149.28.18.246 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 149.28.18.246 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 5/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: Japan
- Network: AS20473 the constant company llc
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
- Passive DNS Results: stageninebloc-a.citroorder.com moram-waiting.citroorder.com aicampbloc-s.citroorder.com 145cooc-prod.citroorder.com alldaymeal-a.citroorder.com alldaymeal-s.citroorder.com annhouse-a.citroorder.com star24bloc-a.citroorder.com star24bloc-s.citroorder.com bqorder.ctro.me hellopaulbloc-s.citroorder.com hellopaulbloc-a.citroorder.com aicampmobile.ctro.me aicampbloc-a.citroorder.com aicamp-s.citroorder.com aicamp-a.citroorder.com annhouse-s.citroorder.com hellopaul-s.citroorder.com hellopaul-a.citroorder.com moram-s.citroorder.com moram-a.citroorder.com teapot-s.citroorder.com teapot-a.citroorder.com winstudycafe-a.citroorder.com fulldom-s.citroorder.com fulldom-a.citroorder.com garagem-a.citroorder.com gusangarden.ctro.me 1787yangwa-a.citroorder.com 1787yangwa-s.citroorder.com winstudycafe-s.citroorder.com sinjeonjs-s.citroorder.com sigansangsa-s.citroorder.com sigansangsa-a.citroorder.com nunnunanna-s.citroorder.com garagem-s.citroorder.com sinjeonjs-a.citroorder.com nunnunanna-a.citroorder.com unclejohns-s.citroorder.com unclejohns-a.citroorder.com cdn.ctro.me viettebanhmi-a.citroorder.com bloc-s.citroorder.com bloc-a.citroorder.com r.ctro.me cafeju-s.citroorder.com cafeju-a.citroorder.com stagenine-s.citroorder.com citrosend.com stagenine-a.citroorder.com send.citroorder.com bravequeen-a.citroorder.com store-admin.citroorder.com dmkatz-s.citroorder.com docs.citroorder.com cgicenter-s.citroorder.com store.citroorder.com cgicenter-a.citroorder.com lifefood-a.citroorder.com dmkatz-a.citroorder.com staccato-a.citroorder.com bravequeen-s.citroorder.com staccato-s.citroorder.com store-adminer.citroorder.com lifefood-s.citroorder.com
Open Ports Detected
Map
Whois Information
- NetRange: 149.28.8.0 - 149.28.255.255
- CIDR: 149.28.8.0/21, 149.28.16.0/20, 149.28.64.0/18, 149.28.128.0/17, 149.28.32.0/19
- NetName: CONSTANT
- NetHandle: NET-149-28-8-0-1
- Parent: NET149 (NET-149-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS20473
- Organization: The Constant Company, LLC (CHOOP-1)
- RegDate: 2018-05-04
- Updated: 2021-03-30
- Ref: https://rdap.arin.net/registry/ip/149.28.8.0
- OrgName: The Constant Company, LLC
- OrgId: CHOOP-1
- Address: 319 Clematis St. Suite 900
- City: West Palm Beach
- StateProv: FL
- PostalCode: 33401
- Country: US
- RegDate: 2006-10-03
- Updated: 2022-12-21
- Comment: http://www.constant.com/
- Ref: https://rdap.arin.net/registry/entity/CHOOP-1
- OrgAbuseHandle: ABUSE1143-ARIN
- OrgAbuseName: Abuse Department
- OrgAbusePhone: +1-973-849-0500
- OrgAbuseEmail: abuse@constant.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE1143-ARIN
- OrgTechHandle: NETWO1159-ARIN
- OrgTechName: Network Operations
- OrgTechPhone: +1-973-849-0500
- OrgTechEmail: network@constant.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NETWO1159-ARIN
- OrgNOCHandle: NETWO1159-ARIN
- OrgNOCName: Network Operations
- OrgNOCPhone: +1-973-849-0500
- OrgNOCEmail: network@constant.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NETWO1159-ARIN
- NetRange: 149.28.18.0 - 149.28.19.255
- CIDR: 149.28.18.0/23
- NetName: NET-149-28-18-0-23
- NetHandle: NET-149-28-18-0-1
- Parent: CONSTANT (NET-149-28-8-0-1)
- NetType: Reassigned
- OriginAS:
- Organization: Vultr Holdings, LLC (VHL-45)
- RegDate: 2022-02-14
- Updated: 2022-02-14
- Ref: https://rdap.arin.net/registry/ip/149.28.18.0
- OrgName: Vultr Holdings, LLC
- OrgId: VHL-45
- Address: TRC Bldg., C-tower, B-block, 4F
- Address: 6-5-2
- City: Heiwajima
- StateProv:
- PostalCode: 143-0006
- Country: JP
- RegDate: 2015-03-05
- Updated: 2024-04-04
- Ref: https://rdap.arin.net/registry/entity/VHL-45
- OrgTechHandle: LYNCH267-ARIN
- OrgTechName: Lynch, Tomas
- OrgTechPhone: +1-973-849-0500
- OrgTechEmail: tlynch@vultr.com
- OrgTechRef: https://rdap.arin.net/registry/entity/LYNCH267-ARIN
- OrgAbuseHandle: VULTR-ARIN
- OrgAbuseName: Vultr Abuse
- OrgAbusePhone: +1-973-849-0500
- OrgAbuseEmail: abuse@vultr.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/VULTR-ARIN
- OrgTechHandle: VULTR-ARIN
- OrgTechName: Vultr Abuse
- OrgTechPhone: +1-973-849-0500
- OrgTechEmail: abuse@vultr.com
- OrgTechRef: https://rdap.arin.net/registry/entity/VULTR-ARIN
Links to attack logs
anonymous-proxy-ip-list-2024-11-01
Share on: