139.162.30.170 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 139.162.30.170 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Likely Malicious Host 🟠 55/100
Host and Network Information
-
Mitre ATT&CK IDs: T1027 - Obfuscated Files or Information, T1036 - Masquerading, T1057 - Process Discovery, T1059 - Command and Scripting Interpreter, T1071 - Application Layer Protocol, T1082 - System Information Discovery, T1083 - File and Directory Discovery, T1105 - Ingress Tool Transfer, T1106 - Native API, T1129 - Shared Modules, T1140 - Deobfuscate/Decode Files or Information, T1449 - Exploit SS7 to Redirect Phone Calls/SMS, T1546 - Event Triggered Execution
-
Tags: address, all octoseek, analyze, ascii text, august, body length, bundled, cfqirgdhj5, cfqirgdhj5 http, cfqirgdhj5 url, ck id, code, communicating, contact, contacted, contacted urls, dropped, execution, factory, february, feeds ioc, file, final url, formbook, getprocaddress, gmt connection, gopher, headers date, historical ssl, hostnames, http, http response, hybrid, iocs, ioc search, july, kb body, localappdata, malware, mitre att, new ioc, njrat, obz4usfn0, obz4usfn0 http, obz4usfn0 url, passive dns, paste, path, post, putty, ransomware, referrer, resolutions, sample, scan endpoints, screenshot, serving ip, sfqh4dt74w0 url, sha256, show technique, ssl certificate, status code, teams api, temp, threat, threat analyzer, threat roundup, ukhdaauqaaaaaac, unique, urls, urls https, vj87, whois record, whois ssl, whois whois, windir
-
View other sources: Spamhaus VirusTotal
- Country: Singapore
- Network: AS63949 linode llc
- Noticed: 6 times
- Protocols Attacked: SSH
- Passive DNS Results: www.pgsql.dexamedia.com www.sbc.dexamedia.com www.ge.dexamedia.com www.pc.dexamedia.com www.leads.dexamedia.com www.msk.dexamedia.com www.phoenix.dexamedia.com locomo.id download.ssbpay.id www.menyambutpagi.com putrabendar.com firmanfresh.online app1.dexamedia.com mpasi.store grcalimpekanbaru.com indofireprotection.com aviationdigimon.com www.ta202101019.elsinta-itera.com www.webtrusted.elsinta-itera.com www.autoland.elsinta-itera.com www.mosectra.elsinta-itera.com www.vos.elsinta-itera.com www.hawt.elsinta-itera.com www.alukart.elsinta-itera.com www.comonbigot.elsinta-itera.com conf2.elsinta-itera.com www.swapii.elsinta-itera.com www.tes.elsinta-itera.com www.control-system.online.elsinta-itera.com www.cfp.elsinta-itera.com www.seggtor.elsinta-itera.com www.calmfood.elsinta-itera.com mandirimotor.web.id www.vision.galatia.online gaya-steel.com fkijksoloraya.com dance.andarmosoko.org www.dance.andarmosoko.org www.rekap-suara.dari-kami.com rekap-suara.dari-kami.com www.dazelinv.com.dazelpro.com www.dazelinv.com dazelinv.com.dazelpro.com www.neosoft.dazelpro.com www.hino.dashboarddishub.com www.support-kirkabsiak.dashboarddishub.com www.kir-kabhumbang.dashboarddishub.com www.support-kirkotablitar.dashboarddishub.com www.kir-kabberau.dashboarddishub.com www.support-kirkablebak.dashboarddishub.com www.alphamale.id.alphawear.id www.grosirtas.alphawear.id alphamale.id.alphawear.id www.e-voting.smpkstvincentius.sch.id dazelinv.com konsultanpajak3serangkai.com www.kowarka-jaktim.com kowarka-jaktim.com www.kir-kabgarut.dashboarddishub.com www.support-kirkabmagetan.dashboarddishub.com www.kir-kabtabanan.dashboarddishub.com www.support-kirkabjember.dashboarddishub.com www.kir-kotablitar.dashboarddishub.com www.kir-kotatangerang.dashboarddishub.com www.kir-kabkukar.dashboarddishub.com aureliusdwi.xyz projectkita.xyz lombokexperiences.com arkaapotik.site vip-masterpedia.co.id www.kir-kabmalang.dashboarddishub.com kir-kabmalang.dashboarddishub.com absland.id dana-property.com gallerymine.com pagarbalihipnoterapi.com balinaturaltours.com klikpolisi.com penidatourpackages.com patungmalaikat.com citakreasia.com annualpro.id annualpro.id.spesialispro.com www.annualpro.id.spesialispro.com medandev.online beritaolahraga.cloud kaffahindonesia.com attaqwa.dataproduk.com warungkita.aplikasipenjualan.com alfauzgrup.aplikasipenjualan.com dusanabotswana.com.ptacropolis.com dusanabotswana.com www.dusanabotswana.com.ptacropolis.com hazu.dataproduk.com www.perpus.desadagan.id www.ghubot.wibusoft.ovh tokohilya.com www.buahsegarmedanid.timecod.net support-kirkotatanggerang.dashboarddishub.com www.support-kirkotatanggerang.dashboarddishub.com dev.desaka.id www.dev.desaka.id www.testtoefl.gia.my.id testtoefl.gia.my.id patung.patunggajah.com magatrama.com kostb211.com www.swirescope.elsinta-itera.com eskastudio.com mesastila100ultra.com antarja.kulodev.id www.antarja.kulodev.id www.programduagaris.com programduagaris.com gudangkaos.id www.gudangkaos.id www.makeover.id www.kir-kabgresik.dashboarddishub.com kir-kabgresik.dashboarddishub.com web.app.saranamedikamediatech.com www.web.app.saranamedikamediatech.com tokopusatbinder.com prointax.com www.eco-classic.elsinta-itera.com www.presensi.smpkstvincentius.sch.id quranqu.dataproduk.com homegeist.net.arininurulyakin.com www.homegeist.net.arininurulyakin.com www.homegeist.net www.magento.dexamedia.com www.ups.dexamedia.com www.student.dexamedia.com www.save.dexamedia.com www.moe.dexamedia.com www.staging-chat-service.dexamedia.com www.silver.dexamedia.com www.stat.dexamedia.com www.checksrv.dexamedia.com www.status.dexamedia.com wecomesee.my.id wecomesee.my.id.fahimanabila.com www.wecomesee.my.id.fahimanabila.com cargobatam.com www.izone.basaba.id izone.basaba.id chaterpress.activyco.id www.maimbau.online.dazelpro.com maimbau.online.dazelpro.com www.fansnerazzurri.com www.plan.dexamedia.com www.epaper.dexamedia.com www.if.dexamedia.com www.ns11.dexamedia.com www.public.dexamedia.com www.mahara.dexamedia.com www.imap.dexamedia.com www.dns01.dexamedia.com www.webadmin.dexamedia.com www.tourism.dexamedia.com www.torrent.dexamedia.com www.sonic.dexamedia.com www.dns5.dexamedia.com www.chat.dexamedia.com www.sauron.dexamedia.com www.w.dexamedia.com www.gb.dexamedia.com www.flv.dexamedia.com www.engineering.dexamedia.com www.si.dexamedia.com www.ec.dexamedia.com www.images.dexamedia.com www.logos.dexamedia.com www.dbadmin.dexamedia.com www.mx03.dexamedia.com www.nginx.dexamedia.com www.market.dexamedia.com www.mail7.dexamedia.com www.info.dexamedia.com www.host3.dexamedia.com www.cyber.dexamedia.com www.gw.dexamedia.com www.mailout.dexamedia.com www.ua.dexamedia.com www.investor.dexamedia.com www.cdn2.dexamedia.com www.reseller.dexamedia.com www.pilot.dexamedia.com www.po.dexamedia.com www.report.dexamedia.com www.s4.dexamedia.com www.kz.dexamedia.com www.drweb.dexamedia.com www.mir.dexamedia.com pangandaranbuildingstore.my.id visitortracker.my.id www.seomutdigital.com seomutdigital.com nuswantaramedia.muhammadfawwaz.com www.indoska.elvisiongroup.com indoska.com www.ndangnikah.my.id.screload.my.id www.admin.ndangnikah.my.id www.u.ndangnikah.my.id ndangnikah.my.id.screload.my.id ndangnikah.my.id saranhukum.com www.saranhukum.com www.go-check.elsinta-itera.com www.jy.dexamedia.com www.livehelp.dexamedia.com www.loki.dexamedia.com www.triton.dexamedia.com www.mirror.dexamedia.com www.encuestas.dexamedia.com www.rostov.dexamedia.com www.hq.dexamedia.com www.events.dexamedia.com www.ftp4.dexamedia.com www.women.dexamedia.com www.images4.dexamedia.com www.filter.dexamedia.com www.hr.dexamedia.com www.echo.dexamedia.com www.mars.dexamedia.com www.developer.dexamedia.com www.registrar.dexamedia.com www.smarthost.dexamedia.com www.bank.dexamedia.com www.global.dexamedia.com www.radio.dexamedia.com www.subscribe.dexamedia.com www.neo.dexamedia.com www.devphp.dexamedia.com www.polaris.dexamedia.com www.win1.dexamedia.com www.compras.dexamedia.com www.coregw1.dexamedia.com www.b2b.dexamedia.com www.mobile2.dexamedia.com www.poczta.dexamedia.com www.innovation.dexamedia.com www.sns.dexamedia.com www.fusion.dexamedia.com www.ds1.dexamedia.com www.ft.dexamedia.com www.html.dexamedia.com www.ht.dexamedia.com www.lab.dexamedia.com www.dashboard.dexamedia.com www.ns51.dexamedia.com www.wms.dexamedia.com www.tg.dexamedia.com www.st1.dexamedia.com www.mail6.dexamedia.com www.sea.dexamedia.com www.d1.dexamedia.com www.movil.dexamedia.com www.idm.dexamedia.com www.pimg.dexamedia.com www.classified.dexamedia.com www.asa.dexamedia.com www.staging2.dexamedia.com www.pop3s.dexamedia.com www.hg.dexamedia.com www.st.dexamedia.com www.mailin.dexamedia.com www.cinema.dexamedia.com www.tc.dexamedia.com www.lt.dexamedia.com www.tt.dexamedia.com www.marketplace.dexamedia.com www.pp.dexamedia.com www.mrtg.dexamedia.com www.bfn1.dexamedia.com www.smtp5.dexamedia.com www.admin3.dexamedia.com www.smtp01.dexamedia.com www.kit.dexamedia.com www.webhost.dexamedia.com www.n2.dexamedia.com www.golf.dexamedia.com www.pmb.dexamedia.com www.cache.dexamedia.com www.voicemail.dexamedia.com www.cbf1.dexamedia.com www.dns6.dexamedia.com www.webdesign.dexamedia.com www.ecommerce.dexamedia.com www.sale.dexamedia.com www.c2.dexamedia.com www.tester.dexamedia.com www.physics.dexamedia.com www.mike.dexamedia.com www.sig.dexamedia.com www.web4.dexamedia.com rumah.huqypropertisyariah.com www.rumah.huqypropertisyariah.com mass-register.galatia.online garisdansudut.site www.drive.perumdamjombang.co.id www.youtube.dexamedia.com www.air.dexamedia.com www.articles.dexamedia.com www.angel.dexamedia.com www.adv.dexamedia.com www.wwwtest.dexamedia.com www.archives.dexamedia.com www.workflow.dexamedia.com www.zenoss.dexamedia.com www.zs.dexamedia.com www.libguides.dexamedia.com www.www1.dexamedia.com www.wsus.dexamedia.com www.albums.dexamedia.com www.a1.dexamedia.com www.yjs.dexamedia.com www.activesync.dexamedia.com www.test-www.dexamedia.com www.yoda.dexamedia.com www.ad1.dexamedia.com www.admission.dexamedia.com www.yx.dexamedia.com www.cibitungcreativecompany.com ssbpay.id www.unduh.ssbpay.id www.download.ssbpay.id www.laundry.kulodev.id coba.herlambangharyo.my.id www.coba.herlambangharyo.my.id www.lampungutara.pratamamedia.com www.jerman.pratamamedia.com www.taiwan.pratamamedia.com kaffahstore.com www.fidqymz.dexamedia.com www.pswid.dexamedia.com www.vbkyshy.dexamedia.com www.awtctwlpn.dexamedia.com dexamedia.com www.lsxyk.dexamedia.com www.frozenfoodsemarang.pixelvideotron.com prodigyjunior.com haqqipublisher.com rickyalhijad.com.ultrago.my.id rickyalhijad.com portofolio.rickyalhijad.com www.blog.superfood.my.id mulyajaya-tbt.web.id mulyajaya.desa.id www.learninggugus.maassawiyahnw.com learninggugus.maassawiyahnw.com sampaimasukangin.dieunikah.com www.sampaimasukangin.dieunikah.com www.menu.sampaimasukangin.com www.aditdekpur.kansadigital.com www.sukaevi.kansadigital.com www.suprikmulya.kansadigital.com www.sendmail.wibusoft.ovh franishoes.com www.web.oxindosolution.com web.oxindosolution.com www.kelasbahasainggris.kaicelearning.com www.kurma.sukkari.online apibogor.spektakel.id www.apibogor.spektakel.id masterslametsapar.com www.motivateresearch.verywellmagz.com breakdiving.my.id www.breakdiving.verywellmagz.com soldevel.org www.soldevel.verywellmagz.com www.oberlio.verywellmagz.com www.masterslametsapar.verywellmagz.com motivateresearch.xyz oberlio.xyz note.resitdc.id www.note.resitdc.id www.wallpaper.ultrago.my.id wallpaper.ultrago.my.id cashtoweb.com cashtoweb.com.ultrago.my.id stikeshusadajbg.ac.id www.cashtoweb.com.ultrago.my.id sambilsantai.xyz laziswaf.com www.portofolio.rickyalhijad.com.ultrago.my.id portofolio.rickyalhijad.com.ultrago.my.id belajardijepang.co.id www.arasbi.elsinta-itera.com www.landingpage.ultrago.my.id landingpage.ultrago.my.id www.kir-kabpaser.dashboarddishub.com kir-kabpaser.dashboarddishub.com lspd.afterschool.be.bobibasari.site www.lspd.afterschool.be.bobibasari.site www.edisekar.kansadigital.com edisekar.kansadigital.com majlisarrasyad.com santong-trekking.asia www.rdm.minwpungkasan.my.id minwpungkasan.my.id www.dekagusdekkristi.kansadigital.com dekagusdekkristi.kansadigital.com www.pointred.bayuramadhan.com pointred.bayuramadhan.com www.prediksimantap.bolamas99a.com bicaraflotim.pratamamedia.com www.bicaraflotim.pratamamedia.com be.galaksispunbond.com www.be.galaksispunbond.com www.support-kirkabcianjur.dashboarddishub.com support-kirkabcianjur.dashboarddishub.com www.lspro.lampungprov.com www.raf662.pixelvideotron.com www.ediade.kansadigital.com www.bolotmangayu.kansadigital.com www.sugidinaayu.kansadigital.com sugidinaayu.kansadigital.com www.spiderbot.wibusoft.ovh www.booking.kulodev.id kulodev.id facility.maisonfeerie.com www.facility.maisonfeerie.com www.onebumi.com rattanforlife.id karismanker.com.infokontrakansragen.com dealerhondapalembang.com backend-tiramana.artetion.com www.backend-tiramana.artetion.com www.dealerhondapalembang.com.artetion.com dealerhondapalembang.com.artetion.com www.bonbonnyaajuun.wibusoft.ovh javadestination.com screload.my.id www.ichanzx.wibusoft.ovh giriwood.com www.update.pensildigital.my.id update.pensildigital.my.id www.bisadigital.locomoswap.com www.izone.locomoswap.com tumbuh.io www.demohutsmi.tumbuh.io www.demo-erp.tumbuh.io www.umkm.tumbuh.io www.dev-kipi.tumbuh.io desaka.id www.user-elearning.tumbuh.io www.desaka.tumbuh.io www.administrator.tumbuh.io www.syafahijab.tumbuh.io www.admin-elearning.tumbuh.io okkysuryatama.net insurance.homegeist.net editorjabar.com www.juniartaarmini.kansadigital.com juniartaarmini.kansadigital.com www.app.kotakku.site app.kotakku.site gunturnusantara.eu.org www.gunturnusantara.smpn5denpasar.sch.id gunturnusantara.smpn5denpasar.sch.id www.plesir.spektakel.id plesir.spektakel.id dev.phi-news.online www.dev.phi-news.online lingkarbudaya.com www.lingkarbudaya.phi-news.online www.dev-klinik.maymedika.com dev-klinik.maymedika.com www.kumpulkode.id.ichajayanti.com kumpulkode.id www.apy.screload.my.id apy.screload.my.id ruangjurnal.com homegeist.net api.spektakel.id www.api.spektakel.id www.staging.socket.sampaimasukangin.com www.staging.office-api.sampaimasukangin.com staging.socket.sampaimasukangin.com staging.office-api.sampaimasukangin.com kiello.id www.unicomz.elsinta-itera.com royintan.kansadigital.com support-kirkabgresik.dashboarddishub.com www.support-kirkabgresik.dashboarddishub.com www.wigyasinta.kansadigital.com wigyasinta.kansadigital.com teguhjayaalumindo.com www.sso-tracking-delivery-postescanada.smpitalmadany.org www.sikeber.online.elsinta-itera.com sikeber.online eminenmarinesurvey.web.id budiayu.kansadigital.com www.budiayu.kansadigital.com id.ichajayanti.com www.atinlestya.nafia.my.id atinlestya.nafia.my.id porosmalang.com www.widuraayu.kansadigital.com widuraayu.kansadigital.com
Open Ports Detected
Map
Whois Information
- NetRange: 139.162.0.0 - 139.162.255.255
- CIDR: 139.162.0.0/16
- NetName: RIPE-ERX-139-162-0-0
- NetHandle: NET-139-162-0-0-1
- Parent: NET139 (NET-139-0-0-0-0)
- NetType: Early Registrations, Transferred to RIPE NCC
- OriginAS:
- Organization: RIPE Network Coordination Centre (RIPE)
- RegDate: 2004-03-03
- Updated: 2004-03-03
- Comment: These addresses have been further assigned to users in
- Comment: the RIPE NCC region. Contact information can be found in
- Ref: https://rdap.arin.net/registry/ip/139.162.0.0
- OrgName: RIPE Network Coordination Centre
- OrgId: RIPE
- Address: P.O. Box 10096
- City: Amsterdam
- StateProv:
- PostalCode: 1001EB
- Country: NL
- RegDate:
- Updated: 2013-07-29
- Ref: https://rdap.arin.net/registry/entity/RIPE
- OrgAbuseHandle: ABUSE3850-ARIN
- OrgAbuseName: Abuse Contact
- OrgAbusePhone: +31205354444
- OrgAbuseEmail: abuse@ripe.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN
- OrgTechHandle: RNO29-ARIN
- OrgTechName: RIPE NCC Operations
- OrgTechPhone: +31 20 535 4444
- OrgTechEmail: hostmaster@ripe.net
- OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN