166.62.28.80 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 166.62.28.80 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Likely Malicious Host 🟠 55/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • JARM: 2ad2ad16d2ad2ad0002ad2ad2ad2ad783c15df386a8f7b030295f1ff4c2373

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: cleanmx_phishing, hphosts_psh

Malware Detected on Host

Count: 10 0d498896b598e75128143c13b355b2c952ee832bf4299bab868e7456d8f848c3 6edeee7be972a4a7c098c68ff5c5394379e84de6fc738bda9c15d2f8b0902a63 003b3d02d28a7f2d4f9095d9c190b3db4c11945829d0dc39888e8570482caf42 b0cf0d636f58a8f577fd64b6667da2286b6f197d4329536ce9df65e8fdd988fb 65b3a4047b80be90b6ef8324a56b1177930888063c1100c7d26e1a2813d94d08 e1a349d29d7448a8c8ced62b98e5bf7c006f69dfb0138fe261714cca6c1d80b6 063771b28a2241751015f6ac909736293526fac861b2c925c63c3ac86f4c18f6 2a6c567fc9f01e68bcde2d2f61bf3335e65198c09bb2200ac76f93ee23c90da5 3f3cf7cf108ee6346ec8626f69695954ae145a8bbee4038853be066db005ff0c 94dda517d97a89879622baee9ed6d35487632bc6809fe1717d3990b28c395a96

Open Ports Detected

443 80 993 995

CVEs Detected

CVE-2007-3205 CVE-2013-2220 CVE-2017-8923 CVE-2022-31628 CVE-2022-31629 CVE-2022-37454 CVE-2022-4900 CVE-2024-5458

Map

Whois Information

Links to attack logs

****** ****** ******

Share on: