110.93.237.55 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 110.93.237.55 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 13/100

Host and Network Information

  • Country: Pakistan
  • Network: AS135407 trans world enterprise services (private) limited
  • Noticed: 3 times
  • Protocols Attacked: mssql
  • Countries Attacked: Poland

Open Ports Detected

10001 10134 102 1023 1024 10243 1025 104 10443 10554 10909 10911 1099 11 110 111 11210 11211 11288 113 11371 1140 11434 1153 1177 119 1200 12000 122 1234 12345 12348 1250 12767 13 1311 1337 13579 14147 14265 143 1433 14344 1471 1494 15 1515 1521 1599 16010 16030 1604 16992 16993 17 17000 1723 1741 175 179 1800 1801 18081 18245 1830 18553 19 19000 1901 19071 1911 1925 1926 19305 1935 19350 195 1951 1962 20 2000 20000 2002 2008 2010 2012 20256 2051 2052 2053 20547 2061 2065 2067 2079 2082 20828 2083 2086 2087 2095 21 21025 21098 2121 21379 2154 2181 22 221 222 2221 2222 22222 2223 2225 2250 22662 23 23023 2323 2332 23424 2345 2375 2376 2404 24442 2455 2480 25001 25105 2548 2549 2555 25565 2557 2562 2568 2598 26 2628 264 2647 27015 27017 27210 2761 2762 28015 28017 2985 3000 30001 30002 30003 3001 3050 3055 3061 3068 3071 3072 3075 3078 3084 3097 311 3110 3128 31337 31401 32400 3260 3268 32764 3299 3300 3301 3306 33060 3307 3310 3311 3333 3352 3388 3389 3403 3460 34958 3498 35000 35178 3541 3542 3549 3551 3552 3556 3558 35999 3648 3689 3690 37 37215 3749 37777 3780 3790 38081 389 3922 39388 3950 3951 39929 4000 4002 4040 4064 40711 4100 41136 4157 41800 42093 4242 4243 427 4282 43 4369 443 4433 4434 444 4443 4444 445 44818 4500 4506 4524 4550 4567 465 4664 46777 4782 47990 4840 4848 4899 49 491 4911 49152 49153 4949 4995 5000 50000 5001 5005 50050 5006 5007 50070 5009 5010 50100 502 5025 503 51106 51235 515 5150 5172 5201 5222 5269 52869 53 5321 5357 541 54138 5431 5432 5435 548 55000 55034 554 55442 55443 5555 55553 55554 5560 5591 5597 5598 5601 5605 5606 56173 5634 5672 57425 5800 5801 5822 5900 5901 5906 593 5938 5966 5984 5985 5986 6000 60001 6001 60010 6002 60030 6009 60129 6080 61000 6102 61613 62078 62163 62357 62358 6265 6266 631 63256 63260 63306 6352 6379 6443 646 6464 6511 6512 6561 6581 6622 6653 666 6666 6667 6668 70 7001 7014 7071 7080 7081 7170 7171 7218 7415 7434 7443 7465 7474 7493 7510 7537 7547 7548 7634 7657 771 7777 7788 79 7989 7998 7999 80 8000 8001 8006 8008 8009 8010 8020 8027 8029 8030 8032 8039 8053 8058 8060 8069 8071 8080 8081 8083 8085 8086 8087 8089 8098 8099 81 8101 8110 8112 8123 8126 8140 8181 82 8200 8222 8237 8239 8249 8291 83 8333 8334 8384 84 8408 8413 8416 8421 8443 8445 8500 8537 8545 8554 8575 8586 8590 8649 8674 8700 8728 873 8782 8788 88 8800 8806 8808 8809 8812 8821 8828 8829 8834 8842 8849 8850 8851 8858 8866 8867 8868 8869 8875 888 8880 8888 8889 8990 9000 9002 9009 9011 9012 9017 902 9023 9025 9028 9029 9036 9037 9042 9049 9050 9051 9080 9090 9091 9092 9094 9095 9098 91 9100 9101 9110 9111 9151 9160 9191 9200 9202 9203 9205 9206 9212 9216 9219 9220 9295 9304 9309 9367 9398 9418 9444 9530 9595 9600 9633 9663 9761 9765 9800 9869 9876 9898 992 993 9940 9943 9944 995 9981 9998 9999

CVEs Detected

CVE-2014-4078

Map

Whois Information

  • inetnum: 110.93.192.0 - 110.93.255.255
  • netname: TWA
  • descr: Transworld Associates (Pvt.) Ltd.
  • descr: 6th Floor, Executive Tower, Dolmen City
  • descr: Marine Drive, Clifton Block 4
  • descr: Karachi, Pakistan
  • country: PK
  • org: ORG-TAL1-AP
  • admin-c: TM701-AP
  • tech-c: TM701-AP
  • abuse-c: AT1273-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-PK-TWA
  • mnt-routes: MAINT-PK-TWA
  • mnt-irt: IRT-TWA-PK
  • last-modified: 2020-08-05T13:03:19Z
  • irt: IRT-TWA-PK
  • address: Transworld Associates (Pvt) Ltd.
  • address: 6th Floor, Executive Tower, Dolmen City
  • address: Marine Drive, Clifton Block 4
  • address: Karachi
  • e-mail: abuse@tw1.com
  • abuse-mailbox: abuse@tw1.com
  • admin-c: TM701-AP
  • tech-c: TM701-AP
  • mnt-by: MAINT-PK-TWA
  • last-modified: 2024-02-07T07:19:50Z
  • organisation: ORG-TAL1-AP
  • org-name: TRANSWORLD ASSOCIATES (PVT) LIMITED
  • org-type: LIR
  • country: PK
  • address: 6th Floor, Executive Tower, Dolmen City
  • address: Marine Drive, Clifton Block 4
  • phone: +92-51-2871623
  • fax-no: +92-51-2871625
  • e-mail: ipcontrol@tw1.com
  • mnt-ref: APNIC-HM
  • mnt-by: APNIC-HM
  • last-modified: 2023-09-05T02:15:10Z
  • role: ABUSE TWAPK
  • address: Transworld Associates (Pvt) Ltd.
  • address: 6th Floor, Executive Tower, Dolmen City
  • address: Marine Drive, Clifton Block 4
  • address: Karachi
  • country: ZZ
  • phone: +000000000
  • e-mail: abuse@tw1.com
  • admin-c: TM701-AP
  • tech-c: TM701-AP
  • nic-hdl: AT1273-AP
  • abuse-mailbox: abuse@tw1.com
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-02-07T07:20:49Z
  • person: Technical Manager
  • address: Transworld (Pvt) ltd.
  • address: 6th Floor, Executive Tower, Dolmen City
  • address: Marine Drive, Clifton Block 4
  • address: Karachi
  • country: PK
  • phone: +92-21-5824951 - 4
  • fax-no: +92-21-5824957
  • e-mail: ipcontrol@tw1.com
  • nic-hdl: TM701-AP
  • mnt-by: MAINT-PK-TWA
  • last-modified: 2010-06-12T12:10:01Z
  • route: 110.93.237.0/24
  • descr: TW RO
  • origin: AS38193
  • mnt-by: MAINT-PK-TWA
  • country: PK
  • last-modified: 2010-05-24T11:28:02Z

Links to attack logs

vultrparis-mssql-bruteforce-ip-list-2024-07-23 vultrwarsaw-mssql-bruteforce-ip-list-2024-07-19 vultrmadrid-mssql-bruteforce-ip-list-2024-08-07

Share on: