166.62.80.165 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 166.62.80.165 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • JARM: 07d14d16d21d21d07c42d43d0000009424803a662b126a748cf4f90707a33c

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: blocklist_net_ua, socks_proxy_30d, socks_proxy_7d

  • Country: United States
  • Network: AS26496 godaddy.com llc
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy
  • Passive DNS Results: www.triviopharmacy.com triviopharmacy.com stgrx.bexcodeservices.com myhealthvio.com www.myhealthvio.com www.triviohealth.com triviohealth.com www.bexfin.in bexfin.in staging.traxomed.com ravcare.com www.ravcare.com www.filrx.com filrx.com traxomed.com www.traxomed.com www.unlonely.life unlonely.life ecommerce.olamd.com tsp.bexcodeservices.com old.olamd.com looba.bexcodeservices.com practice.bexcodeservices.com staging.bexcodeservices.com www.bexcodeservices.com www.benasource.com staging.olamd.com smile.bexcodeservices.com www.basilindianbistro.com basilindianbistro.com www.litonrx.com www.rxcarespecialty.com www.montclairrx.com montclairrx.com hcc.bexcodeservices.com newlitonrx.bexcodeservices.com newbluerx.bexcodeservices.com www.bexcodeusa.com www.rxsubclub.com moegreens.bexcodeservices.com staging.ravkoo.com www.staging.ravkoo.com montclair.bexcodeservices.com smylstaging.bexcodeservices.com www.bluerx.health www.skycityrx.com www.olamd.com www.biowelllabs.com www.ladylakepharmacy.com ladylakepharmacy.com www.rxuptown.com newrxsubclub.bexcodeservices.com www.myravkoo.com stylehouse.bexcodeservices.com smylusaold.bexcodeservices.com burhman.bexcodeservices.com ravkoowp.bexcodeservices.com benzer2020.bexprstaging.com bonsastaging.bexprstaging.com dispense.bexprstaging.com www.pureplaisir.com www.pharmacyinauburndale.com www.pharmacyfranchisebusiness.com www.fvdrugs.com fvdrugs.com www.pharmacymountdora.com www.pharmacyinorlando.com www.thetandoors.com www.pharmacyintampa.com www.femininboost.com www.peshtigopharmacy.com labdigit.bexcodeservices.com uptown.bexcodeservices.com demo1.bexcodeservices.com demo.bexcodeservices.com www.shot.health shot.health hnattorneys.bexcodeservices.com biowell.bexcodeservices.com soundtools.bexprstaging.com rxcarespecialty.com smylusa.bexcodeservices.com wpsubclub.bexcodeservices.com wpshothealth.bexcodeservices.com rph.bexcodeservices.com newbonita.bexcodeservices.com rxsubclub.com bonita.bexcodeservices.com staging.moegreenssf.com newravkoo.bexcodeservices.com rxsubclub.bexcodeservices.com litonrx.bexcodeservices.com smylui.bexcodeservices.com bluerx.health biowelllabs.com medicap.bexprstaging.com present.bexcodeservices.com bex.bexcodeservices.com stagin.ravkoo.com www.stagin.ravkoo.com rxcare.health ravkoo.bexcodeservices.com www.shothealth.com smylusademo.bexcodeservices.com shothealth.com cpcontacts.ravkoo.com ravkoo.com benzhealth.bexprstaging.com benasource.bexprstaging.com benzer.bexprstaging.com cpcalendars.pinellasparkpharmacy.com pinellasparkpharmacy.com cpcontacts.pinellasparkpharmacy.com litonwp.bexcodeservices.com skycityrx.com shothealth.bexcodeservices.com rxuptown.com myravkoo.com olamd.com superiorcompounding.bexcodeservices.com litonrx.com cpcontacts.bexcodeusa.com cpcalendars.bexcodeusa.com bonsa.bexcodeservices.com bexcodeusa.com bonsahealth.bexprstaging.com cpcalendars.instic.health instic.health www.especial.bonitapharma.com especial.bonitapharma.com signup.bexprstaging.com oren.bexprstaging.com bonumhealth.bexprstaging.com benasource.com stagging.bonitapharma.com vg.bexprstaging.com frannkly.com bonsahealth.com bha.bexprstaging.com ad.bexprstaging.com osn1.com pharmacyintampa.com blog.benzerpharmacy.com pharmacyinauburndale.com pharmacyfranchisebusiness.com pharmacyinorlando.com staging.thetandoors.com ohm.bexcodeservices.com test.grnstore.com blog.grnstore.com staging.osn1.com news.benzerpharmacy.com mybuckrx.bexprstaging.com daviedrugs.bexprstaging.com bonitapharma.com franchise.bexprstaging.com dermserv.bexprstaging.com bonum.bexprstaging.com omshantisewa.com thetandoors.com pureplaisir.com femininboost.com staging.benzerpharmacy.com peshtigopharmacy.com franchiseblog.benzerpharmacy.com www.franchise.benzerpharmacy.com franchise.benzerpharmacy.com news.pharmacyfranchisebusiness.com staging.pharmacyinorlando.com restaging.pharmacyedge.com pharmacymountdora.com v2.benzerpharmacy.com blog.benzermedicalequipment.com blog.benzerspecialtypharmacy.com bexfin.com bexcodeservices.com bonumhealth.com

Open Ports Detected

2079 2082 2083 2086 2087 22 443 53 587 80 993 995

CVEs Detected

CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-12783 CVE-2020-15778 CVE-2020-28007 CVE-2020-28008 CVE-2020-28009 CVE-2020-28010 CVE-2020-28011 CVE-2020-28012 CVE-2020-28013 CVE-2020-28014 CVE-2020-28015 CVE-2020-28016 CVE-2020-28017 CVE-2020-28018 CVE-2020-28019 CVE-2020-28021 CVE-2020-28022 CVE-2020-28023 CVE-2020-28024 CVE-2020-28025 CVE-2020-28026 CVE-2020-8015 CVE-2021-27216 CVE-2021-36368 CVE-2022-37451 CVE-2022-37452

Map

Whois Information

  • NetRange: 166.62.0.0 - 166.62.127.255
  • CIDR: 166.62.0.0/17
  • NetName: GO-DADDY-COM-LLC
  • NetHandle: NET-166-62-0-0-1
  • Parent: NET166 (NET-166-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS26496
  • Organization: GoDaddy.com, LLC (GODAD)
  • RegDate: 2012-11-14
  • Updated: 2014-02-25
  • Comment: Please send abuse complaints to [email protected]
  • Ref: https://rdap.arin.net/registry/ip/166.62.0.0
  • OrgName: GoDaddy.com, LLC
  • OrgId: GODAD
  • Address: 2155 E GoDaddy Way
  • City: Tempe
  • StateProv: AZ
  • PostalCode: 85284
  • Country: US
  • RegDate: 2007-06-01
  • Updated: 2022-08-02
  • Comment: Please send abuse complaints to [email protected]
  • Ref: https://rdap.arin.net/registry/entity/GODAD
  • OrgAbuseHandle: ABUSE51-ARIN
  • OrgAbuseName: Abuse Department
  • OrgAbusePhone: +1-480-624-2505
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE51-ARIN
  • OrgTechHandle: NOC124-ARIN
  • OrgTechName: Network Operations Center
  • OrgTechPhone: +1-480-505-8809
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/NOC124-ARIN
  • OrgNOCHandle: NOC124-ARIN
  • OrgNOCName: Network Operations Center
  • OrgNOCPhone: +1-480-505-8809
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/NOC124-ARIN
  • RNOCHandle: NOC124-ARIN
  • RNOCName: Network Operations Center
  • RNOCPhone: +1-480-505-8809
  • RNOCEmail: [email protected]
  • RNOCRef: https://rdap.arin.net/registry/entity/NOC124-ARIN
  • RAbuseHandle: ABUSE51-ARIN
  • RAbuseName: Abuse Department
  • RAbusePhone: +1-480-624-2505
  • RAbuseEmail: [email protected]
  • RAbuseRef: https://rdap.arin.net/registry/entity/ABUSE51-ARIN
  • RTechHandle: NOC124-ARIN
  • RTechName: Network Operations Center
  • RTechPhone: +1-480-505-8809
  • RTechEmail: [email protected]
  • RTechRef: https://rdap.arin.net/registry/entity/NOC124-ARIN

Links to attack logs

anonymous-proxy-ip-list-2023-07-02