137.175.2.5 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 137.175.2.5 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network: AS54600 peg tech inc
  • Noticed: 1 times
  • Protcols Attacked: spam
  • Passive DNS Results: x7710.com x6755.com x77aa.com x7718.com x7781.com x6887.com x7765.com an800.com a99av.com t225t.com tx155.com d8861.com c2600.com c2800.com vs388.com vs566.com v6822.com vs669.com vps22.com h7622.com mu887.com mu977.com mu877.com zz699.com in339.com bx886.com uu553.com ok885.com en388.com nk667.com nk255.com 112px.com 005697.com 009636.com 66can.com 6777i.com 166700.com 006xc.com 599an.com 112sm.com 2212u.com 005097.com 70011x.com 000top.com 400hk.com 003200.com 411xo.com ks772.com k55n.com k88k8.com

Open Ports Detected

80 888

Map

Whois Information

  • NetRange: 137.175.0.0 - 137.175.127.255
  • CIDR: 137.175.0.0/17
  • NetName: PT-82-8
  • NetHandle: NET-137-175-0-0-1
  • Parent: NET137 (NET-137-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS:
  • Organization: PEG TECH INC (PT-82)
  • RegDate: 2013-06-14
  • Updated: 2013-06-14
  • Ref: https://rdap.arin.net/registry/ip/137.175.0.0
  • OrgName: PEG TECH INC
  • OrgId: PT-82
  • Address: 55 South Market Street, Suite 320
  • City: San Jose
  • StateProv: CA
  • PostalCode: 95113
  • Country: US
  • RegDate: 2012-03-27
  • Updated: 2017-01-28
  • Ref: https://rdap.arin.net/registry/entity/PT-82
  • OrgTechHandle: NOC12550-ARIN
  • OrgTechName: NOC
  • OrgTechPhone: +1-657-206-5036
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
  • OrgAbuseHandle: ABUSE3497-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-657-206-5036
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3497-ARIN
  • OrgNOCHandle: NOC12550-ARIN
  • OrgNOCName: NOC
  • OrgNOCPhone: +1-657-206-5036
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
  • NetRange: 137.175.2.0 - 137.175.2.7
  • CIDR: 137.175.2.0/29
  • NetName: 199-180-100-0-1
  • NetHandle: NET-137-175-2-0-1
  • Parent: PT-82-8 (NET-137-175-0-0-1)
  • NetType: Reassigned
  • OriginAS: AS54600
  • Customer: Liang Yuming (C05351354)
  • RegDate: 2014-09-30
  • Updated: 2014-09-30
  • Ref: https://rdap.arin.net/registry/ip/137.175.2.0
  • CustName: Liang Yuming
  • Address: Room 19 building No.2 Meijingtiancheng Lasa City
  • Address: Xizang Province
  • City: Lasa
  • StateProv: XIZANG
  • PostalCode: 850000
  • Country: CN
  • RegDate: 2014-09-30
  • Updated: 2014-09-30
  • Ref: https://rdap.arin.net/registry/entity/C05351354
  • OrgTechHandle: NOC12550-ARIN
  • OrgTechName: NOC
  • OrgTechPhone: +1-657-206-5036
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
  • OrgAbuseHandle: ABUSE3497-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-657-206-5036
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3497-ARIN
  • OrgNOCHandle: NOC12550-ARIN
  • OrgNOCName: NOC
  • OrgNOCPhone: +1-657-206-5036
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN

Links to attack logs

forum-spam-ip-list-2013-10-07