106.10.122.53 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 106.10.122.53 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Known Malicious Host 🔴 85/100

Host and Network Information

  • Mitre ATT&CK IDs: T1078 - Valid Accounts, T1083 - File and Directory Discovery, T1098.004 - SSH Authorized Keys, T1105 - Ingress Tool Transfer, T1110.004 - Credential Stuffing, T1110 - Brute Force
  • Tags: attack, Bruteforce, Brute-Force, cowrie, cyber security, ioc, login, malicious, Nextray, phishing, probing, scanner, scanning, ssh, SSH, Telnet, webscan, webscanner bruteforce web app attack

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: blocklist_net_ua, haley_ssh, stopforumspam_180d, stopforumspam_30d, stopforumspam_365d, stopforumspam_7d, stopforumspam_90d, stopforumspam

  • Country: South Korea
  • Network: AS17878 dreammark1
  • Noticed: 50 times
  • Protcols Attacked: ssh
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

10250 21 25 3306 33060 3389 445 80

CVEs Detected

CVE-2006-20001 CVE-2019-12466 CVE-2019-12468 CVE-2019-16738 CVE-2019-17567 CVE-2019-19709 CVE-2020-10534 CVE-2020-10959 CVE-2020-10960 CVE-2020-11984 CVE-2020-11993 CVE-2020-13938 CVE-2020-13950 CVE-2020-15005 CVE-2020-1927 CVE-2020-1934 CVE-2020-25813 CVE-2020-25814 CVE-2020-25827 CVE-2020-25869 CVE-2020-26120 CVE-2020-26121 CVE-2020-27621 CVE-2020-27957 CVE-2020-29002 CVE-2020-29003 CVE-2020-29004 CVE-2020-29005 CVE-2020-35452 CVE-2020-35474 CVE-2020-35475 CVE-2020-35477 CVE-2020-35479 CVE-2020-35480 CVE-2020-35622 CVE-2020-35623 CVE-2020-35624 CVE-2020-35625 CVE-2020-35626 CVE-2020-9490 CVE-2021-26690 CVE-2021-26691 CVE-2021-30152 CVE-2021-30153 CVE-2021-30154 CVE-2021-30155 CVE-2021-30156 CVE-2021-30157 CVE-2021-30158 CVE-2021-30159 CVE-2021-31545 CVE-2021-31546 CVE-2021-31547 CVE-2021-31548 CVE-2021-31549 CVE-2021-31550 CVE-2021-31551 CVE-2021-31552 CVE-2021-31553 CVE-2021-31554 CVE-2021-31555 CVE-2021-31556 CVE-2021-33193 CVE-2021-34798 CVE-2021-35197 CVE-2021-36125 CVE-2021-36126 CVE-2021-36127 CVE-2021-36128 CVE-2021-36129 CVE-2021-36130 CVE-2021-36131 CVE-2021-36132 CVE-2021-36160 CVE-2021-39275 CVE-2021-40438 CVE-2021-41798 CVE-2021-41799 CVE-2021-41800 CVE-2021-41801 CVE-2021-42040 CVE-2021-42041 CVE-2021-42042 CVE-2021-42043 CVE-2021-42044 CVE-2021-42045 CVE-2021-42046 CVE-2021-42047 CVE-2021-42048 CVE-2021-42049 CVE-2021-44224 CVE-2021-44790 CVE-2021-44854 CVE-2021-44855 CVE-2021-44856 CVE-2021-44857 CVE-2021-44858 CVE-2021-45038 CVE-2021-45471 CVE-2021-45472 CVE-2021-45474 CVE-2021-46146 CVE-2021-46147 CVE-2021-46148 CVE-2021-46149 CVE-2021-46150 CVE-2022-22719 CVE-2022-22720 CVE-2022-22721 CVE-2022-23943 CVE-2022-26377 CVE-2022-28201 CVE-2022-28202 CVE-2022-28203 CVE-2022-28205 CVE-2022-28206 CVE-2022-28209 CVE-2022-28323 CVE-2022-28330 CVE-2022-28614 CVE-2022-28615 CVE-2022-29404 CVE-2022-29903 CVE-2022-29904 CVE-2022-29905 CVE-2022-29906 CVE-2022-29907 CVE-2022-30556 CVE-2022-31813 CVE-2022-34750 CVE-2022-34911 CVE-2022-34912 CVE-2022-36760 CVE-2022-37436 CVE-2022-39194 CVE-2022-41765 CVE-2022-41766 CVE-2022-41767 CVE-2022-47927 CVE-2023-22909 CVE-2023-22910 CVE-2023-22911 CVE-2023-22912 CVE-2023-22945 CVE-2023-25690 CVE-2023-27522 CVE-2023-29137 CVE-2023-29139 CVE-2023-29140 CVE-2023-29141 CVE-2023-36674 CVE-2023-36675 CVE-2023-37251 CVE-2023-37254 CVE-2023-37255 CVE-2023-37256 CVE-2023-37300 CVE-2023-37301 CVE-2023-37302 CVE-2023-37303 CVE-2023-37304 CVE-2023-37305 CVE-2023-45362 CVE-2023-45363 CVE-2023-51704

Map

Whois Information

  • inetnum: 106.10.64.0 - 106.10.127.255
  • netname: LXN
  • descr: LX
  • admin-c: IM651-AP
  • tech-c: IM651-AP
  • country: KR
  • status: ALLOCATED PORTABLE
  • mnt-by: MNT-KRNIC-AP
  • mnt-irt: IRT-KRNIC-KR
  • last-modified: 2017-01-31T07:11:12Z
  • irt: IRT-KRNIC-KR
  • address: Jeollanam-do Naju-si Jinheung-gil
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IM574-AP
  • tech-c: IM574-AP
  • mnt-by: MNT-KRNIC-AP
  • last-modified: 2021-06-15T06:21:49Z
  • person: IP Manager
  • address: Seoul Guro-gu Digital-ro 31-gil
  • country: KR
  • phone: +82-2-851-0111
  • e-mail: [email protected]
  • nic-hdl: IM651-AP
  • mnt-by: MNT-KRNIC-AP
  • last-modified: 2022-08-18T08:44:02Z
  • inetnum: 106.10.64.0 - 106.10.127.255
  • netname: LXN-KR
  • descr: LX
  • country: KR
  • admin-c: PH1303-KR
  • tech-c: PH1303-KR
  • status: ALLOCATED PORTABLE
  • mnt-by: MNT-KRNIC-AP
  • mnt-irt: IRT-KRNIC-KR
  • changed: [email protected]
  • person: IP Manager
  • address: Seoul Guro-gu Digital-ro 31-gil
  • address: 61, 804ho(gurodong, dreammark1datacenter)
  • country: KR
  • phone: +82-2-851-0111
  • e-mail: [email protected]
  • nic-hdl: PH1303-KR
  • mnt-by: MNT-KRNIC-AP
  • changed: [email protected]

Links to attack logs

vultrmadrid-ssh-bruteforce-ip-list-2022-08-16 vultrparis-ssh-bruteforce-ip-list-2022-12-31 vultrparis-ssh-bruteforce-ip-list-2023-01-01 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-01 vultrparis-ssh-bruteforce-ip-list-2023-01-19 bruteforce-ip-list-2023-01-22 vultrparis-ssh-bruteforce-ip-list-2023-01-22 bruteforce-ip-list-2022-06-30 vultrparis-ssh-bruteforce-ip-list-2022-12-22 bruteforce-ip-list-2022-12-31 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-21 bruteforce-ip-list-2022-07-01 vultrparis-ssh-bruteforce-ip-list-2022-08-16 vultrwarsaw-ssh-bruteforce-ip-list-2022-08-16 vultrparis-ssh-bruteforce-ip-list-2022-12-24 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-26 vultrmadrid-ssh-bruteforce-ip-list-2022-12-27 bruteforce-ip-list-2022-12-29 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-22 ** vultrmadrid-ssh-bruteforce-ip-list-2022-11-25 vultrwarsaw-ssh-bruteforce-ip-list-2022-11-25 bruteforce-ip-list-2022-12-25 vultrparis-ssh-bruteforce-ip-list-2022-12-27 bruteforce-ip-list-2023-01-21 vultrmadrid-ssh-bruteforce-ip-list-2022-06-17 vultrparis-ssh-bruteforce-ip-list-2022-06-19 dofrank-ssh-bruteforce-ip-list-2022-08-26 bruteforce-ip-list-2022-11-27 vultrmadrid-ssh-bruteforce-ip-list-2022-11-28 vultrmadrid-ssh-bruteforce-ip-list-2022-12-22 bruteforce-ip-list-2022-12-24 vultrmadrid-ssh-bruteforce-ip-list-2022-12-28 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-28 bruteforce-ip-list-2023-01-10 dolondon-ssh-bruteforce-ip-list-2023-01-16 vultrmadrid-ssh-bruteforce-ip-list-2023-01-23 bruteforce-ip-list-2022-08-16 vultrparis-ssh-bruteforce-ip-list-2022-08-17 vultrwarsaw-ssh-bruteforce-ip-list-2022-11-27 bruteforce-ip-list-2022-11-28 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-24 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-25 vultrmadrid-ssh-bruteforce-ip-list-2022-12-26 vultrmadrid-ssh-bruteforce-ip-list-2022-12-29 bruteforce-ip-list-2023-01-02 vultrparis-ssh-bruteforce-ip-list-2023-01-04 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-19 vultrmadrid-ssh-bruteforce-ip-list-2022-11-27 vultrparis-ssh-bruteforce-ip-list-2022-11-27 bruteforce-ip-list-2022-12-27 bruteforce-ip-list-2023-01-03 bruteforce-ip-list-2023-01-19 vultrmadrid-ssh-bruteforce-ip-list-2023-01-21 vultrmadrid-ssh-bruteforce-ip-list-2023-01-30 vultrparis-ssh-bruteforce-ip-list-2022-11-26 vultrmadrid-ssh-bruteforce-ip-list-2022-12-23 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-29 vultrparis-ssh-bruteforce-ip-list-2023-01-15 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-30 vultrmadrid-ssh-bruteforce-ip-list-2023-01-04 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-04 vultrmadrid-ssh-bruteforce-ip-list-2022-08-17 vultrmadrid-ssh-bruteforce-ip-list-2022-12-24 vultrparis-ssh-bruteforce-ip-list-2022-12-26 vultrparis-ssh-bruteforce-ip-list-2022-12-29 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-30 vultrmadrid-ssh-bruteforce-ip-list-2023-01-22 vultrparis-ssh-bruteforce-ip-list-2023-02-01 vultrwarsaw-ssh-bruteforce-ip-list-2023-01-23 vultrwarsaw-ssh-bruteforce-ip-list-2022-06-30 vultrwarsaw-ssh-bruteforce-ip-list-2022-08-05 vultrwarsaw-ssh-bruteforce-ip-list-2022-11-26 vultrmadrid-ssh-bruteforce-ip-list-2022-12-25 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-27 bruteforce-ip-list-2022-12-28 bruteforce-ip-list-2023-01-01 vultrparis-ssh-bruteforce-ip-list-2023-01-02 dosing-ssh-bruteforce-ip-list-2023-01-14 vultrparis-ssh-bruteforce-ip-list-2023-01-21 vultrwarsaw-ssh-bruteforce-ip-list-2022-08-17 vultrmadrid-ssh-bruteforce-ip-list-2022-12-30 bruteforce-ip-list-2022-12-23 bruteforce-ip-list-2022-12-30 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-31 bruteforce-ip-list-2023-01-04 ** vultrwarsaw-ssh-bruteforce-ip-list-2023-01-03 vultrparis-ssh-bruteforce-ip-list-2022-08-05 vultrparis-ssh-bruteforce-ip-list-2022-11-28 vultrwarsaw-ssh-bruteforce-ip-list-2022-11-28 vultrwarsaw-ssh-bruteforce-ip-list-2022-12-23 vultrparis-ssh-bruteforce-ip-list-2022-12-28 vultrmadrid-ssh-bruteforce-ip-list-2023-01-01 bruteforce-ip-list-2023-01-20 ** dofrank-ssh-bruteforce-ip-list-2022-06-21 vultrmadrid-ssh-bruteforce-ip-list-2022-12-31 bruteforce-ip-list-2022-08-17 vultrparis-ssh-bruteforce-ip-list-2022-11-25 vultrmadrid-ssh-bruteforce-ip-list-2022-11-26 bruteforce-ip-list-2022-12-22 vultrparis-ssh-bruteforce-ip-list-2022-12-25 bruteforce-ip-list-2022-12-26 vultrparis-ssh-bruteforce-ip-list-2022-12-30 dofrank-ssh-bruteforce-ip-list-2023-01-14 vultrparis-ssh-bruteforce-ip-list-2023-01-23 vultrmadrid-ssh-bruteforce-ip-list-2022-06-30 vultrparis-ssh-bruteforce-ip-list-2022-12-23 dotoronto-ssh-bruteforce-ip-list-2023-01-14