109.238.11.114 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 109.238.11.114 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 30/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing, TOR, VPN

  • View other sources: Spamhaus VirusTotal

  • Country: France
  • Network: AS21409 ikoula net sas
  • Noticed: 1 times
  • Protcols Attacked: SSH
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Malware Detected on Host

Count: 3 b2bda5223edc1e1a6ef8e0588fd06320389cbac915f4d22e07af32971918fba0 e18fbbf1aeb2dc525cf205b9a3b90d89f1cb9bffcdd3bbad15531039c16bcd3b 2fb584e2e2d477a0cb2999be1d0406a9e8f19461314de4bfefa34570f7e43e9c

Map

Whois Information

  • inetnum: 109.238.8.0 - 109.238.15.255
  • netname: IKOULA
  • descr: ikoula france serveur virtuel
  • country: FR
  • admin-c: NI181-RIPE
  • tech-c: NI181-RIPE
  • status: ASSIGNED PA
  • mnt-by: IKOULA-MNT
  • mnt-lower: IKOULA-MNT
  • mnt-routes: IKOULA-MNT
  • created: 2010-03-08T15:42:31Z
  • last-modified: 2013-12-17T13:19:18Z
  • role: NOC IKOULA
  • address: 175 rue d?Aguesseau
  • address: 92100 Boulogne Billancourt
  • address: Fr
  • admin-c: JG10236-RIPE
  • tech-c: JDS15-RIPE
  • tech-c: AP4912-RIPE
  • nic-hdl: NI181-RIPE
  • mnt-by: IKOULA-MNT
  • created: 1970-01-01T00:00:00Z
  • last-modified: 2014-10-09T15:22:17Z
  • abuse-mailbox: [email protected]
  • phone: +33184010250
  • route: 109.238.11.0/24
  • origin: AS21409
  • mnt-by: IKOULA-MNT
  • created: 2017-08-22T15:38:53Z
  • last-modified: 2017-08-22T15:38:53Z

Links to attack logs

ntp-bruteforce-ip-list-2020-12-03