148.66.136.151 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 148.66.136.151 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • JARM: 2ad2ad16d2ad2ad0002ad2ad2ad2ad783c15df386a8f7b030295f1ff4c2373

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_emd, hphosts_psh

  • Country: Singapore
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH

Malware Detected on Host

Count: 14 67a8b2077a1aa43d393b1f843e556fd030c13dbe7a0e041d41c86fe233bddb38 317d4b1683e217b6af80de147bbeb8581255f320dd11ca5c13b0796f837d42aa fd9725ecc7ed625c2174660e7f51f647fff9474f4c21c8ed84e0608bbcc5a409 a1fdc54d5f4feadfbc1d32cd2a1e6e8d3845db6e86cadf9d849329dffb7e23e0 0d045677fbab19a80b17225c90ecca8fb973f67db71e7f86df8af5c25e0ac7a6 31ed160a5d6da518efe41113124db5c203316a965ccce18cca9e0ead7bac96f6 e4d1908e539f5c7bcc6960d7616c88db9a0382e76186f28026e4f659b1ae058d feb7b9b695fa6e3d5c9d19b4309aaadada0b15529364e17781e91553dc7e3406 cacd30743e196c3d98ae94aed432c41aec2b245112ef382cfdabb89f07e9db1d bfc3e612b9ad521f3a56b545108c6e1b5ac0cecb758cd46e4a483eeb5addb1fe

Open Ports Detected

110 143 2077 2082 2083 2096 22 25 3306 465 587 80 993 995

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2019-16905 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • NetRange: 148.66.128.0 - 148.66.159.255
  • CIDR: 148.66.128.0/19
  • NetName: APNIC
  • NetHandle: NET-148-66-128-0-1
  • Parent: NET148 (NET-148-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2016-08-18
  • Updated: 2016-08-18
  • Ref: https://rdap.arin.net/registry/ip/148.66.128.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: search-apnic-not-arin@apnic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: search-apnic-not-arin@apnic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 148.66.128.0 - 148.66.159.255
  • netname: GODADDY-NET-SG
  • descr: Godaddy.com
  • country: SG
  • org: ORG-GA30-AP
  • admin-c: GNA32-AP
  • tech-c: GNA32-AP
  • abuse-c: AG713-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-GODADDY-NET-SG
  • mnt-routes: MAINT-GODADDY-NET-SG
  • mnt-irt: IRT-GODADDY-NET-SG
  • last-modified: 2020-05-18T23:16:40Z
  • irt: IRT-GODADDY-NET-SG
  • address: 15 Pioneer Walk, Pioneer Hub,
  • e-mail: backbone@godaddy.com
  • abuse-mailbox: contentcomplaints@godaddy.com
  • admin-c: GNA32-AP
  • tech-c: GNA32-AP
  • mnt-by: MAINT-GODADDY-NET-SG
  • last-modified: 2025-09-24T13:09:51Z
  • organisation: ORG-GA30-AP
  • org-name: Godaddy.com
  • org-type: LIR
  • country: SG
  • phone: +011-1-480-284-9138
  • fax-no: +011-1-480-505-8800
  • e-mail: noc@godaddy.com
  • mnt-ref: APNIC-HM
  • mnt-by: APNIC-HM
  • last-modified: 2023-09-05T02:15:38Z
  • role: ABUSE GODADDYNETSG
  • country: ZZ
  • address: 15 Pioneer Walk, Pioneer Hub,
  • phone: +000000000
  • e-mail: backbone@godaddy.com
  • admin-c: GNA32-AP
  • tech-c: GNA32-AP
  • nic-hdl: AG713-AP
  • abuse-mailbox: contentcomplaints@godaddy.com
  • mnt-by: APNIC-ABUSE
  • last-modified: 2025-09-24T13:10:44Z
  • role: GODADDYCOM - network administrator
  • country: SG
  • phone: +011-1-480-505-8800
  • e-mail: noc@godaddy.com
  • admin-c: GNA32-AP
  • tech-c: GNA32-AP
  • nic-hdl: GNA32-AP
  • mnt-by: MAINT-GODADDY-NET-SG
  • last-modified: 2016-04-26T06:49:47Z
  • route: 148.66.136.0/24
  • origin: AS26496
  • descr: Godaddy.com
  • mnt-by: MAINT-GODADDY-NET-SG
  • last-modified: 2023-10-31T18:27:42Z

Links to attack logs

****** ****** ******

Share on: