185.67.211.98 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 185.67.211.98 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: Spain
  • Network: AS29119 servihosting networks s.l.
  • Noticed: 1 times
  • Protcols Attacked: ssh

Open Ports Detected

10001 10134 102 1022 10243 1025 1027 104 10554 1099 11 110 11000 11112 113 1153 1200 12000 1250 13 1311 13579 1400 14265 143 14344 1471 1494 1521 16010 1604 16992 17 17000 1741 175 179 1800 1801 18081 1883 19 19000 19071 1925 1935 195 1962 2000 20000 2002 2006 2008 2054 20547 2067 2068 2081 2082 2086 21 21025 2121 21379 2181 22 221 2222 2232 23 23023 2332 2404 2455 2480 25 25001 25105 2548 25565 2560 2572 26 264 2701 27015 2762 28015 3000 30002 30003 3001 3002 3049 3050 3060 3062 3068 3069 3072 3073 3075 3078 3080 3091 3107 3118 3260 3268 32764 3299 3301 3306 33060 3405 35000 3541 3542 3551 3689 37215 3749 37777 3780 3838 389 4022 4040 4063 4117 41800 4242 427 4282 43 4321 44158 44818 4500 4505 4506 4567 465 4664 4782 4786 4840 4848 4899 4911 49152 4949 5000 50000 5005 50050 5007 5010 502 5025 5090 51106 51235 51256 515 5172 5201 5222 5269 53 5357 5400 5432 5435 548 55000 554 5555 55554 5560 5601 5603 5858 5901 5910 593 5938 5984 5985 6000 60001 6001 60030 6080 6161 61613 61616 6262 636 6379 6543 6550 6603 6633 666 6664 6666 6667 6697 675 6998 70 7000 7003 7080 7090 7415 7433 7443 7474 7547 7634 771 7779 789 79 7989 80 8000 8001 8007 8008 801 8010 8022 8026 8037 8055 8080 8085 8086 8087 8090 8098 8099 8108 8112 8123 8139 8143 82 8200 8248 83 8334 8383 84 8500 8554 8575 86 8623 8649 8728 8765 8767 88 8800 8819 8840 8857 8861 8876 8888 8993 9005 9020 9023 9031 9036 9039 9040 9042 9047 9051 9080 9092 9151 9191 9200 9206 9210 9212 9215 9295 9302 9306 9418 9445 96 9704 9761 992 9944 9981 9997 9998 9999

Map

Whois Information

  • inetnum: 185.67.211.0 - 185.67.211.255
  • netname: MolinaFTTH
  • country: ES
  • geoloc: 38.0875245 -1.1757839
  • admin-c: ARM112-RIPE
  • tech-c: ARM112-RIPE
  • status: ASSIGNED PA
  • mnt-by: ONLYCABLE-MNT
  • created: 2017-09-21T07:52:17Z
  • last-modified: 2020-07-28T08:29:47Z
  • person: Adrian Ruiz Marcet
  • address: Telecartagena
  • address: Calle Carmen Conde 4, 30204 - Cartagena - Murcia
  • phone: +34 602 21 86 68
  • nic-hdl: ARM112-RIPE
  • mnt-by: ONLYCABLE-MNT
  • created: 2018-11-21T09:07:19Z
  • last-modified: 2018-11-21T09:07:19Z
  • route: 185.67.211.0/24
  • origin: AS29119
  • mnt-by: ONLYCABLE-MNT
  • mnt-by: SERVIHOSTING-MNT
  • created: 2017-09-21T07:42:59Z
  • last-modified: 2017-09-21T07:42:59Z

Links to attack logs

digitaloceanlondon-ssh-bruteforce-ip-list-2023-09-19