138.68.79.95 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 138.68.79.95 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 46/100

Host and Network Information

  • Tags: akamaias, akamaiasn1, amazon02, as15169, as16509, as20940, as3359, as8075, as852, cobalt, cobalt strike, cuba, domain feed, facebook, feed, feed malware, feeds agent, feeds malicious, geoip, ghost, google, indonesia, info, iocs, level3, malicious ip, media, mexico, mini, precisionsec, proton, public url, seznam, strong, telecom, twitter, ukraine, win32, win64

  • View other sources: Spamhaus VirusTotal

Malware Detected on Host

Count: 26 c67ecc3a14dfad5b6db20c0fd418bcbff4d9fb3ff87c55381f5c8cbbbd955b5d 832a709615cf7643ea77c37f8f3946d66260519a2db6f748d6ac293ebe85af14 ebe7b7ca9c90a608f02afc6e6e1a6a014c930acb8d4f997eab2b62460b8cf280 78edba1d33bb691edfcc193a664fb3df6949eb54f9813aab056244d6e7458f28 1e6f7df8618a91f411718b4013f834b8e28cbbdeeb12614e92c6d68237963e69 107ef6d78bd2e2d9690a67bd0a125f9eb87fe614be8df675cfd4238d23127d56 42b2a8e51ab6b6842eb8d8db3ade6eb93c59babc5191f1672f96af83e59cfed8 d363781f88a16cb45508e944ef51ccb01ab11e19813455c6a327424f6925fd94 4ae08291cdddc9f7407cd9f81df8ade75cde8f9d69509c02f054680861ea2cd0 083b02dfefa44b5190ee1608550cbd813973e92ea8a399af0e6fb942ad9f9fd2

Open Ports Detected

1027 1883 1979 19999 22 2222 2332 25565 30002 3113 443 4433 5000 60129 80 8100 8291 8536 8882 9090 9100 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2019-16905 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465

Map

Whois Information

Links to attack logs

anonymous-proxy-ip-list-2025-04-28

Share on: