164.155.228.2 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 164.155.228.2 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: www.kanmm.loan www.kanpian.loan caosiwo.loan heisi.loan caowo.loan yaocao.loan kanbb.loan jianwo.loan kanmm.loan bbyang.loan ribb.loan gebimm.loan risiwo.loan tianbb.loan kanpian.loan caobb.loan www.13578.cz 13578.cz 27856.ee www.27856.ee 34162.ee www.34162.ee www.24689.cz 24689.cz 75831.ee www.75831.ee www.131174.cn 131174.cn www.39640.online 39640.online 155264.cn www.155264.cn 176237.cn www.176237.cn www.131920.cn www.176236.cn 131920.cn 176236.cn www.155746.cn 155746.cn www.158714.com 158706.com 158780.com 158784.com 158782.com 158761.com 158719.com 158730.com 158773.com 158710.com 158770.com 158717.com 158797.com 158792.com 158703.com 158759.com 158697.com 158702.com 158695.com 158743.com 158741.com 158734.com 158714.com 158764.com 158744.com 158754.com 158645.com 158619.com 158643.com 158671.com 158676.com 158620.com 158640.com 158654.com 158635.com 158679.com 158674.com 158647.com 158670.com 158646.com 158684.com 158681.com 158687.com 04214.net 06493.net 09463.net 01047.net 08674.net 07674.net 06976.site 05723.site 02274.net 27357.net 25742.net 01389.net 02397.net 27427.net 29345.net 02314.net 20247.net 03976.net 01572.net 19879.net 19254.net 64773.net 25767.net 11647.net oqndsasqq.us jskadnqo.us 86559.net 69882.net 65220.net 93723.net 95223.net 168899.net 125889.net 52440.net 158822.win 135588.win 168899.win aiqiyi99.icu

Map

Whois Information

  • NetRange: 164.155.0.0 - 164.155.255.255
  • CIDR: 164.155.0.0/16
  • NetName: AFRINIC-164-155-0-0
  • NetHandle: NET-164-155-0-0-1
  • Parent: NET164 (NET-164-0-0-0-0)
  • NetType: Transferred to AfriNIC
  • OriginAS:
  • Organization: African Network Information Center (AFRINIC)
  • RegDate: 2005-02-21
  • Updated: 2005-02-21
  • Comment: This IP address range is under AFRINIC responsibility.
  • Comment: Please see http://www.afrinic.net/ for further details,
  • Ref: https://rdap.arin.net/registry/ip/164.155.0.0
  • OrgName: African Network Information Center
  • OrgId: AFRINIC
  • Address: Level 11ABC
  • Address: Raffles Tower
  • Address: Lot 19, Cybercity
  • City: Ebene
  • StateProv:
  • PostalCode:
  • Country: MU
  • RegDate: 2004-05-17
  • Updated: 2015-05-04
  • Comment: AfriNIC - http://www.afrinic.net
  • Comment: The African & Indian Ocean Internet Registry
  • Ref: https://rdap.arin.net/registry/entity/AFRINIC
  • OrgAbuseHandle: GENER11-ARIN
  • OrgAbuseName: Generic POC
  • OrgAbusePhone: +230 4666616
  • OrgAbuseEmail: abusepoc@afrinic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • OrgTechHandle: GENER11-ARIN
  • OrgTechName: Generic POC
  • OrgTechPhone: +230 4666616
  • OrgTechEmail: abusepoc@afrinic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • inetnum: 164.155.0.0 - 164.155.255.255
  • netname: SENTRACHEM
  • descr: Sentrachem Limited
  • descr: PO BOX 781811
  • descr: Sandton, 2146
  • country: ZA
  • org: ORG-SL72-AFRINIC
  • admin-c: ALH1-AFRINIC
  • tech-c: ALH1-AFRINIC
  • status: ASSIGNED PI
  • mnt-by: AFRINIC-HM-MNT
  • mnt-lower: AFRINIC-LH-MNT
  • parent: 0.0.0.0 - 255.255.255.255
  • organisation: ORG-SL72-AFRINIC
  • org-name: Sentrachem Limited
  • org-type: EU-PI
  • country: ZA
  • address: PO BOX 781811
  • address: Sandton, 2146
  • address: Johannesburg
  • phone: tel:+230-403-5100
  • admin-c: ALH1-AFRINIC
  • tech-c: ALH1-AFRINIC
  • mnt-ref: AFRINIC-HM-MNT
  • mnt-ref: AFRINIC-LH-MNT
  • mnt-by: AFRINIC-HM-MNT
  • role: AFRINIC LH HOSTMASTERS
  • address: 11th Floor, Standard Chartered Tower
  • address: 19, Cybercity
  • address: Ebène, Mauritius
  • admin-c: JC17-AFRINIC
  • tech-c: JC17-AFRINIC
  • tech-c: NMB1-AFRINIC
  • nic-hdl: ALH1-AFRINIC
  • mnt-by: AFRINIC-LH-MNT

Links to attack logs

****** ****** ******

Share on: