178.63.97.34 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 178.63.97.34 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 50/100

Host and Network Information

  • Tags: Nextray, TOR, VPN, cyber security, ioc, malicious, phishing

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: cruzit_web_attacks, sblam, stopforumspam, stopforumspam_180d, stopforumspam_365d, stopforumspam_90d

  • Country: Germany
  • Network: AS24940 hetzner online gmbh
  • Noticed: 1 times
  • Protcols Attacked: spam
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: tor-exit-01.thehappy3.com

Malware Detected on Host

Count: 82 88b1bce77224b65d170347ca3fff5e24850a5a6b4f9a9e14efc49af32aa4ed9c e9e0d434434317280e474dedd4a72f60a9136153acea4d8e8ac64d77ddc25b38 93aef92cc8fa80c132df5dd9d8cea79e65ea133fa07b8faa6efd209bdedb71ee 2fd353ffcace535b5c0cdd3b70784bcbf1d4e35879a3109ed8825c2f970d22d3 7282e2fdb25b07554b082f5cf1697315ed5ce3005f985cbe96a34da965869db5 bf9b4c6cb80c50c42c8f12c10bd6f9983d6705ce14a779e1192ac14f277e0729 141a5aed5e54d3b70c3ad42560cb764c269a83e99f2e57437f00430b5eeb5514 ec43e150012d049bbdf9a552c9a466482c628db8b981064584998a97d2662914 2ce399a329b20c97bec49d1ecd1315aca646c5a0dd95e4b9bbffc9b52a9a528d a896be5e1f5b7d498d6556c9d64fe6407b70360e36dd3f47ee46da9367748ff6

Map

Whois Information

  • inetnum: 178.63.97.0 - 178.63.97.63
  • netname: HETZNER-fsn1-dc3
  • descr: Hetzner Online GmbH
  • descr: Datacenter fsn1-dc3
  • country: DE
  • admin-c: HOAC1-RIPE
  • tech-c: HOAC1-RIPE
  • status: ASSIGNED PA
  • mnt-by: HOS-GUN
  • mnt-lower: HOS-GUN
  • mnt-routes: HOS-GUN
  • created: 2010-08-17T19:00:19Z
  • last-modified: 2018-03-15T13:50:10Z
  • role: Hetzner Online GmbH - Contact Role
  • address: Hetzner Online GmbH
  • address: Industriestrasse 25
  • address: D-91710 Gunzenhausen
  • address: Germany
  • phone: +49 9831 505-0
  • fax-no: +49 9831 505-3
  • abuse-mailbox: [email protected]
  • org: ORG-HOA1-RIPE
  • admin-c: MH375-RIPE
  • tech-c: GM834-RIPE
  • tech-c: SK2374-RIPE
  • tech-c: MF1400-RIPE
  • tech-c: SK8441-RIPE
  • tech-c: DD15478-RIPE
  • nic-hdl: HOAC1-RIPE
  • mnt-by: HOS-GUN
  • created: 2004-08-12T09:40:20Z
  • last-modified: 2022-11-22T18:33:55Z
  • route: 178.63.0.0/16
  • descr: HETZNER-RZ-FKS-BLK2
  • origin: AS24940
  • org: ORG-HOA1-RIPE
  • mnt-by: HOS-GUN
  • created: 2010-03-02T13:44:55Z
  • last-modified: 2010-03-02T13:44:55Z
  • organisation: ORG-HOA1-RIPE
  • org-name: Hetzner Online GmbH
  • country: DE
  • org-type: LIR
  • address: Industriestrasse 25
  • address: D-91710
  • address: Gunzenhausen
  • address: GERMANY
  • phone: +49 9831 5050
  • fax-no: +49 9831 5053
  • admin-c: MF1400-RIPE
  • admin-c: GM834-RIPE
  • admin-c: HOAC1-RIPE
  • admin-c: MH375-RIPE
  • admin-c: SK2374-RIPE
  • admin-c: SK8441-RIPE
  • abuse-c: HOAC1-RIPE
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: HOS-GUN
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: HOS-GUN
  • created: 2004-04-17T11:07:58Z
  • last-modified: 2022-11-22T18:32:44Z

Links to attack logs

forum-spam-ip-list-2013-11-27