146.148.219.103 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 146.148.219.103 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 17/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: United States
- Network: AS26658 ht
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: candicecoey.com sha-w.com nc333.cn mddzw.cn
Malware Detected on Host
Count: 2 15b89e394891cb0b4696baa7fa91c426b20d60ded49dc05b45bb10ad7d3350b1 fdc591973480354f95e6edd1bb77eb576c04f50225931741a1e7b0a87af59c0d
Open Ports Detected
10134 10243 10554 1099 111 11371 12345 13579 14344 1521 1741 18081 2000 21 21379 23424 2345 2404 25105 28080 32400 3260 3299 3306 3310 35780 4157 427 444 44818 4664 4782 4848 5005 51106 5201 52869 53 5435 554 55442 5555 5672 5800 6000 60129 6080 631 6379 6668 70 7415 7474 789 7989 80 8008 8010 8069 8080 8086 8098 9009 9191 9200 9418 9530 9633 9876 9944 9981
CVEs Detected
CVE-2007-3205 CVE-2013-2220 CVE-2015-9253 CVE-2017-7272 CVE-2017-7963 CVE-2017-8923 CVE-2017-9120 CVE-2018-19395 CVE-2018-19396 CVE-2019-6977 CVE-2019-9020 CVE-2019-9021 CVE-2019-9022 CVE-2019-9023 CVE-2019-9024 CVE-2019-9637 CVE-2019-9638 CVE-2019-9639 CVE-2019-9641 CVE-2019-9675 CVE-2020-11579 CVE-2022-31628 CVE-2022-31629
Map
Whois Information
- NetRange: 146.148.128.0 - 146.148.255.255
- CIDR: 146.148.128.0/17
- NetName: GC04
- NetHandle: NET-146-148-128-0-1
- Parent: NET146 (NET-146-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS62858
- Organization: GCHAO LLC (GL-237)
- RegDate: 2014-03-26
- Updated: 2014-03-26
- Ref: https://rdap.arin.net/registry/ip/146.148.128.0
- OrgName: GCHAO LLC
- OrgId: GL-237
- Address: 1102 W 4th Street
- City: Florence
- StateProv: CO
- PostalCode: 81226
- Country: US
- RegDate: 2013-09-13
- Updated: 2013-11-06
- Ref: https://rdap.arin.net/registry/entity/GL-237
- OrgTechHandle: GCC4-ARIN
- OrgTechName: Guo, CHUAN CHAO
- OrgTechPhone: +1-273-233-1123
- OrgTechEmail: user-idc@outlook.com
- OrgTechRef: https://rdap.arin.net/registry/entity/GCC4-ARIN
- OrgAbuseHandle: GCC2-ARIN
- OrgAbuseName: Guo, CHUAN CHAO
- OrgAbusePhone: +1-273-233-1123
- OrgAbuseEmail: idc-client@outlook.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/GCC2-ARIN
- OrgNOCHandle: GCC4-ARIN
- OrgNOCName: Guo, CHUAN CHAO
- OrgNOCPhone: +1-273-233-1123
- OrgNOCEmail: user-idc@outlook.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/GCC4-ARIN