110.49.11.50 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Likely Malicious Host 🟠 60/100

Host and Network Information

  • Mitre ATT&CK IDs: T1498 - Network Denial of Service, T1499 - Endpoint Denial of Service, T1499.002 - Service Exhaustion Flood
  • Tags: Cyclops, DDOS, DDoS, Gamardeon, HEAD Floods, HermeticWiper, IsaacWiper, KillNet, Killnet, PartyTicket, RDP, SSH, T1498, T1499, WhisperGate, abuse, attack ddos, botnet, bruteforce, cc.py, ddos, fraud, ipqs, ipqualityscore, list ips, russia, russian, ukraine, web attack
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: proxylists_1d, proxylists_30d, proxylists_7d, sslproxies_30d

  • Country: Thailand
  • Network: AS45458 sbn-isp/awn-isp and sbn-nix/awn-nix
  • Noticed: 27 times
  • Protcols Attacked: SSH
  • Countries Attacked: Russian Federation

Malware Detected on Host

Count: 1 e2d0a5551b98e14ba6696a65e0cdb3358e9fc20707cd0361ff2b0f13f14fdd4b

Open Ports Detected

1701 2000 53 81 8291

Map

Whois Information

  • inetnum: 110.49.11.48 - 110.49.11.63
  • netname: BangSaiHospital-by-AWN
  • descr: [email protected]
  • country: TH
  • admin-c: SS1413-AP
  • tech-c: NI36-AP
  • abuse-c: AA1419-AP
  • status: ALLOCATED NON-PORTABLE
  • mnt-by: MAINT-AWN-CO-LTD-TH
  • mnt-irt: IRT-AWN-CO-LTD-TH
  • last-modified: 2021-05-26T03:44:00Z
  • irt: IRT-AWN-CO-LTD-TH
  • address: 414 Phaholyothin Rd Samsen Nai Phayathai Thailand Bangkok 10400
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: AWNC1-AP
  • tech-c: AWNC1-AP
  • mnt-by: MAINT-AWN-CO-LTD-TH
  • last-modified: 2023-03-27T03:42:13Z
  • role: ABUSE AWNCOLTDTH
  • address: 414 Phaholyothin Rd Samsen Nai Phayathai Thailand Bangkok 10400
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: AWNC1-AP
  • tech-c: AWNC1-AP
  • nic-hdl: AA1419-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-03-27T03:43:29Z
  • role: SBN Co Ltd IP Planning
  • address: 408/60 Phaholyothin Place Building 38th floor
  • address: Phaholyothin Road, Samsennai,
  • address: Phayathai, Bangkok 10400
  • country: TH
  • phone: +66-2-615-3964
  • fax-no: +66-2-619-8777
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: SS1413-AP
  • tech-c: BS534-AP
  • nic-hdl: SS1413-AP
  • mnt-by: MAINT-AWN-CO-LTD-TH
  • last-modified: 2021-11-07T23:30:27Z
  • person: Naruepon Intarayotha
  • nic-hdl: NI36-AP
  • e-mail: [email protected]
  • address: Advanced Info Service Public Company Limited
  • address: 1291/1 Phaholyothin Road, Phayathai, Bangkok 10400, THAILAND
  • phone: +6622996000 Ext. 3803
  • fax-no: +6622996076
  • country: TH
  • mnt-by: MAINT-TH-AIS
  • last-modified: 2008-09-04T07:46:11Z

Links to attack logs

roxy-ip-list-2023-05-03