156.225.72.126 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 156.225.72.126 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: kx1ymx11.icu kgbvo9qt.icu lb39m5am.icu ci00cpbv.icu hix6maeu.icu 6bmyza78.icu v4db9ati.icu aeq5z0pn.icu s0vxunxi.icu fp5ybnko.icu gga97ioi.icu yyotu8zl.icu yd4ujc8f.icu tgkofvcy.icu 2hdaj7a9.icu gmabm3i6.icu l6ec5q5n.icu w54ceyyh.icu anrd7dn5.icu pm9347wx.icu jgplnj4d.icu 6iheacis.icu 4m1iew15.icu pj4a43t0.icu 1baq5q0n.icu 1zzef2le.icu tsjv0f8i.icu c65gpsg5.icu 1hrybbnw.icu rnlu7bl2.icu www.kluygfvj.icu kluygfvj.icu www.ipqhmkr6.icu ipqhmkr6.icu bxj13517.vip zl80022.vip lh15915.vip

Malware Detected on Host

Count: 3 06bbbdc2d28e993686ac5ea537ab23525215e088e7e77d674b9f2542132f8d15 b8163d48d08c9b75ac54ef9a06fd5aa2efd77b32d02b8a06576577d13202b71a 40a1d924fa3e319981e9c4fc9d916b1d756504c772d50c3ad91c8d147adfd9b5

Open Ports Detected

2082 2083 2087 443 80 8080 8443 8880

Map

Whois Information

  • NetRange: 156.225.0.0 - 156.225.255.255
  • CIDR: 156.225.0.0/16
  • NetName: AFRINIC-ERX-156-225-0-0
  • NetHandle: NET-156-225-0-0-1
  • Parent: NET156 (NET-156-0-0-0-0)
  • NetType: Transferred to AfriNIC
  • OriginAS:
  • Organization: African Network Information Center (AFRINIC)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: This IP address range is under AFRINIC responsibility.
  • Comment: Please see http://www.afrinic.net/ for further details,
  • Ref: https://rdap.arin.net/registry/ip/156.225.0.0
  • OrgName: African Network Information Center
  • OrgId: AFRINIC
  • Address: Level 11ABC
  • Address: Raffles Tower
  • Address: Lot 19, Cybercity
  • City: Ebene
  • StateProv:
  • PostalCode:
  • Country: MU
  • RegDate: 2004-05-17
  • Updated: 2015-05-04
  • Comment: AfriNIC - http://www.afrinic.net
  • Comment: The African & Indian Ocean Internet Registry
  • Ref: https://rdap.arin.net/registry/entity/AFRINIC
  • OrgAbuseHandle: GENER11-ARIN
  • OrgAbuseName: Generic POC
  • OrgAbusePhone: +230 4666616
  • OrgAbuseEmail: abusepoc@afrinic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • OrgTechHandle: GENER11-ARIN
  • OrgTechName: Generic POC
  • OrgTechPhone: +230 4666616
  • OrgTechEmail: abusepoc@afrinic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • inetnum: 156.225.72.0 - 156.225.72.255
  • netname: GS_TECHNOLOGIES_LIMITED
  • descr: GS TECHNOLOGIES LIMITED
  • country: US
  • admin-c: CIS1-AFRINIC
  • tech-c: CIS1-AFRINIC
  • status: ASSIGNED PA
  • mnt-by: CIL1-MNT
  • mnt-by: LARUS-SERVICE-MNT
  • parent: 156.224.0.0 - 156.255.255.255
  • person: Cloud Innovation Support
  • address: Ebene
  • address: MU
  • address: Mahe
  • address: Seychelles
  • phone: tel:+248-4-610-795
  • nic-hdl: CIS1-AFRINIC
  • abuse-mailbox: abuse@cloudinnovation.org
  • mnt-by: CIL1-MNT
  • route: 156.225.72.0/24
  • descr: GS TECHNOLOGIES LIMITED
  • origin: AS209242
  • mnt-by: LARUS-SERVICE-MNT

Links to attack logs

anonymous-proxy-ip-list-2025-06-23 anonymous-proxy-ip-list-2025-06-22 anonymous-proxy-ip-list-2025-06-24

Share on: