185.245.104.75 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 185.245.104.75 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 42/100
Host and Network Information
-
Tags: 01.10.2025, 2025, cisco, cowrie, dionaea, HoneyNet Connect, honeytrap, LAMP, malicious, sentrypeer, sftp, sip, ssh, tanner
-
View other sources: Spamhaus VirusTotal
- Country: Germany
- Network:
- Noticed: 4 times
- Protocols Attacked: web
- Countries Attacked: Finland, France, Germany, Poland, United States of America
Open Ports Detected
123 5555 5556 5560 5601 5603 5606 5673 5696 5800 5801 5804 5822 5858 5901 5904 5912 5915 5920 5938 5984 5985 5986 5995 5999 6000 6001 6002 6007 6022 6060 6070 6080 6134 6379 6400 6432 6440 6443 6482 6500 6512 6550 7012 7070 7083 7445 7493 80
CVEs Detected
Map
Whois Information
- inetnum: 185.245.104.0 - 185.245.104.255
- netname: VDSINA
- country: NL
- geoloc: 52.309711 4.935438
- descr: Amsterdam, Netherlands
- geofeed: https://vdsina.com/geofeed_as216071.csv
- org: ORG-STF2-RIPE
- admin-c: SK15998-RIPE
- tech-c: SK15998-RIPE
- status: ASSIGNED PA
- mnt-by: vdsina-mnt
- created: 2024-08-22T11:45:01Z
- last-modified: 2024-08-22T11:45:01Z
- organisation: ORG-STF2-RIPE
- org-name: SERVERS TECH FZCO
- country: AE
- org-type: LIR
- address: Ifza Business Park DDP, Building 1, office number 36298-001
- address: 336469
- address: Dubai
- address: UNITED ARAB EMIRATES
- phone: +971524526969
- admin-c: SK15998-RIPE
- tech-c: SK15998-RIPE
- abuse-c: AR72995-RIPE
- mnt-by: RIPE-NCC-HM-MNT
- mnt-by: servers-tech-mnt
- created: 2023-10-25T09:55:19Z
- last-modified: 2025-11-07T08:22:27Z
- mnt-ref: servers-tech-mnt
- role: SERVERS TECH FZCO
- address: UNITED ARAB EMIRATES
- address: Dubai
- address: 336469
- address: Ifza Business Park DDP, Building 1, office number 36298-001
- nic-hdl: SK15998-RIPE
- mnt-by: lir-ae-servers-tech-1-MNT
- created: 2023-10-25T09:55:18Z
- last-modified: 2024-07-10T12:05:37Z
- route: 185.245.104.0/24
- origin: AS216071
- mnt-by: servers-tech-mnt
- created: 2024-08-22T11:45:03Z
- last-modified: 2024-08-22T11:45:03Z
Links to attack logs
cfglobal-web-bruteforce-ip-list-2026-03-04
Share on: