109.237.202.133 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 109.237.202.133 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 20/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, nmap, phishing, port-scan

  • View other sources: Spamhaus VirusTotal

  • Country: Jordan
  • Network: AS50670 vtel holdings limited jordan co.
  • Noticed: 1 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

10000 10001 10134 102 1022 1024 10243 1025 10250 1099 11000 111 1110 11210 11211 113 11300 11371 119 12000 122 131 1311 135 13579 1400 14265 1433 14344 1471 15 1500 1521 154 1599 16010 16030 1604 16992 16993 17 175 179 1800 1801 18081 18245 1833 1883 19000 19071 1911 1925 1926 1935 1950 1962 2000 20000 2006 2008 2012 2018 2020 2022 20256 2051 20547 2057 2059 2060 2067 2068 2077 2081 2082 2083 2086 2087 21 2126 21379 2154 22 221 2211 2220 2222 22222 2223 2233 225 2333 23424 2375 2376 2382 24 2404 2480 25001 25105 2560 2562 2566 2572 26 2626 264 27017 2761 2762 28015 28017 3000 3001 3005 3049 3050 3054 3056 3058 3060 3066 3072 3073 3080 3084 3095 3097 3100 3108 3109 311 3111 3117 3121 3128 31337 32400 3269 3270 32764 3299 3301 33060 3333 3388 3389 3401 3405 3406 3443 3460 35000 3503 3522 3541 3542 3549 3551 3552 3554 3557 3560 3570 35780 3689 37 37215 3749 37777 3780 389 4000 4040 4064 41800 427 4282 43 4321 4369 44158 443 4430 4433 444 4444 44818 449 450 4500 4506 465 4664 4700 4734 4782 4786 47990 4808 4840 4848 4899 49 4911 49152 49153 5000 5005 50050 5006 5007 50070 5009 5010 50100 5025 5090 51106 51235 515 5150 5201 5209 522 53 53535 5357 54138 5432 5435 5443 5454 548 55000 55442 5555 55553 55554 5560 5594 5604 5672 5673 5800 5801 5858 587 58749 5900 5901 593 5938 59417 5985 5986 60001 6001 60010 60030 6004 6080 6161 61613 61616 631 6352 636 6363 6379 63914 6443 6511 6543 6550 6560 6590 6603 6605 6622 6633 6653 666 6664 6666 6667 6668 6998 7001 7002 7171 7415 7474 7537 7547 7657 771 777 7777 7779 7788 789 79 80 800 8001 8004 8005 8006 8008 8009 8010 8013 8025 8032 8033 8034 8035 8039 8043 8048 8056 8069 808 8080 8081 8083 8086 8087 8089 8090 8098 8099 81 8101 8104 8105 8106 8123 8126 8139 8181 8184 8190 82 8200 8236 8248 8249 8282 8291 83 8333 84 8416 8421 8431 8442 8444 85 8545 8575 8585 8590 8649 8688 8728 873 8733 8767 8789 88 8800 8804 8805 8814 8820 8824 8827 8830 8834 8839 8841 8845 8846 8848 8850 8854 8857 8861 8865 8867 8871 8876 8880 8885 8888 8899 89 90 9000 9001 9002 9008 9009 9011 9018 902 9025 9031 9038 9039 9043 9047 9050 9080 9090 9091 9092 9099 9101 9102 9108 9160 9191 92 9200 9205 9209 9211 9212 9218 9306 9308 9311 9389 9530 9595 9663 9704 9743 98 9869 99 992 993 9944 995 999 9992

Map

Whois Information

  • inetnum: 109.237.192.0 - 109.237.207.255
  • netname: JO-VTEL-JORDAN-20100118
  • country: Jo
  • org: ORG-VHLC1-RIPE
  • admin-c: HH96-RIPE
  • abuse-c: AD11188-RIPE
  • tech-c: HH96-RIPE
  • status: ALLOCATED PA
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: MNT-VTELJO
  • mnt-routes: MNT-VTELJO
  • created: 2018-05-07T19:58:48Z
  • last-modified: 2021-07-15T10:14:09Z
  • organisation: ORG-VHLC1-RIPE
  • org-name: VTEL HOLDINGS LIMITED/JORDAN CO.
  • country: JO
  • org-type: LIR
  • address: Wadi Saqra, Arar Street, Building 244
  • address: P.O Box 2833
  • address: Amman 11181
  • address: JORDAN
  • phone: +962797447704
  • phone: +96265100680
  • fax-no: +96265651636
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: MNT-VTELJO
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: MNT-VTELJO
  • admin-c: HH96-RIPE
  • abuse-c: AD11188-RIPE
  • created: 2010-01-15T09:46:46Z
  • last-modified: 2021-02-09T07:09:57Z
  • person: Hussein Hatough
  • address: VTEL Holdings Limited/Jordan
  • phone: +96265100680
  • nic-hdl: HH96-RIPE
  • created: 2009-07-14T10:06:58Z
  • last-modified: 2017-10-30T22:06:04Z
  • mnt-by: MNT-VTELJO
  • route: 109.237.202.0/24
  • origin: AS50670
  • mnt-by: MNT-VTELJO
  • created: 2018-05-13T07:40:47Z
  • last-modified: 2018-05-13T07:40:47Z

Links to attack logs

****** nmap-scanning-list-2023-03-25 ****** ******

Share on: