181.214.231.148 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 35/100

Host and Network Information

  • Mitre ATT&CK IDs: T1110 - Brute Force
  • Tags: Brute-Force, Bruteforce, SSH, brute force, digital ocean, rdp, scanners, ssh, vultr
  • View other sources: Spamhaus VirusTotal

  • Country: United Kingdom of Great Britain and Northern Ireland
  • Network: AS211301 collin schneeweiss
  • Noticed: 13 times
  • Protcols Attacked: ssh
  • Countries Attacked: Australia, Canada, Spain
  • Passive DNS Results: boa.cryptedmoon.systems unesty.gameserver-control.de x.seru.cc

Malware Detected on Host

Count: 1 74137a8aebb4ce30daedbb79731c293ec494f62967b4f8d546670bca0be4a7c4

Open Ports Detected

22 25565 8443

Map

Whois Information

  • inetnum: 181.214.231.0 - 181.214.231.255
  • netname: Unesty
  • org: ORG-UC62-RIPE
  • country: DE
  • admin-c: NOC834
  • tech-c: NOC834
  • abuse-c: IPXO834
  • status: SUB-ALLOCATED PA
  • mnt-by: IPXO-MNT
  • created: 2022-03-02T15:04:09Z
  • last-modified: 2022-04-25T11:35:42Z
  • organisation: ORG-UC62-RIPE
  • org-name: Unesty Company
  • org-type: OTHER
  • address: Geschwister-Scholl-Platz, 09648 Mittweida, Germany
  • abuse-c: ACRO41149-RIPE
  • mnt-ref: IPXO-MNT
  • mnt-by: UNESTY-MNT
  • created: 2022-04-23T13:50:28Z
  • last-modified: 2022-04-23T13:50:28Z
  • role: IPXO Admin/Tech Contact
  • address: Ground Floor, 4 Victoria Square, St Albans, Hertfordshire, AL1 3TF, UK
  • nic-hdl: NOC834
  • mnt-by: IPXO-MNT
  • created: 2021-07-27T09:53:47Z
  • last-modified: 2021-07-29T08:24:01Z
  • route: 181.214.231.0/24
  • origin: AS211301
  • mnt-by: IPXO-MNT
  • created: 2022-03-02T14:54:15Z
  • last-modified: 2022-03-02T14:54:15Z

Links to attack logs

vultrmadrid-ssh-bruteforce-ip-list-2023-04-07 dotoronto-ssh-bruteforce-ip-list-2023-04-04