185.42.12.45 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 185.42.12.45 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 24/100

Host and Network Information

  • Country: Russia
  • Network:
  • Noticed: 2 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: 15805.aqq.ru xn–b1aecabq7ae9b9a8g.xn–p1ai veneziadent.ru

Malware Detected on Host

Count: 4626 2ccc15a280541baa41a6c1a91106823124e1e49dd4a7329e22ca234288cf89fd ff670cf0c8981fbeb68eaca91bfe98d054d55dc7c44b7aeb4efafd135824d6ae 410258d6b2bc74ed376f538610e82080e4e0bdce6fa8c0f2851ea62c31ec058e 20c8a30b84804002287372c6beae472b632a10221e3c30ff7db78bbdbb1bff87 b4c39ea0fd3e12809081ea25b7f480db618e1e6c9e2080b911547ec6b3bbabf7 8ed78e268bc4246e5c18ec1bd004e0811fd0e8c750b144b75cd78577536d0016 29835b1fa7cc9167b927785357da5d481d68f142dc73a5a9740f182e4567cbc8 e702719f06a60ac41cd1dba68442cacb22edbd2acb21e85ba2edbe656a309ab5 a8dffaea365453ea241877920b20e58f0d12858208cf910bbc70f6ed01dd352b 5c36cd6a607a1a38d12c28cf0bcbde2f129938c7fe07c256644fb7638354d4cc

Open Ports Detected

22 33022 33060 33122 33222 33322 33422 33522 33622 33722 33822 33922 34022 34222 34422 34522 34722 34922 35002 35101 35122 35222 35322 35422 35522 35554 35559 35622 35722 35922 36022 36122 36222 36422 36505 36522 36622 36722 37022 37122 37222 37322 37422 37443 37522 37622 37777 37822 37922 38022 38122 38222 38322 38333 38520 38522 38622 38722 38822 38880 38922 39022 39122 39222 39322 39422 39522 39622 39922 400 40022 40122 40222 40522 40622 40722 41122 41222 41443 41522 41800 41922 42122 42222 42422 427 42901 42922 43221 43322 43422 43522 43622 43822 43922 44022 44100 44122 44158 442 443 44301 44305 44307 44310 44322 444 44422 44520 44622 44722 44818 44922 45022 45039 45122 45222 45322 45522 45622 45667 45777 45788 45822 45922 46022 46122 46222 46422 46522 46622 46922 47000 47001 47080 47122 47222 47322 47422 47522 47622 47722 47989 48013 48019 48022 48222 48322 48422 48622 48722 48822 48888 48899 48922 49022 49153 49222 49422 49622 49686 49690 49722 49767 49822 50000 50009 50022 50050 50070 50104 50106 50122 50160 50222 50422 50443 50805 50922 50999 51004 51007 51235 51434 51443 52022 52200 52340 52869 52931 53022 53490 53806 54138 54922 55022 55222 55388 55422 55442 55443 55470 55522 55553 55554 55622 55722 55822 57722 57783 57786 57822 57922 58000 58122 58222 58322 58378 58422 58522 58822 58922 59022 59122 59222 59322 59522 60001 60021 60030 60102 60129 60443 61613 62078 63210 63256 63257 63260 63443 64295 64477 64683

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2019-16905 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465

Map

Links to attack logs

anonymous-proxy-ip-list-2025-01-27 anonymous-proxy-ip-list-2025-01-17 anonymous-proxy-ip-list-2025-02-11

Share on: