156.244.162.149 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 156.244.162.149 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Country: Seychelles
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: hey-7.com topbestes.com 1024ktv.com landsblog.com hemucasa.com doiteasyguide.com xfb3688.com golfkomerc.com 1ltq.buzz t9wn.buzz 2hxb.buzz elu1.buzz sqe4.buzz c1bo.buzz kat9.buzz 8pkj.buzz bt1r.buzz tp8d.buzz mo9b.buzz 3xml.buzz zad4.buzz 7okg.buzz n6mn.buzz 4hgf.buzz ksa3.buzz

Malware Detected on Host

Count: 3 72584a197f5bbd7528b515ad28c2d75fe5caf67b1557645fa5f308a48ba59ccc 750bfff6e4ebd9822129258b72edce658ab1f43b491607a6aab3887ab89a7d33 8a71f56900e374adcddc1a95e3e0644b7ca109d79fc6294e3dcfaeb5a5151f4b

Open Ports Detected

47001 5985 80

Map

Whois Information

  • NetRange: 156.244.0.0 - 156.244.255.255
  • CIDR: 156.244.0.0/16
  • NetName: AFRINIC-ERX-156-244-0-0
  • NetHandle: NET-156-244-0-0-1
  • Parent: NET156 (NET-156-0-0-0-0)
  • NetType: Transferred to AfriNIC
  • OriginAS:
  • Organization: African Network Information Center (AFRINIC)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: This IP address range is under AFRINIC responsibility.
  • Comment: Please see http://www.afrinic.net/ for further details,
  • Ref: https://rdap.arin.net/registry/ip/156.244.0.0
  • OrgName: African Network Information Center
  • OrgId: AFRINIC
  • Address: Level 11ABC
  • Address: Raffles Tower
  • Address: Lot 19, Cybercity
  • City: Ebene
  • StateProv:
  • PostalCode:
  • Country: MU
  • RegDate: 2004-05-17
  • Updated: 2015-05-04
  • Comment: AfriNIC - http://www.afrinic.net
  • Comment: The African & Indian Ocean Internet Registry
  • Ref: https://rdap.arin.net/registry/entity/AFRINIC
  • OrgTechHandle: GENER11-ARIN
  • OrgTechName: Generic POC
  • OrgTechPhone: +230 4666616
  • OrgTechEmail: abusepoc@afrinic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • OrgAbuseHandle: GENER11-ARIN
  • OrgAbuseName: Generic POC
  • OrgAbusePhone: +230 4666616
  • OrgAbuseEmail: abusepoc@afrinic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • inetnum: 156.244.162.0 - 156.244.162.255
  • netname: GNET_INC
  • descr: GNET INC
  • country: HK
  • admin-c: CIS1-AFRINIC
  • tech-c: CIS1-AFRINIC
  • status: ASSIGNED PA
  • mnt-by: CIL1-MNT
  • mnt-by: LARUS-SERVICE-MNT
  • parent: 156.224.0.0 - 156.255.255.255
  • person: Cloud Innovation Support
  • address: Ebene
  • address: MU
  • address: Mahe
  • address: Seychelles
  • phone: tel:+248-4-610-795
  • nic-hdl: CIS1-AFRINIC
  • abuse-mailbox: abuse@cloudinnovation.org
  • mnt-by: CIL1-MNT
  • route: 156.244.0.0/16
  • descr: Octopus Web Solution Inc
  • origin: AS984
  • mnt-by: LARUS-SERVICE-MNT
Share on: