149.56.28.43 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 149.56.28.43 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 5/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: Canada
- Network:
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: bofihuda.ccname.org cqgeye.com qiaojiandao.com modeke.com 8csj.com fiqobexe.ccname.org jefilosi.ccname.org shqjsj.com cn.sfqb2pn.jishesc.com projetcn.com www.projetcn.com sn5uqyg.360zhiji.com 3984czd.360zhiji.com www.xpooling.com www.xxx2sex.com dufaturo.ccname.org 10sullivan.com w-ka.com www.wx876.com ibankupdate.com www.x666av.cc z1t1.com gufayase.ccname.org zexaqaqu.ccname.org x666av.cc zhanzikeji.com baliangjin.com jskwdl.com ewghd.com abo1228.com ddenqol.com reilims.com ntmeilai.com mudelong.com iqianzhuo.com long-li.com nsmzz.com f1000j.com tjyypsy.com lcpqz.com lizhenmy.com uybest.com crrkm.com kuaikepu.com taichengcs.com www.taichengcs.com eaccsales.com dnhdmmx.com koudainiangniang888.com bztnaom.com cndajiu.com digmcpx.com 0515jh.com 58juejin.com app.bfghd.com www.jxmgld.com gdaibeili.com nnkmkmy.com hnyhdqgc.com chunair.com sztyjdh.com loqmf9f.com deciwuliu.com chhrto.com blwdli.com qcg0158.com ptyiya.com www.17dct.com zjtszlkj.com syxgj56.com fxqcjhy.com migobiotech.com sbkfmxi.com xyyilv.com njsunzospring.com vr-indie.com huatuojs.com kudystudio.com p4206.com puyijike.cdnfree.org d556.com www.ahhy1818.com www.yicangs.com sxwbh.com www.952st.com ijosen.com shylkeji.com www.czvtosrca.com yygoqucmz.com colojaku.cdnfree.org www.28schl.yalong-chem.com www.jfclbanche.com geenuo.com jeyicoho.cdnfree.org zebirina.cdnfree.org sipwhbm.com jxshgjj.com pc336.com tateyiga.ccname.org hczjx.com dyqufx.com bdyf5.com xamocw.com 8msf.com assgkj.com bt726.com sqkj1688.com ewewifj.com sdhappyer.com jindizhibo.com gzccpj.com zembj.com zslqkcchem2008.com baitaijiaju.com hzfangzhong.com gzjgslw.com bbtjjyl.com shhenzen.com zzyihai.com swinchain.com szzhjm.com jxsyhsc.com ljtmzs.com lzyxy.com gzrqr.com hsqtcl.com att-ain.com hnbsh.com huaxier.com shkwang.com feiteweier.com xmzishen.com fudeshuzhi.com shjthly.com chinacraneworld.com daipai123.com weixinengyuan.com jiaoxiaochen.com songxiancz.com tianjinyuezhu.com bingjianbus.com dfpv-gd.com fujinxin.com siputen.com fjjczj.com shanmeidz.com shsyzhyjy.com
Open Ports Detected
20100 22 443 80 9090 9100 9443
Map
Whois Information
- NetRange: 149.56.0.0 - 149.56.255.255
- CIDR: 149.56.0.0/16
- NetName: HO-2
- NetHandle: NET-149-56-0-0-1
- Parent: NET149 (NET-149-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: OVH Hosting, Inc. (HO-2)
- RegDate: 2016-02-09
- Updated: 2016-02-10
- Ref: https://rdap.arin.net/registry/ip/149.56.0.0
- OrgName: OVH Hosting, Inc.
- OrgId: HO-2
- Address: 800-1801 McGill College
- City: Montreal
- StateProv: QC
- PostalCode: H3A 2N4
- Country: CA
- RegDate: 2011-06-22
- Updated: 2025-09-04
- Ref: https://rdap.arin.net/registry/entity/HO-2
- OrgTechHandle: NOC11876-ARIN
- OrgTechName: NOC
- OrgTechPhone: +1-855-684-5463
- OrgTechEmail: noc@ovh.net
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN
- OrgAbuseHandle: ABUSE3956-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-855-684-5463
- OrgAbuseEmail: abuse@ovh.ca
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN
- NetRange: 149.56.16.0 - 149.56.31.255
- CIDR: 149.56.16.0/20
- NetName: OVH-DEDICATED-149-56-16-NET
- NetHandle: NET-149-56-16-0-1
- Parent: HO-2 (NET-149-56-0-0-1)
- NetType: Reassigned
- OriginAS:
- Organization: OVH Hosting, Inc. (HO-2)
- RegDate: 2016-07-29
- Updated: 2016-07-29
- Comment: OVH-DEDICATED-149-56-16-NET
- Ref: https://rdap.arin.net/registry/ip/149.56.16.0
- OrgName: OVH Hosting, Inc.
- OrgId: HO-2
- Address: 800-1801 McGill College
- City: Montreal
- StateProv: QC
- PostalCode: H3A 2N4
- Country: CA
- RegDate: 2011-06-22
- Updated: 2025-09-04
- Ref: https://rdap.arin.net/registry/entity/HO-2
- OrgTechHandle: NOC11876-ARIN
- OrgTechName: NOC
- OrgTechPhone: +1-855-684-5463
- OrgTechEmail: noc@ovh.net
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN
- OrgAbuseHandle: ABUSE3956-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-855-684-5463
- OrgAbuseEmail: abuse@ovh.ca
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN