128.199.252.41 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 128.199.252.41 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 25/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Contained within other IP sets: proxylists_30d, proxylists_7d, proxz_30d, proxz_7d
- Country: Singapore
- Network: AS14061 digitalocean llc
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
- Passive DNS Results: blog.halalpedia.com vmess.aysdy.gaspuol.my.id portalpkv.win www.portalpkv.win designer.roomoomo.com test-me.roomoomo.com www.roomoomo.com select.roomoomo.com app.roomoomo.com roomoomo.com
Malware Detected on Host
Count: 4 ee888c734849749a96643805f645d360e27343580e8ebc8a8bb5344defda7b6f 60d1dded09fa23e615bdde929faf0db583e8d82d5cbdd9d8d3fae8ced0726ad6 78cc66d29d586dcb6be8c1e48a8164a8abfa8090b65ac548ac865bebd8195423 5591e336b83a866fea9a7d30652cca8a3fdb0aabc2bbd459fe8e3ce86697f140
Open Ports Detected
Map
Whois Information
- NetRange: 128.199.0.0 - 128.199.255.255
- CIDR: 128.199.0.0/16
- NetName: RIPE-ERX-128-199-0-0
- NetHandle: NET-128-199-0-0-1
- Parent: NET128 (NET-128-0-0-0-0)
- NetType: Early Registrations, Transferred to RIPE NCC
- OriginAS:
- Organization: RIPE Network Coordination Centre (RIPE)
- RegDate: 2007-03-20
- Updated: 2007-03-20
- Comment: These addresses have been further assigned to users in
- Comment: the RIPE NCC region. Contact information can be found in
- Ref: https://rdap.arin.net/registry/ip/128.199.0.0
- OrgName: RIPE Network Coordination Centre
- OrgId: RIPE
- Address: P.O. Box 10096
- City: Amsterdam
- StateProv:
- PostalCode: 1001EB
- Country: NL
- RegDate:
- Updated: 2013-07-29
- Ref: https://rdap.arin.net/registry/entity/RIPE
- OrgAbuseHandle: ABUSE3850-ARIN
- OrgAbuseName: Abuse Contact
- OrgAbusePhone: +31205354444
- OrgAbuseEmail: abuse@ripe.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN
- OrgTechHandle: RNO29-ARIN
- OrgTechName: RIPE NCC Operations
- OrgTechPhone: +31 20 535 4444
- OrgTechEmail: hostmaster@ripe.net
- OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN
- inetnum: 128.199.0.0 - 128.199.255.255
- netname: DigitalOcean
- descr: DigitalOcean, LLC
- country: US
- admin-c: PT7353-RIPE
- tech-c: PT7353-RIPE
- status: LEGACY
- mnt-by: digitalocean
- mnt-domains: digitalocean
- mnt-routes: digitalocean
- created: 2004-07-20T10:29:14Z
- last-modified: 2020-03-31T14:17:22Z
- org: ORG-DOI2-RIPE
- organisation: ORG-DOI2-RIPE
- org-name: DigitalOcean, LLC
- country: US
- org-type: LIR
- address: 101 Avenue of the Americas, 10th Floor
- address: New York
- address: 10013
- address: UNITED STATES
- phone: +1 888 890 6714
- mnt-ref: digitalocean
- mnt-ref: RIPE-NCC-HM-MNT
- mnt-by: RIPE-NCC-HM-MNT
- mnt-by: digitalocean
- abuse-c: AD10778-RIPE
- language: EN
- created: 2012-11-29T14:59:01Z
- last-modified: 2020-12-16T13:24:44Z
- person: DigitalOcean Network Operations
- address: 101 Ave of the Americas, FL2
- address: New York, NY, 10013
- address: United States of America
- phone: +13478756044
- nic-hdl: PT7353-RIPE
- mnt-by: digitalocean
- created: 2015-03-11T16:37:07Z
- last-modified: 2022-08-23T13:31:16Z
- org: ORG-DOI2-RIPE
Links to attack logs
anonymous-proxy-ip-list-2024-02-05 anonymous-proxy-ip-list-2024-02-12 anonymous-proxy-ip-list-2024-02-21 anonymous-proxy-ip-list-2024-03-14 anonymous-proxy-ip-list-2024-03-20 anonymous-proxy-ip-list-2024-01-31 anonymous-proxy-ip-list-2024-02-03 anonymous-proxy-ip-list-2024-02-08 anonymous-proxy-ip-list-2024-02-10 anonymous-proxy-ip-list-2024-03-11 anonymous-proxy-ip-list-2024-03-12 anonymous-proxy-ip-list-2024-03-13 anonymous-proxy-ip-list-2024-02-07 anonymous-proxy-ip-list-2024-03-03 anonymous-proxy-ip-list-2024-03-08 anonymous-proxy-ip-list-2024-03-21 anonymous-proxy-ip-list-2024-02-02 anonymous-proxy-ip-list-2024-02-13 anonymous-proxy-ip-list-2024-02-09 anonymous-proxy-ip-list-2024-02-16 anonymous-proxy-ip-list-2024-02-27 anonymous-proxy-ip-list-2024-02-18 anonymous-proxy-ip-list-2024-01-29 anonymous-proxy-ip-list-2024-02-06 anonymous-proxy-ip-list-2024-02-11 anonymous-proxy-ip-list-2024-02-14 anonymous-proxy-ip-list-2024-03-18 anonymous-proxy-ip-list-2024-01-30 anonymous-proxy-ip-list-2024-02-04 anonymous-proxy-ip-list-2024-02-20 anonymous-proxy-ip-list-2024-02-26 anonymous-proxy-ip-list-2024-02-01 anonymous-proxy-ip-list-2024-02-29 anonymous-proxy-ip-list-2024-02-15 anonymous-proxy-ip-list-2024-03-05 anonymous-proxy-ip-list-2024-03-17 anonymous-proxy-ip-list-2024-03-19 anonymous-proxy-ip-list-2024-02-24 anonymous-proxy-ip-list-2024-02-28
Share on: