181.50.200.126 Threat Intelligence and Host Information

General

IP Address
181.50.200.126
IPv4 Address
Location
🇨🇴 Santiago de Cali, Colombia
CO
Network
AS10620
Telmex Colombia S.A.
Threat Score
65/100
High Risk
bruteforceBruteforceBrute-ForcecowriescannerssshSSH
Attack Intelligence
MITRE ATT&CK Techniques
T1078 - Valid Accounts, T1083 - File and Directory Discovery, T1098.004 - SSH Authorized Keys, T1105 - Ingress Tool Transfer, T1110.004 - Credential Stuffing, T1110 - Brute Force
Open Ports Detected
1701
Geographic Location
Country
Colombia
City
Santiago de Cali
Region
Departamento del Valle del Cauca
Coordinates
3.4129, -76.5191
Network Information
ASN
AS10620
Organization
Telmex Colombia S.A.
Network
AS10620 Telmex Colombia S.A.
WHOIS Information
inetnum
181.48.0.0/13
status
allocated
aut-num
N/A
owner
Telmex Colombia S.A.
ownerid
CO-ACSA-LACNIC
responsible
Operaciones Core IP
address
111321 - Bogota - DC
country
CO
phone
+57 017480456 [81966]
owner-c
ATI
tech-c
ATI
abuse-c
ATI
inetrev
181.55.0.0/16
nserver
NS2.TELMEXLA.NET.CO
nsstat
20240623 AA
nslastaa
20240623
created
20020909
changed
20240228
nic-hdl
ATI
person
Network Security Team
e-mail
ivan.pernett@claro.com.co
Attack Logs
Date Target Location Protocol Link
2024-04-26 London, UK SSH View Log

  • Country: Colombia
  • Network: AS10620 telmex colombia s.a.
  • Noticed: 22 times
  • Protocols Attacked: ssh
  • Countries Attacked: Australia, France, Spain

CVEs Detected

CVE-2007-4723 CVE-2009-0796 CVE-2009-2299 CVE-2011-1176 CVE-2011-2688 CVE-2012-3526 CVE-2012-4001 CVE-2012-4360 CVE-2013-0941 CVE-2013-0942 CVE-2013-2765 CVE-2013-4365

Disclaimer
This page contains threat intelligence information for the IPv4 address 181.50.200.126 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.