156.242.128.195 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 156.242.128.195 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 7/100
Host and Network Information
-
JARM: 25d3fd00025d25d00042d43d0000002059a3b916699461c5923779b77cf06b
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network:
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: byyzcz.com chaomaclub.com jxmlsc.com szhongbei.com
Open Ports Detected
443 7218 7331 7415 7443 7445 7537 7547 7548 7634 7657 7676 7774 7776 7777 7779 7780 7801 7980 7989 7999 80 8000 8001 8008 8009 8010 8015 8026 8028 8039 8045 8046 8051 8055 8060 8069 8070 8079 8080 8081 8083 8085 8086 8089 8090 8096 8098 8099 8106 8111 8112 8116 8121 8123 8124 8126 8135 8138 8139 8142 8147 8149 8164 8165 8168 8171 8178 8180 8181 8185
Map
Whois Information
- NetRange: 156.242.0.0 - 156.242.255.255
- CIDR: 156.242.0.0/16
- NetName: AFRINIC-ERX-156-242-0-0
- NetHandle: NET-156-242-0-0-1
- Parent: NET156 (NET-156-0-0-0-0)
- NetType: Transferred to AfriNIC
- OriginAS:
- Organization: African Network Information Center (AFRINIC)
- RegDate: 2010-11-03
- Updated: 2010-11-17
- Comment: This IP address range is under AFRINIC responsibility.
- Comment: Please see http://www.afrinic.net/ for further details,
- Ref: https://rdap.arin.net/registry/ip/156.242.0.0
- OrgName: African Network Information Center
- OrgId: AFRINIC
- Address: Level 11ABC
- Address: Raffles Tower
- Address: Lot 19, Cybercity
- City: Ebene
- StateProv:
- PostalCode:
- Country: MU
- RegDate: 2004-05-17
- Updated: 2015-05-04
- Comment: AfriNIC - http://www.afrinic.net
- Comment: The African & Indian Ocean Internet Registry
- Ref: https://rdap.arin.net/registry/entity/AFRINIC
- OrgTechHandle: GENER11-ARIN
- OrgTechName: Generic POC
- OrgTechPhone: +230 4666616
- OrgTechEmail: abusepoc@afrinic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
- OrgAbuseHandle: GENER11-ARIN
- OrgAbuseName: Generic POC
- OrgAbusePhone: +230 4666616
- OrgAbuseEmail: abusepoc@afrinic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
- inetnum: 156.242.128.0 - 156.242.128.255
- netname: POWER_LINE_HK_CO_LIMITED
- descr: POWER LINE HK CO LIMITED
- country: HK
- admin-c: CIS1-AFRINIC
- tech-c: CIS1-AFRINIC
- status: ASSIGNED PA
- mnt-by: CIL1-MNT
- mnt-by: LARUS-SERVICE-MNT
- parent: 156.224.0.0 - 156.255.255.255
- person: Cloud Innovation Support
- address: Ebene
- address: MU
- address: Mahe
- address: Seychelles
- phone: tel:+248-4-610-795
- nic-hdl: CIS1-AFRINIC
- abuse-mailbox: abuse@cloudinnovation.org
- mnt-by: CIL1-MNT
- route: 156.242.128.0/17
- descr: Waterloo Network Company Limited
- origin: AS132839
- mnt-by: LARUS-SERVICE-MNT