156.225.72.111 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 156.225.72.111 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 7/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: United States
- Network:
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
- Passive DNS Results: 9a415qf4.icu 4xdfjgrf.icu dts4ue4m.icu h0vulmsb.icu 6t7afvm6.icu 46vgng4u.icu 6dx2uvne.icu 6hrdcmr3.icu 5bhuu3n6.icu xs9u3e2w.icu 3pdl4ow3.icu pequiex9.icu owxqi8pz.icu a5iap79u.icu 929qi9ez.icu itioh51s.icu x9gng846.icu gvbmawzu.icu w1tyiog1.icu qkvemupp.icu cls7gd5e.icu cl7jp6qt.icu cckfjch7.icu r4rt6giw.icu 93adei6v.icu 6vpm4aea.icu 364pbokj.icu j9aueiew.icu wzmr8lvd.icu i6dc2lf8.icu sc3ylosf.icu odfek0cr.icu www.u1ad1mrs.icu u1ad1mrs.icu dw66822.vip
Malware Detected on Host
Count: 2 21c1c46f42529c000287a967361a254878a1d4746a0bd0e595076c55ef01b300 5146a31e812e8d047fe98bf50b3710de1254f8b085613662555a96de4cf54c2c
Open Ports Detected
2082 2083 2086 2087 2096 443 80 8080 8443 8880
Map
Whois Information
- NetRange: 156.225.0.0 - 156.225.255.255
- CIDR: 156.225.0.0/16
- NetName: AFRINIC-ERX-156-225-0-0
- NetHandle: NET-156-225-0-0-1
- Parent: NET156 (NET-156-0-0-0-0)
- NetType: Transferred to AfriNIC
- OriginAS:
- Organization: African Network Information Center (AFRINIC)
- RegDate: 2010-11-03
- Updated: 2010-11-17
- Comment: This IP address range is under AFRINIC responsibility.
- Comment: Please see http://www.afrinic.net/ for further details,
- Ref: https://rdap.arin.net/registry/ip/156.225.0.0
- OrgName: African Network Information Center
- OrgId: AFRINIC
- Address: Level 11ABC
- Address: Raffles Tower
- Address: Lot 19, Cybercity
- City: Ebene
- StateProv:
- PostalCode:
- Country: MU
- RegDate: 2004-05-17
- Updated: 2015-05-04
- Comment: AfriNIC - http://www.afrinic.net
- Comment: The African & Indian Ocean Internet Registry
- Ref: https://rdap.arin.net/registry/entity/AFRINIC
- OrgAbuseHandle: GENER11-ARIN
- OrgAbuseName: Generic POC
- OrgAbusePhone: +230 4666616
- OrgAbuseEmail: abusepoc@afrinic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
- OrgTechHandle: GENER11-ARIN
- OrgTechName: Generic POC
- OrgTechPhone: +230 4666616
- OrgTechEmail: abusepoc@afrinic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
- inetnum: 156.225.72.0 - 156.225.72.255
- netname: GS_TECHNOLOGIES_LIMITED
- descr: GS TECHNOLOGIES LIMITED
- country: US
- admin-c: CIS1-AFRINIC
- tech-c: CIS1-AFRINIC
- status: ASSIGNED PA
- mnt-by: CIL1-MNT
- mnt-by: LARUS-SERVICE-MNT
- parent: 156.224.0.0 - 156.255.255.255
- person: Cloud Innovation Support
- address: Ebene
- address: MU
- address: Mahe
- address: Seychelles
- phone: tel:+248-4-610-795
- nic-hdl: CIS1-AFRINIC
- abuse-mailbox: abuse@cloudinnovation.org
- mnt-by: CIL1-MNT
- route: 156.225.72.0/24
- descr: GS TECHNOLOGIES LIMITED
- origin: AS209242
- mnt-by: LARUS-SERVICE-MNT
Links to attack logs
anonymous-proxy-ip-list-2025-06-23 anonymous-proxy-ip-list-2025-06-22 anonymous-proxy-ip-list-2025-06-24
Share on: