189.124.118.249 Threat Intelligence and Host Information

General

IP Address
189.124.118.249
IPv4 Address
Location
🇧🇷 Orleans, Brazil
BR
Network
AS28292
ENGEPLUS INFORMATICA LTDA
Threat Score
48/100
Medium Risk
bruteforceBruteforceBrute-Forcescansipsipviciousssh
Attack Intelligence
MITRE ATT&CK Techniques
T1110 - Brute Force, T1595 - Active Scanning
Open Ports Detected
4002
Geographic Location
Country
Brazil
City
Orleans
Region
Santa Catarina
Coordinates
-28.3001, -49.3542
Network Information
ASN
AS28292
Organization
ENGEPLUS INFORMATICA LTDA
Network
AS28292 ENGEPLUS INFORMATICA LTDA
WHOIS Information
inetnum
189.124.112.0/20
aut-num
AS28292
abuse-c
ENI23
owner
ENGEPLUS INFORMATICA LTDA
ownerid
80.995.822/0001-99
responsible
Engeplus Internet
country
BR
owner-c
ENI23
tech-c
ENI23
inetrev
189.124.112.0/20
nserver
ns3.engeplus.com.br
nsstat
20250418 AA
nslastaa
20250418
created
20060529
changed
20230823
nic-hdl-br
ENI23
person
Engeplus Internet
e-mail
registrobr@engeplus.com.br
Attack Logs
Date Target Location Protocol Link
2025-04-20 Perth, Australia MULTIPLE View Log

  • Country: Brazil
  • Network:
  • Noticed: 4 times
  • Protocols Attacked: SSH
  • Countries Attacked: Australia

CVEs Detected

CVE-2015-9251 CVE-2019-11358 CVE-2020-11022 CVE-2020-11023 CVE-2024-23897

Disclaimer
This page contains threat intelligence information for the IPv4 address 189.124.118.249 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.