173.212.224.128 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 35/100

Host and Network Information

  • Tags: Malicious IP, RDP, Scanner, Webattack, admin, blacklist, botnet, kfsensor, mirai, nmap, port-scan, rdp, scan, scanning, smtp, ssh, tcp, win, windows
  • View other sources: Spamhaus VirusTotal

  • Country: Germany
  • Network: AS51167 contabo gmbh
  • Noticed: 40 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia, Germany
  • Passive DNS Results: singhjain.com www.singhjain.com drcnspharmacy.com drcmcpharmacy.com knycpharmacy.com pplkttcollege.com skcgroup.org.in amainfra.com didpl.com bhoomiecogreen.com kalyaniintercollege.com astotram.com www.winyhealthcare.com environmentaltechno.com unnatiawasyojna.com carakeshagra.com ramsinghenggcollege.com rkgmitm.com winyhealthcare.com footintouch.com hoteltriple-t.in careerevenue.com avdhservices.com hubitpharma.com trip4leisure.com srissdc.in globeagra.in rokhelfinance.com balmahilavikassamiti.org svplifescience.com shikohabaddps.in gayatrimahavidyalay.com hotelmonark.in kohinoorchains.com foodtechconsults.com vinayakeducation.org sksindustrialservice.com michoto.com radhaswaminidhi.com himalayameditek.com www.tvslabs.in tvslabs.in hsbcollegebhargain.org anttcollege.com sskmagra.com ns2.footintouch.com ns1.footintouch.com rsgmahavidhyalay.org phpmyadmin.krs.cloud testticket.krs.cloud multicraft.krs.cloud ns2.krs.cloud ns1.krs.cloud testforum.krs.cloud krs.cloud secure.krs.cloud gamma.krs.cloud mail.krs.cloud

Open Ports Detected

135 1433 21 3389 445 53 80

Map

Whois Information

  • NetRange: 173.212.192.0 - 173.212.255.255
  • CIDR: 173.212.192.0/18
  • NetName: RIPE
  • NetHandle: NET-173-212-192-0-1
  • Parent: NET173 (NET-173-0-0-0-0)
  • NetType: Early Registrations, Transferred to RIPE NCC
  • OriginAS:
  • Organization: RIPE Network Coordination Centre (RIPE)
  • RegDate: 2016-06-20
  • Updated: 2016-06-20
  • Ref: https://rdap.arin.net/registry/ip/173.212.192.0
  • OrgName: RIPE Network Coordination Centre
  • OrgId: RIPE
  • Address: P.O. Box 10096
  • City: Amsterdam
  • StateProv:
  • PostalCode: 1001EB
  • Country: NL
  • RegDate:
  • Updated: 2013-07-29
  • Ref: https://rdap.arin.net/registry/entity/RIPE
  • OrgAbuseHandle: ABUSE3850-ARIN
  • OrgAbuseName: Abuse Contact
  • OrgAbusePhone: +31205354444
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN
  • OrgTechHandle: RNO29-ARIN
  • OrgTechName: RIPE NCC Operations
  • OrgTechPhone: +31 20 535 4444
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN
  • inetnum: 173.212.224.0 - 173.212.255.255
  • netname: CONTABO
  • descr: Contabo GmbH
  • country: DE
  • org: ORG-GG22-RIPE
  • admin-c: MH7476-RIPE
  • tech-c: MH7476-RIPE
  • status: ASSIGNED PA
  • mnt-by: MNT-CONTABO
  • created: 2018-08-20T08:39:36Z
  • last-modified: 2018-08-20T08:39:36Z
  • organisation: ORG-GG22-RIPE
  • org-name: Contabo GmbH
  • country: DE
  • org-type: LIR
  • address: Aschauer Strasse 32a
  • address: 81549
  • address: Munchen
  • address: GERMANY
  • phone: +498921268372
  • fax-no: +498921665862
  • abuse-c: MH12453-RIPE
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: MNT-CONTABO
  • mnt-ref: MNT-OCIRIS
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: MNT-CONTABO
  • created: 2009-12-09T13:41:08Z
  • last-modified: 2021-09-14T10:49:04Z
  • person: Wilhelm Zwalina
  • address: Contabo GmbH
  • address: Aschauer Str. 32a
  • address: 81549 Muenchen
  • phone: +49 89 21268372
  • fax-no: +49 89 21665862
  • nic-hdl: MH7476-RIPE
  • mnt-by: MNT-CONTABO
  • mnt-by: MNT-GIGA-HOSTING
  • created: 2010-01-04T10:41:37Z
  • last-modified: 2020-04-24T16:09:30Z
  • route: 173.212.224.0/20
  • descr: CONTABO
  • origin: AS51167
  • mnt-by: MNT-CONTABO
  • created: 2019-01-16T08:21:37Z
  • last-modified: 2019-01-16T08:21:37Z

Links to attack logs

nmap-scanning-list-2022-02-04 nmap-scanning-list-2022-02-05