112.213.89.42 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 112.213.89.42 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • JARM: 2ad2ad0002ad2ad00042d43d00041dd469afa8cfbe5e42c631eb3fc55d6787

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_emd

Malware Detected on Host

Count: 14 da7b953c7c2f4fbb9db6737eb1e10316a7e81246955098d92dd0c7e41262aec3 3a6c5707059ea961bfe4e430e776c1ea2b931049a05c2127c22f135d6f7704f1 969ff75448ea54feccc0d5f652e00172af8e1848352e9a5877d705fc97fa0238 52c7b76fb62c6ed0d3b9cdc12bd4bf7afd4ab97342e21648c5153ceac8ce897a 124887797dca2ad4d4a16a53439033033cdbec96a28b5ee788dcef410b4a42bc 69028eeb546b75a202519b3319de17b8f1c72c35a6a02173888073a9010a5a9c 257ae22b1ea0f8880f94db8adacc1caa6a85e3e5413e48f2c6c34a83952b6f39 6489d81f563e6b9549430c1ef8a0ebb629d9c022fe486b1705f53c778634700b ecfa5ce1d718551952f58a649817306413f347135bf31ac99e2feea99d1f77f6 521a857dcc606974a9b1088670ecec7f92bb7cf8a3ecf369fe98a372611f8731

Open Ports Detected

443 80

Map

Whois Information

  • inetnum: 112.213.80.0 - 112.213.95.255
  • netname: SUPERDATA-VN
  • descr: Super Online Data Co.,Ltd
  • descr: 254A Nguyen Dinh Chieu, Ward 6, District 3, Ho Chi Minh City
  • country: VN
  • admin-c: PTTL3-AP
  • tech-c: PTTL3-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-VN-VNNIC
  • mnt-lower: MAINT-VN-VNNIC
  • mnt-routes: MAINT-VN-VNNIC
  • mnt-irt: IRT-VNNIC-AP
  • last-modified: 2018-04-10T07:37:39Z
  • irt: IRT-VNNIC-AP
  • address: Ha Noi, VietNam
  • phone: +84-24-35564944
  • fax-no: +84-24-37821462
  • e-mail: hm-changed@vnnic.vn
  • abuse-mailbox: hm-changed@vnnic.vn
  • admin-c: NTTT1-AP
  • tech-c: NTTT1-AP
  • mnt-by: MAINT-VN-VNNIC
  • last-modified: 2017-11-08T09:40:06Z
  • person: Pham Thi Thuy Linh
  • address: SUPERDATA-VN
  • country: VN
  • phone: +84-28-73035777
  • e-mail: info@superdata.vn
  • nic-hdl: PTTL3-AP
  • mnt-by: MAINT-VN-VNNIC
  • last-modified: 2018-04-11T01:50:18Z
  • route: 112.213.89.0/24
  • origin: AS45544
  • descr: Vietnam Internet Network Information Center (VNNIC)
  • mnt-by: MAINT-VN-VNNIC
  • last-modified: 2022-03-01T12:19:52Z

Links to attack logs

****** ****** ******

Share on: