156.242.213.121 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 156.242.213.121 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 7/100

Host and Network Information

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: hymkohb.icu n97430ey.icu oyutsn.icu aejmn88.top xgjcs666.top chudeng234.top cdd8uscc.top cunzhai333.top cddrx7a.top cddsad8.top xg2020gkorpj.top cddayk7.top cdd2eqw.top cdda4vf.top cdd4tjm.top aabb653.top miniedz.top caenbao.top mingchen77.top lfzd3nc.top cdd8hdab.top zhuanpian99.top q7yb.top pjsiz666.top cdd2685.top ganming77.top saodang77.top hsbcz666.top oyvr3ir.top 5uv942c.top 5t6yikdl.top 0mt9kv9.top nnr2saz8.top 1uh8k8r.top xg2019gboltr.icu xeta26.icu xdv126.icu wjcmrc.icu w992csrx.icu apxmk.icu tvqn71.icu afekiy.icu ab82r9iu.icu a7cwr.icu txbnoq.icu titiao.icu teubnu.icu dehoz.icu dcftnsqt.icu dcmchvcfs.icu clfjvy.icu chaoshu55.icu c9fe4.icu c9gl7.icu c8hp4.icu vxi090.icu snh175.icu sxpxn.icu shuizhun2020.icu sms455.icu houfeng888.icu hmhxue.icu h26fz.icu mnd843.icu mbhevj.icu lbw289.icu loqie.icu lrrqq.icu zycjtw.icu zywzdq.icu ztd830.icu zlrat.icu zirgap.icu zfhmfx.icu ixa8a.icu iueub.icu quqia.icu qjxnuo.icu iki753.icu yrsiny.icu pci234.icu piaozhuang888.icu bipscw.icu yhf385.icu b976h08q.icu ybp146.icu pfv475.icu jmwkmh.icu beneng.icu olbgeo.icu oistny.icu oscgwt.icu gamerhome.icu o40zw.icu juyue888.icu uhi876.icu olcbwo.icu nglzvy.icu nj0rw.icu 743vxyp.icu 7wmv1.icu 7li9d.icu 5m6fqy.icu 5mozbe.icu 16ett.icu khjjoo.icu kfsrrx.icu kxlqd.icu 01dka.icu riu954.icu fjtmaz.icu f5xf0.icu drherddc.com 13cieloshostel.com 92home.net haomake.net wgm3.net

Map

Whois Information

  • NetRange: 156.242.0.0 - 156.242.255.255
  • CIDR: 156.242.0.0/16
  • NetName: AFRINIC-ERX-156-242-0-0
  • NetHandle: NET-156-242-0-0-1
  • Parent: NET156 (NET-156-0-0-0-0)
  • NetType: Transferred to AfriNIC
  • OriginAS:
  • Organization: African Network Information Center (AFRINIC)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: This IP address range is under AFRINIC responsibility.
  • Comment: Please see http://www.afrinic.net/ for further details,
  • Ref: https://rdap.arin.net/registry/ip/156.242.0.0
  • OrgName: African Network Information Center
  • OrgId: AFRINIC
  • Address: Level 11ABC
  • Address: Raffles Tower
  • Address: Lot 19, Cybercity
  • City: Ebene
  • StateProv:
  • PostalCode:
  • Country: MU
  • RegDate: 2004-05-17
  • Updated: 2015-05-04
  • Comment: AfriNIC - http://www.afrinic.net
  • Comment: The African & Indian Ocean Internet Registry
  • Ref: https://rdap.arin.net/registry/entity/AFRINIC
  • OrgAbuseHandle: GENER11-ARIN
  • OrgAbuseName: Generic POC
  • OrgAbusePhone: +230 4666616
  • OrgAbuseEmail: abusepoc@afrinic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • OrgTechHandle: GENER11-ARIN
  • OrgTechName: Generic POC
  • OrgTechPhone: +230 4666616
  • OrgTechEmail: abusepoc@afrinic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • inetnum: 156.242.213.0 - 156.242.213.255
  • netname: POWER_LINE_HK_CO_LIMITED
  • descr: POWER LINE HK CO LIMITED
  • country: HK
  • admin-c: CIS1-AFRINIC
  • tech-c: CIS1-AFRINIC
  • status: ASSIGNED PA
  • mnt-by: CIL1-MNT
  • mnt-by: LARUS-SERVICE-MNT
  • parent: 156.224.0.0 - 156.255.255.255
  • person: Cloud Innovation Support
  • address: Ebene
  • address: MU
  • address: Mahe
  • address: Seychelles
  • phone: tel:+248-4-610-795
  • nic-hdl: CIS1-AFRINIC
  • abuse-mailbox: abuse@cloudinnovation.org
  • mnt-by: CIL1-MNT
  • route: 156.242.128.0/17
  • descr: Waterloo Network Company Limited
  • origin: AS132839
  • mnt-by: LARUS-SERVICE-MNT

Links to attack logs

****** ****** ******

Share on: