.net/registry/entity/AT-88-Z
OrgName
Amazon Technologies Inc.
OrgId
AT-88-Z
Address
410 Terry Ave N.
City
Seattle
StateProv
WA
PostalCode
98109
Country
US
Comment
* Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
OrgAbuseHandle
AEA8-ARIN
OrgAbuseName
Amazon EC2 Abuse
OrgAbusePhone
+1-206-555-0000
OrgAbuseEmail
trustandsafety@support.aws.com
OrgAbuseRef
https://rdap.arin.net/registry/entity/AEA8-ARIN
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2022-01-03 | Awsau-Redis | MULTIPLE | View Log |
- Known TOR node
- Country: United States
- Network:
- Noticed: 3 times
- Protocols Attacked: Anonymous Proxy
- Countries Attacked: United States of America
- Passive DNS Results: xn–bj0bl50bk2bc1c8xon5fzpel1b.com www.migogo.top cs21.wxwxb.club kainuo.xyz nas66.best
Disclaimer
This page contains threat intelligence information for the IPv4 address 3.2.2.2 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.