148.113.195.131 Threat Intelligence and Host Information
ipinfopage
General
This page contains threat intelligence information for the IPv4 address
148.113.195.131 and was generated either as a result of
observed malicious activity or as an information gathering exercise to assist with
enrichment of security events and context. All information is gathered passively
through aggregation of public sources, or observations through activity upon honeynets.
The host score is calculated through a series of statistically weighted values and
machine learning which takes into account metadata such as host information, frequency,
volume and global distribution of malicious activity, association with other known
malicious hosts or networks, proxying or anonymising behaviour such as with tor exit
nodes, residential proxies or VPN services, and many other attributes. These values are
historical and indicative only - and should not be taken to be an accurate representation
of the users, businesses or networks in which they reside.
🟠 Elevated —
55/100
Geographic Location
Host and Network Information
- View other sources:
Spamhaus
VirusTotal
Shodan
AbuseIPDB
- Country: CA
- Network: "reputation": 0, "indicator": "148.113.195.131
- Noticed: 11 times
- Protocols Attacked: ssh
- Countries Attacked: Australia
- Tor Node: No
- brute force
- Bruteforce
- Brute-Force
- cowrie
- info
- malicious
- notice
- sftp
- ssh
- SSH
- tanner
MITRE ATT&CK TTPs
- T1078 - Valid Accounts
- T1083 - File and Directory Discovery
- T1098.004 - SSH Authorized Keys
- T1105 - Ingress Tool Transfer
- T1110.004 - Credential Stuffing
- T1110 - Brute Force
Passive DNS
Attack Log References
Whois Information
Network: "reputation": 0, "indicator": "148.113.195.131
NetRange: 148.113.0.0 - 148.113.255.255
CIDR: 148.113.0.0/16
Noticed: 11 times
NetName: HO-2
Protocols Attacked: ssh
NetHandle: NET-148-113-0-0-1
Parent: NET148 (NET-148-0-0-0-0)
Countries Attacked: Australia
NetType: Direct Allocation
Passive DNS Results: * OriginAS:
prepagorecargart.com
Organization: OVH Hosting, Inc. (HO-2)
RegDate: 2021-09-14
Updated: 2021-09-14
RegDate: 2024-08-07
Updated: 2024-08-07
NetRange: 148.113.0.0 - 148.113.255.255
Ref: https://rdap.arin.net/registry/ip/148.113.195.0
CIDR: 148.113.0.0/16
OrgName: OVH Hosting, Inc.
OrgId: HO-2
NetName: HO-2
Address: 800-1801 McGill College
NetHandle: NET-148-113-0-0-1
City: Montreal
Parent: NET148 (NET-148-0-0-0-0)
StateProv: QC
NetType: Direct Allocation
PostalCode: H3A 2N4
OriginAS:
Country: CA
Organization: OVH Hosting, Inc. (HO-2)
RegDate: 2011-06-22
RegDate: 2021-09-14
Updated: 2024-11-25
Updated: 2021-09-14
Ref: https://rdap.arin.net/registry/entity/HO-2
OrgAbuseHandle: ABUSE3956-ARIN
Ref: https://rdap.arin.net/registry/ip/148.113.0.0
OrgAbuseName: Abuse
OrgName: OVH Hosting, Inc.
OrgAbusePhone: +1-855-684-5463
OrgId: HO-2
OrgAbuseEmail: abuse@ovh.ca
Address: 800-1801 McGill College
OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN
City: Montreal
OrgTechHandle: NOC11876-ARIN
OrgTechName: NOC
StateProv: QC
OrgTechPhone: +1-855-684-5463
PostalCode: H3A 2N4
OrgTechEmail: noc@ovh.net
Country: CA
OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN
RegDate: 2011-06-22
Updated: 2024-11-25
Ref: https://rdap.arin.net/registry/entity/HO-2
OrgTechHandle: NOC11876-ARIN
OrgTechName: NOC
OrgTechPhone: +1-855-684-5463
OrgTechEmail: noc@ovh.net
OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN
OrgAbuseHandle: ABUSE3956-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-855-684-5463
OrgAbuseEmail: abuse@ovh.ca
OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN
NetRange: 148.113.195.0 - 148.113.195.255
CIDR: 148.113.195.0/24
NetName: VPS-BHS6
NetHandle: NET-148-113-195-0-1
Parent: HO-2 (NET-148-113-0-0-1)
NetType: Reassigned
OriginAS: AS16276
Organization: OVH Hosting, Inc. (HO-2)
RegDate: 2024-08-07
Updated: 2024-08-07
Ref: https://rdap.arin.net/registry/ip/148.113.195.0
OrgName: OVH Hosting, Inc.
OrgId: HO-2
Address: 800-1801 McGill College
City: Montreal
StateProv: QC
PostalCode: H3A 2N4
Country: CA
RegDate: 2011-06-22
Updated: 2024-11-25
Ref: https://rdap.arin.net/registry/entity/HO-2
OrgTechHandle: NOC11876-ARIN
OrgTechName: NOC
OrgTechPhone: +1-855-684-5463
OrgTechEmail: noc@ovh.net
OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN
OrgAbuseHandle: ABUSE3956-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-855-684-5463
OrgAbuseEmail: abuse@ovh.ca
OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN