122.252.246.1 Threat Intelligence and Host Information

General

IP Address
122.252.246.1
IPv4 Address
Location
🇮🇳 Jaunpur, India
IN
Network
AS24186
RailTel Corporation of India Ltd
Threat Score
50/100
Medium Risk
brute-forceBruteforceBrute-Forcecowriemaliciousscansftpsip
Attack Intelligence
MITRE ATT&CK Techniques
T1595 - Active Scanning
Open Ports Detected
2222
Geographic Location
Country
India
City
Jaunpur
Region
Uttar Pradesh
Coordinates
25.7536, 82.6869
Network Information
ASN
AS24186
Organization
RailTel Corporation of India Ltd
Network
AS24186 RailTel Corporation of India Ltd
WHOIS Information
inetnum
122.252.232.208 - 122.252.252.215
netname
Efkon-IN
descr
RailTel Corporation Of India Ltd.
country
IN
admin-c
NA1011-AP
tech-c
NA1011-AP
status
ALLOCATED NON-PORTABLE
mnt-by
MAINT-IN-RAILTEL
mnt-lower
MAINT-IN-RAILTEL
mnt-routes
MAINT-IN-RAILTEL
mnt-irt
IRT-RAILTEL-IN
last-modified
2012-11-02T13:54:15Z
irt
IRT-RAILTEL-IN
address
New Delhi, India, 110001
e-mail
pradeep@railtelindia.com
abuse-mailbox
abuse@railtelindia.com
person
Pradeep Kumar
phone
+91-11-51501455
nic-hdl
PK61-AP
fax-no
+91-11-23311711
route
122.252.246.0/24
origin
AS24186
Attack Logs
Date Target Location Protocol Link
2022-09-12 Dolondon MSSQL View Log

  • Country: India
  • Network:
  • Noticed: 6 times
  • Protocols Attacked: mssql ssh
  • Countries Attacked: Australia

CVEs Detected

CVE-2009-1390 CVE-2009-3765 CVE-2009-3766 CVE-2009-3767 CVE-2019-0190 CVE-2022-1292 CVE-2022-1343 CVE-2022-1434 CVE-2022-1473 CVE-2022-2068 CVE-2022-2097 CVE-2022-3358 CVE-2022-3602 CVE-2022-3786 CVE-2022-3996 CVE-2022-4203 CVE-2022-4304 CVE-2022-4450 CVE-2023-0215 CVE-2023-0216 CVE-2023-0217 CVE-2023-0286 CVE-2023-0401 CVE-2023-0464 CVE-2023-0465 CVE-2023-0466 CVE-2023-1255 CVE-2023-2650 CVE-2023-2975 CVE-2023-3817 CVE-2023-4807 CVE-2023-5363 CVE-2023-5678 CVE-2023-6129 CVE-2024-0727 CVE-2024-47803 CVE-2024-47804 CVE-2024-6119 CVE-2024-8184 CVE-2025-27622 CVE-2025-27623 CVE-2025-27624 CVE-2025-27625 CVE-2025-31720 CVE-2025-31721

Disclaimer
This page contains threat intelligence information for the IPv4 address 122.252.246.1 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.