107.148.198.233 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 34/100

Host and Network Information

  • Tags: Malicious IP, RDP, admin, blacklist, botnet, mirai, nmap, port-scan, scan, tcp, win, windows
  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS54600 peg tech inc
  • Noticed: 2 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia
  • Passive DNS Results: baidu.kankandv.xyz hxc-cdn-bf.com com deliveryopenbar.com twofivedigital.net thehighpriestesscourt.com praveenkumar.website gwy4ciw.sitelockcdn.net www.jmfmaterials.com www.jenishistorypage.com jenishistorypage.com www.thewestlunds.com www.allaboutvibration.com cescobarlaw.com www.vlmsul.com.br ionpropertiesny.com allaboutvibration.com tonyeetone.com aevo.ind.br salesalls.com www.reemalmealla.com vlmsul.com.br www.cariri.online www.gh-st.co geoffroydeclippel.net www.geoffroydeclippel.net www.odontoprisme.com.br victoriabeth.com www.victoriabeth.com www.originalita.com.br originalita.com.br www.traklin.com www.jdoegeconsulting.com www.empreendedorismoeinovacao.com www.redriverfc.net redriverfc.net www.billofsale.biz thepaperheart.us www.redclastdaysalert.org icone-tech.com kyvd53p.sitelockcdn.net thefunlifeclub.com lvlvwfg.sitelockcdn.net aa4nm6y.sitelockcdn.net 3g7ns32.sitelockcdn.net loudouncomputerhelp.com wvcashhomebuyers.com empreendedorismoeinovacao.com oskm3pn.sitelockcdn.net thewestlunds.com io27dwq.sitelockcdn.net qxx5hjm.sitelockcdn.net protectionalpha.com mumqp5u.sitelockcdn.net balkanxtube.com al-bayrounielectronics.com vtmi4rj.sitelockcdn.net 8orvqie.sitelockcdn.net kammcassidydesign.com 6k3rryh.sitelockcdn.net cursinhoavg.com htwzpmt.sitelockcdn.net cariri.online 38sfihe.sitelockcdn.net talentoscesarsanizo.com johncolindesigns.com redclastdaysalert.org therealgodseo.com ofhi2wa.sitelockcdn.net shamanicsoulutions.com jfv9m6g.sitelockcdn.net grupomiron.com.br geraldoalmeida.adv.br kmh4l3b.sitelockcdn.net khzbtvj.sitelockcdn.net corretoresemacao.com.br brentleyindustries.com al2iopm.sitelockcdn.net whjxcpy.sitelockcdn.net retromaster.com.br rg78ciz.sitelockcdn.net uverseguide.com wc4q5a9.sitelockcdn.net omk47ho.sitelockcdn.net pornoamericans.com 8ivz4.sitelockcdn.net t3kno93.sitelockcdn.net imagesquote.com qrvnuxc.sitelockcdn.net awesomeworks.com.br lo4ncbg.sitelockcdn.net qtxg3.sitelockcdn.net jmfmaterials.com lmgyhpw.sitelockcdn.net jdoegeconsulting.com odontoprisme.com.br q6nfry8.sitelockcdn.net maguigraf.com.br amcc.org.br mc7c5my.sitelockcdn.net iwei7ku.sitelockcdn.net jazzmikan.com 6a7aasr.sitelockcdn.net potemkin.com.br dj8sjhd.sitelockcdn.net ketasantiques.com myfitnessland.com onlinemiracleministry.com clhf899.sitelockcdn.net reobolti.com billofsale.biz m38b4l3.sitelockcdn.net jb2vz.sitelockcdn.net reg6hsa.org xkkknbk.sitelockcdn.net cbpio2t.sitelockcdn.net kitsabor.com.br 1dentist-chapel-hill.com omniscientia.com.br dyg69n3.sitelockcdn.net uniqconcept.com.br m8a4srh.sitelockcdn.net nifteedigital.com 5fivepm.com ytcm3pn.sitelockcdn.net sbiagro.org reemalmealla.com traklin.com

Open Ports Detected

22 3000 443 80

Map

Whois Information

  • NetRange: 107.148.0.0 - 107.149.255.255
  • CIDR: 107.148.0.0/15
  • NetName: PT-82-10
  • NetHandle: NET-107-148-0-0-1
  • Parent: NET107 (NET-107-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS398478, AS398993, AS399195, AS54600, AS398823
  • Organization: PEG TECH INC (PT-82)
  • RegDate: 2013-11-08
  • Updated: 2021-01-06
  • Ref: https://rdap.arin.net/registry/ip/107.148.0.0
  • OrgName: PEG TECH INC
  • OrgId: PT-82
  • Address: 55 South Market Street, Suite 320
  • City: San Jose
  • StateProv: CA
  • PostalCode: 95113
  • Country: US
  • RegDate: 2012-03-27
  • Updated: 2017-01-28
  • Ref: https://rdap.arin.net/registry/entity/PT-82
  • OrgNOCHandle: NOC12550-ARIN
  • OrgNOCName: NOC
  • OrgNOCPhone: +1-657-206-5036
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
  • OrgAbuseHandle: ABUSE3497-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-657-206-5036
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3497-ARIN
  • OrgTechHandle: NOC12550-ARIN
  • OrgTechName: NOC
  • OrgTechPhone: +1-657-206-5036
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
  • tity/CASEI7-ARIN
  • OrgTechHandle: IMPER9-ARIN
  • OrgTechName: Imperva
  • OrgTechPhone: +1-450-405-4945
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/IMPER9-ARIN
  • OrgAbuseHandle: IMPER7-ARIN
  • OrgAbuseName: Imperva AbuseDesk
  • OrgAbusePhone: +1-866-250-7659
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/IMPER7-ARIN
  • OrgTechHandle: TEWKS25-ARIN
  • OrgTechName: Tewksbury, Carl
  • OrgTechPhone: +1-855-574-9831
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/TEWKS25-ARIN
  • OrgTechHandle: KLINK18-ARIN
  • OrgTechName: Klink, Aaron
  • OrgTechPhone: +1-650-345-9000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/KLINK18-ARIN
  • OrgNOCHandle: IMPER11-ARIN
  • OrgNOCName: Imperva Operations
  • OrgNOCPhone: +1-866-250-7659
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/IMPER11-ARIN
  • OrgTechHandle: WOODE23-ARIN
  • OrgTechName: Wooderson, Lee
  • OrgTechPhone: +44 2890446293
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/WOODE23-ARIN
  • OrgTechHandle: CLNSC-ARIN
  • OrgTechName: Chitturi, Lakshmi Naga Sri Charan
  • OrgTechPhone: +93520896
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/CLNSC-ARIN
  • OrgTechHandle: LIROZ-ARIN
  • OrgTechName: liroz, yanay
  • OrgTechPhone: +972723771700
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/LIROZ-ARIN
  • OrgTechHandle: GILKI1-ARIN
  • OrgTechName: Gilkis, Nitzan
  • OrgTechPhone: +1-650-345-9000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/GILKI1-ARIN
  • OrgTechHandle: RIR7-ARIN
  • OrgTechName: rir
  • OrgTechPhone: +1-650-345-9000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/RIR7-ARIN
  • OrgTechHandle: ARIGO-ARIN
  • OrgTechName: Arigo, Francis
  • OrgTechPhone: +1-650-345-9000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ARIGO-ARIN

Links to attack logs

nmap-scanning-list-2021-11-01