158.255.212.55 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 158.255.212.55 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: blocklist_net_ua

  • Country: Austria
  • Network: AS57169 edis gmbh
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10001 10134 10243 10250 11112 11300 11371 123 1337 13579 14147 14265 16010 16993 17000 18245 19000 19071 20000 3128 3129 3200 3260 3268 3270 3299 3301 3306 3310 3388 3389 3521 3522 3523 3524 3541 3551 3552 3557 3558 3567 3689 3749 3780 3790 3791 3792 3793 3794 3922 3952 4022 4043 4063 4190 4242 4282 4321 4369 4444 4482 4505 4506 4523 4524 4545 4567 4734 4747 4782 4786 4808 4840 4848 4911 4949 4999 5000 5005 5006 5007 5010 5025 5070 5122 5150 5172 5201 5222 5280 5357 5400 5435 5446 5542 5555 5560 5567 5568 5590 5593 5597 5598 5600 5601 5602 5603 5605 5608 5672 5673 5800 5801 5853 5858 5900 5906 5910 5984 5985 6000 6001 6002 6008 6080 6308 6352 6379 6464 6503 6512 6550 6580 6588 6600 6601 6605 6650 6666 6667 6668 6697 6998 7003 7005 7070 7170 7171 7218 7401 7415 7443 7465 7537 7547 7634 7700 7776 7777 7979 80 8000 8001 8007 8008 8016 8021 8024 8026 8028 8029 8033 8034 8037 8043 8046 8047 8048 8057 8060 8080 8081 8082 8085 8087 8088 8089 8092 8098 8099 8102 8103 8105 8106 8107 8109 8111 8112 8118 8123 8126 8140 8143 8159 8180 8181 8182 8200 8222 8248 8291 8334 8407 8408 8409 8413 8415 8416 8422 8425 8426 8427 8428 8430 8442 8443 8445 8446 8447 8500 8513 8545 8575 8585 8590 8622 8623 8666 8700 8728 8733 8766 8767 8779 8787 8789 8791 8800 8802 8811 8812 8813 8816 8817 8818 8829 8833 8834 8838 8839 8840 8842 8843 8847 8849 8851 8852 8853 8858 8864 8868 8870 8874 8875 8878 8880 8887 8888 8889 8891 8991 9000 9001 9006 9007 9008 9011 9012 9014 9018 9019 9021 9024 9025 9026 9027 9028 9031 9035 9036 9037 9042 9044 9045 9046 9047 9049 9050 9082 9084 9088 9089 9090 9091 9092 9093 9094 9097 9100 9103 9104 9105 9107 9109 9111 9119 9151 9160 9191 9200 9201 9205 9210 9214 9215 9216 9217 9251 9295 9299 9301 9302 9307 9311 9389 9418 9443 9444 9527 9550 9595 9600 9682 9690 9761 9869 9943 9944 9955 9991 9998 9999

CVEs Detected

CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12527 CVE-2019-12528 CVE-2019-12529 CVE-2019-12854 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2020-11945 CVE-2020-14058 CVE-2020-15049 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-28662 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-46784 CVE-2022-41318

Map

Whois Information

  • NetRange: 158.255.0.0 - 158.255.255.255
  • CIDR: 158.255.0.0/16
  • NetName: RIPE-ERX-158-255-0-0
  • NetHandle: NET-158-255-0-0-1
  • Parent: NET158 (NET-158-0-0-0-0)
  • NetType: Early Registrations, Transferred to RIPE NCC
  • OriginAS:
  • Organization: RIPE Network Coordination Centre (RIPE)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: These addresses have been further assigned to users in
  • Comment: the RIPE NCC region. Contact information can be found in
  • Ref: https://rdap.arin.net/registry/ip/158.255.0.0
  • OrgName: RIPE Network Coordination Centre
  • OrgId: RIPE
  • Address: P.O. Box 10096
  • City: Amsterdam
  • StateProv:
  • PostalCode: 1001EB
  • Country: NL
  • RegDate:
  • Updated: 2013-07-29
  • Ref: https://rdap.arin.net/registry/entity/RIPE
  • OrgTechHandle: RNO29-ARIN
  • OrgTechName: RIPE NCC Operations
  • OrgTechPhone: +31 20 535 4444
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN
  • OrgAbuseHandle: ABUSE3850-ARIN
  • OrgAbuseName: Abuse Contact
  • OrgAbusePhone: +31205354444
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN
  • inetnum: 158.255.212.0 - 158.255.212.255
  • netname: EDIS-AT-NET
  • descr: EDIS Infrastructure in Austria
  • country: AT
  • geoloc: 48.178383 16.365484
  • geofeed: https://www.edis.at/geofeed.txt
  • language: DE
  • org: ORG-EG44-RIPE
  • admin-c: EDIS-AT
  • tech-c: EDIS-AT
  • status: ASSIGNED PA
  • mnt-by: EDIS-MNT
  • mnt-routes: EDIS-MNT
  • created: 2012-03-07T11:40:03Z
  • last-modified: 2022-12-06T15:41:39Z
  • organisation: ORG-EG44-RIPE
  • org-name: EDIS GmbH
  • country: AT
  • org-type: LIR
  • address: Hauptplatz 3/3
  • address: 8010
  • address: Graz
  • address: AUSTRIA
  • phone: +43316827500300
  • fax-no: +43316827500777
  • admin-c: GK2
  • admin-c: ISAT
  • mnt-ref: EDIS-MNT
  • mnt-ref: MELBICOM-MNT
  • mnt-ref: NINE-MNT
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: EDIS-MNT
  • abuse-c: EDIS-AT
  • created: 2011-08-10T14:08:22Z
  • last-modified: 2021-02-03T07:58:56Z
  • role: EDIS GmbH - Noc Engineer
  • address: EDIS GmbH, Hauptplatz 3/3, 8010, GRAZ, Austria
  • address: http://www.edis.at
  • phone: +43 316 827500300
  • admin-c: EDIS-RIPE
  • admin-c: GK2
  • admin-c: ISAT
  • tech-c: EDIS-RIPE
  • tech-c: ISAT
  • abuse-mailbox: [email protected]
  • nic-hdl: EDIS-AT
  • mnt-by: EDIS-MNT
  • created: 2011-08-12T07:29:38Z
  • last-modified: 2016-04-08T06:50:42Z
  • route: 158.255.212.0/24
  • descr: PA-SLASH24-SPACE13-ROUTEAS57169
  • origin: AS57169
  • mnt-by: EDIS-MNT
  • created: 2013-04-29T12:55:51Z
  • last-modified: 2013-04-29T12:55:51Z

Links to attack logs

anonymous-proxy-ip-list-2023-06-30