185.213.165.49 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 185.213.165.49 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: Iran
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH

Malware Detected on Host

Count: 1 7113173dace66997cedfca43c84b62c196dc62cfa87a880c60900e9097c7caf4

Open Ports Detected

3306 443 587 80 8000 81 8282 8888 9002 9443

CVEs Detected

CVE-2007-3205 CVE-2013-2220 CVE-2016-10735 CVE-2018-14040 CVE-2018-14042 CVE-2018-20676 CVE-2018-20677 CVE-2019-8331 CVE-2021-41874 CVE-2024-11233 CVE-2024-11234 CVE-2024-11236 CVE-2024-21047 CVE-2024-21062 CVE-2024-21069 CVE-2024-21087 CVE-2024-21096 CVE-2024-21101 CVE-2024-21102 CVE-2024-21135 CVE-2024-21159 CVE-2024-21160 CVE-2024-21166 CVE-2024-21171 CVE-2024-3566 CVE-2024-6484 CVE-2024-8929 CVE-2024-8932 CVE-2025-1217 CVE-2025-1219 CVE-2025-1734 CVE-2025-1736 CVE-2025-1861

Map

Links to attack logs

bruteforce-ip-list-2025-07-18

Share on: