138.128.246.94 Threat Intelligence and Host Information
Aug 21, 2026
ipinfopage
General
IP Address
138.128.246.94
IPv4 Address
Location
🇺🇸 Santa Clara, United States
US
Network
AS396948
Kamatera, Inc.
Threat Score
45/100
Medium Risk
Aggressive-DetectionBlocklistbrute-forcebruteforceBruteforceBrute-ForceConnection-Resetcredential-attack
Attack Intelligence
MITRE ATT&CK Techniques
T1110 - Brute Force
Geographic Location
Coordinates
37.3931, -121.9620
Network Information
Organization
Kamatera, Inc.
Network
AS396948 Kamatera, Inc.
WHOIS Information
NetRange
138.128.246.0 - 138.128.246.255
NetName
CLOUDWEBMANAGE-SC-CA
NetHandle
NET-138-128-246-0-1
Parent
KAMAT (NET-138-128-240-0-1)
Organization
Cloud Web Manage (CWM-44)
Ref
https://rdap.arin.net/registry/entity/CWM-44
OrgAbuseName
Cloud Web Manage
OrgAbusePhone
+1-212-738-9657
OrgAbuseEmail
abuse@cloudwm.com
OrgAbuseRef
https://rdap.arin.net/registry/entity/CWM4-ARIN
Attack Logs
| Date |
Target Location |
Protocol |
Link |
| 2026-08-19 |
Vultrtokyo-Combined |
MULTIPLE |
View Log |
- Country: United States
- Network:
- Noticed: 11 times
- Protocols Attacked: combined portscan ssh
- Countries Attacked: China, Finland, France, Germany, Poland, Russian Federation, United Kingdom of Great Britain and Northern Ireland, United States of America
CVEs Detected
CVE-2007-2768
CVE-2008-3844
CVE-2016-20012
CVE-2017-15906
CVE-2018-15473
CVE-2018-15919
CVE-2018-20685
CVE-2019-6109
CVE-2019-6110
CVE-2019-6111
CVE-2020-14145
CVE-2020-15778
CVE-2020-28007
CVE-2020-28008
CVE-2020-28009
CVE-2020-28010
CVE-2020-28011
CVE-2020-28012
CVE-2020-28013
CVE-2020-28014
CVE-2020-28015
CVE-2020-28016
CVE-2020-28017
CVE-2020-28018
CVE-2020-28019
CVE-2020-28021
CVE-2020-28022
CVE-2020-28023
CVE-2020-28024
CVE-2020-28025
CVE-2020-28026
CVE-2021-27216
CVE-2021-36368
CVE-2021-38371
CVE-2021-41617
CVE-2022-3559
CVE-2022-37451
CVE-2022-37452
CVE-2023-38408
CVE-2023-42114
CVE-2023-42115
CVE-2023-42116
CVE-2023-42117
CVE-2023-42119
CVE-2023-48795
CVE-2023-51385
CVE-2023-51766
CVE-2023-51767
CVE-2024-39929
CVE-2025-26465
CVE-2025-32728
CVE-2025-67896
CVE-2026-35385
CVE-2026-35387
CVE-2026-35388
CVE-2026-35414
CVE-2026-40684
CVE-2026-40685
CVE-2026-40686
CVE-2026-40687
CVE-2026-48840
CVE-2026-59995
CVE-2026-59996
CVE-2026-59997
CVE-2026-59998
CVE-2026-59999
CVE-2026-60000
CVE-2026-60001
CVE-2026-60002
CVE-2026-66140
CVE-2026-66141
Disclaimer
This page contains threat intelligence information for the IPv4 address 138.128.246.94 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.