103.214.112.56 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Possibly Malicious Host 🟢 29/100

Host and Network Information

  • Mitre ATT&CK IDs: T1110 - Brute Force
  • Tags: brute force, rdp, scanners, ssh, vultr
  • View other sources: Spamhaus VirusTotal

  • Country:
  • Network: AS136052 pt cloud hosting indonesia
  • Noticed: 2 times
  • Protcols Attacked: ssh
  • Countries Attacked: Australia, Spain
  • Passive DNS Results: 1130nanid1.18111800008.com zuboard.com my.ibunda.id 9jq59q3t9r2tgs9z.amp.asia workmi-new.ibunda.id gjvejq6nna3ugah4yas99.amp.asia vf5pjfmca8wpa7nfru6s.amp.asia nginx-vts.ibunda.id paket-bahagia.ibunda.id api-v2.ibunda.id node-exporter-ibunda.ibunda.id cadvisor-ibunda.ibunda.id portainer-ibunda.ibunda.id portainer.ibunda.id swarmpit.ibunda.id pendaftaran.ibunda.id me.ibunda.id www.ibunda.id ibunda.id insightme.id audio.ibunda.id dinkes.ibunda.id dev.insightme.id pma-ibunda.ibunda.id selfcare.ibunda.id www.insightme.id rekam-psikologis.ibunda.id payment.ibunda.id payment-dev.ibunda.id api-staging.ibunda.id simon.ibunda.id wmhd.ibunda.id psych.ibunda.id workmi.ibunda.id workmi-staging.ibunda.id me.api.ibunda.id api.ibunda.id test-prod.ibunda.id mail-app.ibunda.id testprodapi.ibunda.id insightme.ibunda.id testprodinsightme.ibunda.id testprodselfcare.ibunda.id testprodaudio.ibunda.id

Malware Detected on Host

Count: 1 cbc919c60095f7f0b03455aea95648d90586831acec76db65322790da910aa50

Open Ports Detected

22 3306 80

Map

Whois Information

  • inetnum: 103.214.112.0 - 103.214.113.255
  • netname: IDNIC-DENBE-ID
  • descr: PT Denbe Anugerah Solusindo
  • descr: Corporate / Direct Member IDNIC
  • descr: Jl. Danau Toba No.104
  • descr: Bendungan Hilir, Tanah Abang
  • descr: Jakarta Pusat, DKI Jakarta 10210
  • admin-c: BS976-AP
  • tech-c: BS976-AP
  • country: ID
  • mnt-by: MNT-APJII-ID
  • mnt-irt: IRT-DENBE-ID
  • mnt-routes: MAINT-ID-DENBE
  • status: ASSIGNED PORTABLE
  • last-modified: 2016-04-12T03:51:51Z
  • irt: IRT-DENBE-ID
  • address: PT Denbe Anugerah Solusindo
  • address: Jl. Danau Toba No.104
  • address: Bendungan Hilir, Tanah Abang
  • address: Jakarta Pusat, DKI Jakarta 10210
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: BS976-AP
  • tech-c: BS976-AP
  • mnt-by: MAINT-ID-DENBE
  • last-modified: 2018-05-31T22:31:14Z
  • person: Beny Sugiharto
  • address: Jl. Danau Toba No.104
  • address: Bendungan Hilir, Tanah Abang
  • address: Jakarta Pusat, DKI Jakarta 10210
  • country: ID
  • phone: +62-21-5701505
  • e-mail: [email protected]
  • nic-hdl: BS976-AP
  • mnt-by: MAINT-ID-DENBE
  • fax-no: +62-21-5738105
  • last-modified: 2016-04-12T03:57:26Z
  • inetnum: 103.214.112.0 - 103.214.113.255
  • netname: IDNIC-DENBE-ID
  • descr: PT Denbe Anugerah Solusindo
  • descr: Corporate / Direct Member IDNIC
  • descr: Jl. Danau Toba No.104
  • descr: Bendungan Hilir, Tanah Abang
  • descr: Jakarta Pusat, DKI Jakarta 10210
  • admin-c: BS976-AP
  • tech-c: BS976-AP
  • country: ID
  • mnt-by: MNT-APJII-ID
  • mnt-irt: IRT-DENBE-ID
  • mnt-routes: MAINT-ID-DENBE
  • status: ASSIGNED PORTABLE
  • last-modified: 2016-04-12T03:51:51Z
  • irt: IRT-DENBE-ID
  • address: PT Denbe Anugerah Solusindo
  • address: Jl. Danau Toba No.104
  • address: Bendungan Hilir, Tanah Abang
  • address: Jakarta Pusat, DKI Jakarta 10210
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: BS976-AP
  • tech-c: BS976-AP
  • mnt-by: MAINT-ID-DENBE
  • last-modified: 2016-04-08T03:43:04Z
  • person: Beny Sugiharto
  • address: Jl. Danau Toba No.104
  • address: Bendungan Hilir, Tanah Abang
  • address: Jakarta Pusat, DKI Jakarta 10210
  • country: ID
  • phone: +62-21-5701505
  • e-mail: [email protected]
  • nic-hdl: BS976-AP
  • mnt-by: MAINT-ID-DENBE
  • fax-no: +62-21-5738105
  • last-modified: 2016-04-12T03:57:26Z
  • route: 103.214.112.0/24
  • descr: route-object for AS136052
  • origin: AS136052
  • mnt-by: MAINT-ID-DENBE
  • last-modified: 2020-05-18T05:06:37Z

Links to attack logs

vultrmadrid-ssh-bruteforce-ip-list-2023-05-06