130.193.9.47 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 130.193.9.47 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 18/100

Host and Network Information

  • Country: Czechia
  • Network: AS29134 ignum s.r.o.
  • Noticed: 4 times
  • Protocols Attacked: SSH
  • Passive DNS Results: antispam.hosting-zdarma.cz

Malware Detected on Host

Count: 20 eacb5f76e672ac186f21c3d694b96c71958d3d955b7e3b653daaef9428d6e34e 519e152a2d4bfb95f67450d2f69b8c368d9842af23f43e72c6abf85e84a59aa6 f4dd7c94090e924d32be708ac66a8a09b76f6a61b6d9309f9249cbcf08d9fa9e fd4c1e16a30086107ed001ee5448bed8808792b0cf2833c04963f97911e1eb32 56328f3f76dc4fbeb42d58c3beb5b092317cf8452363f1365cc5c7dff120a91f d04f826864c4bdabbbe0be2d193ed807960d84b880a1e746548aa0b33b0e24ae c04e5d2c497901cf1e857e74f14c0d5fe9b9b87310e3b520eaebc09673f8d56a 9c9ef5fc0a749eb1b3dab8af242dbc425e4c8819bdbec72dac39f40f72f4573e c23b07ee1048d8c27b246edf81d8d89f1ca860128a211ea651af93c9a0abf6b4 f4eb073f82e0132c6261c6b364f0126f6ea0f3970c3f6cc84ca3004fce6309d8

Open Ports Detected

25

Map

Whois Information

  • NetRange: 130.193.0.0 - 130.193.255.255
  • CIDR: 130.193.0.0/16
  • NetName: RIPE-ERX-130-193-0-0
  • NetHandle: NET-130-193-0-0-1
  • Parent: NET130 (NET-130-0-0-0-0)
  • NetType: Early Registrations, Transferred to RIPE NCC
  • OriginAS:
  • Organization: RIPE Network Coordination Centre (RIPE)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: These addresses have been further assigned to users in
  • Comment: the RIPE NCC region. Contact information can be found in
  • Ref: https://rdap.arin.net/registry/ip/130.193.0.0
  • OrgName: RIPE Network Coordination Centre
  • OrgId: RIPE
  • Address: P.O. Box 10096
  • City: Amsterdam
  • StateProv:
  • PostalCode: 1001EB
  • Country: NL
  • RegDate:
  • Updated: 2013-07-29
  • Ref: https://rdap.arin.net/registry/entity/RIPE
  • OrgTechHandle: RNO29-ARIN
  • OrgTechName: RIPE NCC Operations
  • OrgTechPhone: +31 20 535 4444
  • OrgTechEmail: hostmaster@ripe.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN
  • OrgAbuseHandle: ABUSE3850-ARIN
  • OrgAbuseName: Abuse Contact
  • OrgAbusePhone: +31205354444
  • OrgAbuseEmail: abuse@ripe.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN
  • inetnum: 130.193.9.0 - 130.193.9.63
  • netname: HOSTING90-SERVER
  • descr: HOSTING90 systems s.r.o.
  • country: CZ
  • admin-c: RBH901-RIPE
  • tech-c: RAH901-RIPE
  • status: ASSIGNED PA
  • created: 2011-11-02T13:57:19Z
  • last-modified: 2021-04-13T12:25:14Z
  • mnt-lower: IGNUM-MNT
  • mnt-routes: IGNUM-MNT
  • mnt-by: IGNUM-MNT
  • role: Hosting90 RIPE Admins
  • address: Hosting90 Systems s.r.o.
  • address: Vinohradská 2396/184
  • address: 130 00, Praha 3
  • tech-c: LUNA1-RIPE
  • nic-hdl: RAH901-RIPE
  • mnt-by: IGNUM-MNT
  • created: 2015-05-22T12:22:48Z
  • last-modified: 2021-04-13T13:05:07Z
  • role: Hosting90 RIPE Administration and Billing
  • address: HOSTING90 systems s.r.o.
  • address: Vinohradská 2396/184
  • address: 130 00, Praha 3
  • admin-c: LUNA1-RIPE
  • nic-hdl: RBH901-RIPE
  • mnt-by: IGNUM-MNT
  • created: 2015-05-22T12:31:07Z
  • last-modified: 2021-04-13T13:05:24Z
  • route: 130.193.8.0/22
  • descr: Webglobe s.r.o. H90
  • origin: AS29134
  • mnt-by: IGNUM-MNT
  • created: 2022-11-14T23:06:00Z
  • last-modified: 2022-11-14T23:06:00Z

Links to attack logs

****** ****** ******

Share on: