136.248.242.166 Threat Intelligence - United States | IP Address Lookup
ipinfopage
General
IP Address
136.248.242.166
Location
🇺🇸 United States
Network
AS10255
Threat Score
55/100
Attack Intelligence
MITRE ATT&CK Techniques
T1110.001 - Password Guessing, T1110.003 - Password Spraying, T1110 - Brute Force
Noticed
41 times
Protocols Attacked
portscan ssh
Countries Attacked
Australia, China, Denmark, Finland, France, Germany, Malaysia, Norway, Poland, Russian Federation, Sweden, United Kingdom of Great Britain and Northern Ireland, United States of America
Open Ports Detected
22
Geographic Location
Country
United States
City
Unknown
Region
Unknown
Coordinates
37.7510, -97.8220
Network Information
ASN
AS10255
Organization
SINISTER
Network
AS10255 SINISTER
Associated CVEs
WHOIS Information
NetRange
136.248.0.0 - 136.248.255.255
CIDR
136.248.0.0/16
NetName
ORACLE-4
NetHandle
NET-136-248-0-0-1
Parent
NET136 (NET-136-0-0-0-0)
NetType
Direct Allocation
Organization
Oracle Corporation (ORACLE-4)
RegDate
2024-03-28
Updated
2024-03-28
Ref
https://rdap.arin.net/registry/ip/136.248.0.0
OrgName
Oracle Corporation
OrgId
ORACLE-4
Address
2300 Oracle Way
City
Austin
StateProv
TX
PostalCode
78741
Country
US
OrgRoutingHandle
ORACL2-ARIN
OrgRoutingName
ORACLEROUTING
OrgRoutingPhone
+1-800-392-2999
OrgRoutingEmail
network-contact_ww@oracle.com
OrgRoutingRef
https://rdap.arin.net/registry/entity/ORACL2-ARIN
OrgTechHandle
ORACL1-ARIN
OrgTechName
ORACLE NIS
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2026-07-22 | Vultrtokyo | SSH | View Log |
| 2026-07-14 | Vultrmelbournetest | SSH | View Log |
Disclaimer
This page contains threat intelligence information for the IPv4 address 136.248.242.166 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only, and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.