160.251.99.32 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 160.251.99.32 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • Country: Japan
  • Network: AS7506 gmo internet
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: www.musunde.net taroarto.com seido-awaji.com sakaisougi.net inoue-daisuke.com surveytec.com

Open Ports Detected

10000 10073 10134 10143 1024 10554 10909 11000 1111 11210 11300 11371 1177 1200 12000 12235 1224 1234 12345 1311 1337 1400 1414 14344 1515 1599 16010 16992 17000 1723 1741 18081 18245 19000 1911 1935 1962 2000 20000 2002 2008 2010 2020 20256 2054 20547 2081 2082 2087 20880 21025 2126 2154 2181 22 2222 2245 2250 23023 2323 23424 2345 2351 2375 2379 2404 25105 25565 2567 27015 2761 28015 28017 2806 3000 3001 3050 3056 3059 3076 3080 3081 3111 3115 3128 31337 31401 3260 3268 32764 3299 3301 3306 3333 3388 3460 3541 3561 3749 3780 3793 3954 4000 4022 4042 4063 4157 4242 4282 443 4433 4443 4444 4500 4567 4664 4786 4840 4911 4949 5001 5005 5006 5007 5009 5010 5025 5222 5269 5560 5592 5604 5634 5697 5800 5900 5901 5908 5938 5984 5985 5986 6002 6080 6161 6379 6443 6580 6590 6605 6633 6697 7003 7071 7218 7316 7415 7434 7443 7474 7535 7547 7557 7634 7657 7777 7779 7989 8000 8003 8007 8008 8009 8014 8025 8030 8056 8060 8069 8072 8080 8081 8083 8085 8087 8090 8096 8098 8101 8112 8126 8140 8200 8236 8291 8334 8403 8500 8649 8767 8779 8800 8812 8831 8834 8870 8880 8888 8889 9001 9015 9019 9022 9042 9051 9091 9095 9100 9191 9207 9212 9299 9301 9306 9307 9309 9311 9367 9398 9600 9633 9876 9898 9944 9955 9998 9999

Map

Whois Information

  • NetRange: 160.243.0.0 - 160.252.255.255
  • CIDR: 160.248.0.0/14, 160.243.0.0/16, 160.244.0.0/14, 160.252.0.0/16
  • NetName: APNIC-ERX-160-233-0-0
  • NetHandle: NET-160-243-0-0-1
  • Parent: NET160 (NET-160-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2004-04-05
  • Updated: 2009-10-08
  • Comment: This IP address range is not registered in the ARIN database.
  • Comment: This range was transferred to the APNIC Whois Database as
  • Comment: part of the ERX (Early Registration Transfer) project.
  • Comment: For details, refer to the APNIC Whois Database via
  • Comment:
  • Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
  • Comment: for the Asia Pacific region. APNIC does not operate networks
  • Comment: using this IP address range and is not able to investigate
  • Comment: spam or abuse reports relating to these addresses. For more
  • Ref: https://rdap.arin.net/registry/ip/160.243.0.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: search-apnic-not-arin@apnic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: search-apnic-not-arin@apnic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 160.251.0.0 - 160.251.255.255
  • netname: interQ
  • descr: GMO Internet Group, Inc.
  • descr: SAINTcity,3-1-1,kyomachi,Kokurakita-ku,Kitakyushu-shi,Fukuoka,802-0002,Japan
  • admin-c: JNIC1-AP
  • tech-c: JNIC1-AP
  • country: JP
  • mnt-by: MAINT-JPNIC
  • mnt-lower: MAINT-JPNIC
  • mnt-irt: IRT-JPNIC-JP
  • status: ALLOCATED PORTABLE
  • last-modified: 2022-11-10T02:22:05Z
  • irt: IRT-JPNIC-JP
  • address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda
  • address: Chiyoda-ku, Tokyo 101-0047, Japan
  • e-mail: hostmaster@nic.ad.jp
  • abuse-mailbox: hostmaster@nic.ad.jp
  • phone: +81-3-5297-2311
  • fax-no: +81-3-5297-2312
  • admin-c: JNIC1-AP
  • tech-c: JNIC1-AP
  • mnt-by: MAINT-JPNIC
  • last-modified: 2022-06-14T04:26:58Z
  • role: Japan Network Information Center
  • address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda
  • address: Chiyoda-ku, Tokyo 101-0047, Japan
  • country: JP
  • phone: +81-3-5297-2311
  • fax-no: +81-3-5297-2312
  • e-mail: hostmaster@nic.ad.jp
  • admin-c: JI13-AP
  • tech-c: JE53-AP
  • nic-hdl: JNIC1-AP
  • mnt-by: MAINT-JPNIC
  • last-modified: 2022-01-05T03:04:02Z
  • inetnum: 160.251.98.0 - 160.251.99.255
  • netname: CNODE-JP
  • descr: GMO Internet Group, Inc.
  • country: JP
  • admin-c: JP00080271
  • tech-c: JP00080271
  • last-modified: 2023-03-26T05:56:05Z

Links to attack logs

anonymous-proxy-ip-list-2024-08-31

Share on: