111.118.212.120 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 111.118.212.120 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 35/100

Host and Network Information

  • JARM: 29d29d15d29d29d00042d42d0000009435214b849738c4ebab4534b5d158dd

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: blocklist_net_ua, hphosts_emd, hphosts_fsa, hphosts_psh

Malware Detected on Host

Count: 16 4e1129afd184240bbcf6f8f37a32b2ee10ce63efec5bf0fdadb5df0682450175 a4fc360ec53d33f2579892668cdd9c3f73ee00dcb500a473000c02a5e00ebb4b 429b1a57e1e2fa7f12245b248e31d5fe2d182d3ed9abaec1da983206c46e8ae8 74c70f88d8f04469150db8c7e3207b7096432970d358fa2937e30f667e21e1ea 4a74735986a408653b05972a39b961d2b127d3af71168d5619831d3af7d68dc4 bc5a6e529d3c3d9b977f2958e958b7bbc54b9a9aba06aebe80f877af4b2128b7 3080c351cf883468064b1e73f97d596580d62ba95df957cb433ed057447f924d 36061dbae08b0fb7f5d67838b552ad267fb71d44fd0d66e505b9db9dd199a4c5 e6ec6e4c4948085064b2f572e98f9788d421c33e4ef6dd84ede94327731c1a0c 4769876a27cbcf986ea8f4533f5d1a1dad55caf211d4f0d6e4ca54639b78333b

Open Ports Detected

143 2082 2083 2087 21 22 2222 26 443 465 53 587 80 993 995

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2015-9251 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-11358 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-11022 CVE-2020-11023 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465

Map

Whois Information

  • inetnum: 111.118.212.1 - 111.118.213.255
  • netname: HGPool
  • descr: This is the assigned Hostgator IPs pool.
  • country: IN
  • admin-c: HIND1-AP
  • tech-c: HIND1-AP
  • abuse-c: AH851-AP
  • status: ASSIGNED NON-PORTABLE
  • mnt-by: MAINT-HGINDIA-AP
  • mnt-irt: IRT-HGINDIA-AP
  • last-modified: 2021-01-06T13:12:06Z
  • irt: IRT-HGINDIA-AP
  • address: 1st Floor, Near Mahatma Nagar Cricket Ground, Mahatma Nagar, Nashik, Maharashtra, India
  • e-mail: net-eng-team@newfold.com
  • abuse-mailbox: abuse@publicdomainregistry.com
  • admin-c: HIND1-AP
  • tech-c: HIND1-AP
  • mnt-by: MAINT-HGINDIA-AP
  • last-modified: 2025-05-11T07:51:30Z
  • role: ABUSE HGINDIAAP
  • country: ZZ
  • address: 1st Floor, Near Mahatma Nagar Cricket Ground, Mahatma Nagar, Nashik, Maharashtra, India
  • phone: +000000000
  • e-mail: net-eng-team@newfold.com
  • admin-c: HIND1-AP
  • tech-c: HIND1-AP
  • nic-hdl: AH851-AP
  • abuse-mailbox: abuse@publicdomainregistry.com
  • mnt-by: APNIC-ABUSE
  • last-modified: 2025-05-11T07:51:50Z
  • role: Hostgator India - Network Division
  • address: Near Kings Park Layout, Maryhill, Mangalore 575 015, Karnataka, India
  • country: IN
  • phone: +14152300648
  • e-mail: abuse@hostgator.in
  • admin-c: HIND1-AP
  • tech-c: HIND1-AP
  • nic-hdl: HIND1-AP
  • mnt-by: MAINT-HGINDIA-AP
  • last-modified: 2017-03-09T09:57:33Z
  • route: 111.118.212.0/22
  • descr: Hostgator India Route
  • origin: AS18229
  • country: IN
  • notify: netadmin@hostgator.in
  • mnt-by: MAINT-HGINDIA-AP
  • last-modified: 2011-02-01T04:16:29Z

Links to attack logs

****** ****** ******

Share on: