15.164.143.26 Threat Intelligence and Host Information
Jun 02, 2024
ipinfopage
General
IP Address
15.164.143.26
Location
🇰🇷 Incheon, South Korea
Network
AS16509
Threat Score
15/100
Attack Intelligence
Open Ports Detected
22
Geographic Location
Country
South Korea
City
Incheon
Region
Incheon
Coordinates
37.4585, 126.7015
Network Information
ASN
AS16509
Organization
AMAZON-02
Network
AS16509 AMAZON-02
WHOIS Information
NetRange
15.164.0.0 - 15.165.255.255
CIDR
15.164.0.0/15
NetName
AMAZON-ICN
NetHandle
NET-15-164-0-0-2
Parent
AT-88-Z (NET-15-164-0-0-1)
NetType
Reallocated
OriginAS
AS16509
Organization
AWS Asia Pacific (Seoul) Region (AAPSR)
RegDate
2016-03-24
Updated
2019-08-02
Ref
https://rdap.arin.net/registry/entity/AAPSR
OrgName
AWS Asia Pacific (Seoul) Region
OrgId
AAPSR
Address
Gangnam-gu
City
Seoul
StateProv
PostalCode
Country
KR
Comment
* Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
OrgRoutingHandle
ARMP-ARIN
OrgRoutingName
AWS RPKI Management POC
OrgRoutingPhone
+1-206-555-0000
OrgRoutingEmail
aws-rpki-routing-poc@amazon.com
OrgRoutingRef
https://rdap.arin.net/registry/entity/ARMP-ARIN
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2024-05-18 | Singapore | SSH | View Log |
- Country: South Korea
- Network: AS16509 amazon.com inc
- Noticed: 1 times
- Protocols Attacked: ssh
- Passive DNS Results: www.tutoringgo.com tutoringgo.com www.doctalk.co.kr doctalk.co.kr web.doctalk.co.kr api.doctalk.co.kr
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767
Disclaimer
This page contains threat intelligence information for the IPv4 address 15.164.143.26 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.