170.64.169.240 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 170.64.169.240 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Tags: auto-generated security, Bruteforce, Brute-Force, SSH

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network:
  • Noticed: 32 times
  • Protocols Attacked: ssh

Open Ports Detected

10001 10004 10007 10009 10011 10013 10016 10019 1002 10020 10021 10022 10028 10034 10134 102 10201 10205 10209 10210 1023 1024 1027 10324 104 106 10909 10911 10934 110 11000 11002 1103 111 11112 11210 11211 113 11300 11401 11434 11601 11920 1200 1207 121 122 1234 1311 1337 135 139 1400 1414 1433 1604 1605 1723 1741 1800 1801 1830 1911 1925 1926 1935 2000 2002 2003 2008 2021 2030 21 2101 2107 2121 22 2200 221 2210 2221 2222 2224 2233 23 2323 2332 24 2404 25 26 2628 3001 3006 3008 3009 3011 3013 3014 3015 3016 3017 3105 3108 3109 311 3110 3112 3125 3126 3128 3131 3132 3137 314 3140 3301 3306 3310 3333 3341 3389 340 3401 3404 3406 3412 3500 3523 3524 3541 3542 3910 400 4000 4002 4021 4022 4023 4040 4242 427 4321 440 4402 441 443 4431 4433 4434 4435 4437 4438 4439 45000 45006 4506 4524 4531 4602 4620 4734 4840 4911 5000 5001 5002 5003 5005 5006 5007 5009 502 5025 503 5100 513 5130 5140 515 5201 5222 5223 5236 5238 5240 5242 5321 541 5432 5433 5435 5500 5600 5601 5605 5606 5607 5608 5640 5701 5800 5801 5804 5900 5901 5902 5907 5910 5914 5915 5917 5920 6000 6001 6002 6003 6004 6006 6007 6036 6100 6308 631 6331 6400 6432 6433 6513 66 6601 6633 7001 7002 7003 7011 7014 7016 7018 7022 7102 7218 7302 7415 7434 7500 7510 7634 8000 8001 8009 8010 8011 8018 8020 8022 8025 8029 8033 8034 8038 8042 809 8100 8102 8104 8105 8110 8111 8112 8114 8117 8118 8121 8123 8124 8126 8128 8137 8139 8140 8142 8200 8239 830 8300 831 8333 8334 8404 8406 8407 8411 8414 8416 8421 8423 8427 8428 8432 8435 8503 8510 8513 8519 8520 8524 8529 8531 8540 8606 8621 8622 8630 8705 8709 8724 8732 8733 88 8803 8808 8811 8815 8818 8821 8824 8825 8828 8830 8832 8834 8841 888 8905 8907 8908 8916 8935 9000 9002 9016 9017 9018 902 9022 9024 9030 9031 9041 9042 9100 9102 9104 9106 9109 9111 9120 9121 9125 9128 9130 9137 9139 9200 9203 9206 9208 9209 9211 9218 9219 9222 9223 9230 9236 9304 9306 9312 9313 9315 9418 9441 9500 9507 9527 9530 9532 9600 9606 9710 9734 9800 9804 9811 9908 9918 9923 9926 9930 9999

CVEs Detected

CVE-2009-2940 CVE-2009-3720 CVE-2020-29396 CVE-2021-32052 CVE-2023-27043 CVE-2023-30861 CVE-2023-36632 CVE-2024-6232 CVE-2024-7592 CVE-2024-9287

Map

Whois Information

Links to attack logs

****** digitaloceanfrankfurt-ssh-bruteforce-ip-list-2023-08-08 ****** ******

Share on: