176.65.132.231 Threat Intelligence and Host Information

General

IP Address
176.65.132.231
IPv4 Address
Location
🇩🇪 Germany
DE
Network
AS56325
Diogelo Ltd.
Threat Score
44/100
Medium Risk
2026-0232-bitarmAsyncRATAutomatedbackdoorbinbotnet
Attack Intelligence
Open Ports Detected
22
Geographic Location
Country
Germany
City
Unknown
Region
Unknown
Coordinates
51.2993, 9.4910
Network Information
ASN
AS56325
Organization
Diogelo Ltd.
Network
AS56325 Diogelo Ltd.
WHOIS Information
inetnum
176.65.132.0 - 176.65.132.255
netname
VMHeaven
country
NL
admin-c
AA45092-RIPE
tech-c
AA45092-RIPE
geofeed
https://api.geofeed.space/pfcloud/geofeed.txt
org
ORG-VA33504-RIPE
status
ASSIGNED PA
mnt-by
MNT-ZEXOTEK
created
2025-09-08T10:53:24Z
last-modified
2025-09-08T10:53:24Z
organisation
ORG-VA33504-RIPE
org-name
VMHeaven.io
org-type
OTHER
address
abuse@vmheaven.io
abuse-c
AA45188-RIPE
mnt-ref
MNT-ZEXOTEK
role
Abuse
abuse-mailbox
abuse@vmheaven.io
nic-hdl
AA45092-RIPE
route
176.65.132.0/24
origin
AS51396

  • Country: Germany
  • Network:
  • Noticed: 13 times
  • Protocols Attacked: portscan

Malware Detected on Host

Count: 4 8a3b0e6b787c06aa46539dd6806b5298837a38eba35895c7896f7f9130f95ae5 c81cdcd75ecf84badd3fb4bb7004f3e2ad78cb95a5fdb0e70cc1bbd6b1f0da70 73266f24d74cea9b8e2781db83b5d1d8d2755d214339dcfdcf5772fd1f2d540d a2f32f4ce7a996c90f7facdda4591be7a2f56d5eaf527b5a5a81bc1ad78b60d7

CVEs Detected

CVE-2023-44487 CVE-2025-23419

Share on:
Disclaimer
This page contains threat intelligence information for the IPv4 address 176.65.132.231 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.