190.2.134.28 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 190.2.134.28 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 43/100
Host and Network Information
-
Tags: cisco, conpot, cowrie, dionaea, email, heralding, honeytrap, LAMP, mailoney, malicious, sentrypeer, sftp, sip, ssh, tanner
-
View other sources: Spamhaus VirusTotal
- Country: Netherlands
- Network:
- Noticed: 4 times
- Protocols Attacked: Anonymous Proxy
Open Ports Detected
11000 11082 11112 11182 11211 11288 11300 11371 11401 11434 11480 11601 11688 11701 11920 12000 12019 12084 12088 12107 12110 12114 12116 12121 12125 12129 12134 12135 12136 12138 12142 12144 12146 12152 12165 12171 12176 12179 12184 12191 12192 12200 12204 12207 12209 12222 12224 12226 12230 12234 12237 12243 12245 12246 12252 12255 12260 12265 12266 12267 12269 12271 12273 12279 12291 12292 12295 12296 12300 12302 12305 12313 12318 12321 12326 12343 12345 12349 12350 12354 12356 12357 12358 12377 12378 12379 12383 12385 12397 12410 12414 12421 12424 12426 12430 12438 12441 12442 12447 12448 12449 12451 12468 12472 12473 12475 12477 12479 12483 12492 12494 12497 12517 12524 12526 12536 12570 12576 12578 12585 12586 12587 13001 13228 13443 13579 14082 14084 14101 14147 14182 14330 14344 14403 14523 14825 14895 15001 15040 15042 16005 16037 161 22 4150 8101 91
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2019-16905 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728
Map
Whois Information
- inetnum: 190.2.128.0/20
- status: reallocated
- aut-num: N/A
- owner: WorldStream B.V.
- ownerid: NL-WOBV-LACNIC
- responsible: WorldStream B.V.
- address: Industriestraat, 24, -
- address: 2671CT - Naaldwijk -
- country: NL
- phone: +31 017471211 [0000]
- owner-c: WLB5
- tech-c: WOB2
- abuse-c: WOB2
- inetrev: 190.2.128.0/20
- nserver: NS1.WORLDSTREAM.NL
- nsstat: 20250904 AA
- nslastaa: 20250904
- nserver: NS2.WORLDSTREAM.COM
- nsstat: 20250904 AA
- nslastaa: 20250904
- dszone: 128.2.190.in-addr.arpa
- dsrecord: 49784 ECDSAP256SHA256 664EB45D5CB030D95182855E0FC60B82629314C5BD3BEC1E78FA9A2D13864F92
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 142.2.190.in-addr.arpa
- dsrecord: 20362 ECDSAP256SHA256 564E48585F7810E27BEA4526EA527C16F7A4B331BC39C531A770A345FCE60257
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 141.2.190.in-addr.arpa
- dsrecord: 16469 ECDSAP256SHA256 99A3D5A9BCB439E1A216EF6D7E1B4E495CE7891406F2D80B56CC524BD74E7110
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 140.2.190.in-addr.arpa
- dsrecord: 21493 ECDSAP256SHA256 2C96FB9F493AD5CD02F91759FE9CC1A0082B63FF3A432C171CDEA4A7217DC1A6
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 139.2.190.in-addr.arpa
- dsrecord: 53330 ECDSAP256SHA256 A6007C87BE02F1488AAB9033543000D4341023A7FE21C59BBE668BA0B1FFCF9C
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 138.2.190.in-addr.arpa
- dsrecord: 22016 ECDSAP256SHA256 9FBD75C8FE903F90F4C201EAFC03093EA1C20A60545D27CF8E3D7A7B91CD0C5B
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 137.2.190.in-addr.arpa
- dsrecord: 38692 ECDSAP256SHA256 13DC85F3847187401594D324249AEF2391A72F124B26D3B6735BF1CCAF1F2B59
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 136.2.190.in-addr.arpa
- dsrecord: 59258 ECDSAP256SHA256 2E3B8B6147BBE97999132ABE9F49AA4CCBB23E0C422824A46298A416DB97F0A7
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 135.2.190.in-addr.arpa
- dsrecord: 55455 ECDSAP256SHA256 EBE77CB1DF8EF216928B7AC9AB128BF66EB8C32FCB7B68D0402592EF1DE8CF7F
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 134.2.190.in-addr.arpa
- dsrecord: 5347 ECDSAP256SHA256 D841B3953BBD5F8BEAE85773785C26DE6C06AE58AD5E4A338CBC8F6C7B3D12D8
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 133.2.190.in-addr.arpa
- dsrecord: 5216 ECDSAP256SHA256 FE64092E4B44532A0AFAE38DCD71FC44C4F6FCA4128195DF43DB220E029EEF18
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 132.2.190.in-addr.arpa
- dsrecord: 18602 ECDSAP256SHA256 CA0BCAF16E1E7EDA9718F9C9592E8D0D738006708E14669F05909E30422A6BC6
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 131.2.190.in-addr.arpa
- dsrecord: 49301 ECDSAP256SHA256 DD49746E7225C96FA6DFA488DAAA8644DB4FAF3AEB607261BF6E0F157F73CC3E
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 130.2.190.in-addr.arpa
- dsrecord: 43870 ECDSAP256SHA256 F83DACEC898EC843F4863A716EC09F3959E20105F12E5D6A7DE822AA9221BE06
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 129.2.190.in-addr.arpa
- dsrecord: 47129 ECDSAP256SHA256 388D748B6BC99599B5F11B6CE222E2165E7962151A26068CC3B4C180BF496E94
- dsstatus: 20250904 OK
- dslastok: 20250904
- dszone: 143.2.190.in-addr.arpa
- dsrecord: 21664 ECDSAP256SHA256 34C8AAAD550A3B015D75E5FC0E8B8DE5586073A76178A40517DC1DF59EC783AA
- dsstatus: 20250904 OK
- dslastok: 20250904
- created: 20171127
- changed: 20171127
- inetnum-up: 190.2.128.0/19
- nic-hdl: WLB5
- person: WorldStream B.V.
- e-mail: dv@worldstream.nl
- address: E-Commerce Park Vredenberg, -, -
- address: 0000CW - Willemstad -
- country: CW
- phone: +5999 8200002 [0000]
- created: 20151217
- changed: 20221107
- nic-hdl: WOB2
- person: WorldStream B.V.
- e-mail: abuse@worldstream.nl
- address: Industriestraat, 24,
- address: 2671CT - Naaldwijk -
- country: NL
- phone: +31 0174712117
- created: 20171127
- changed: 20221005
Links to attack logs
anonymous-proxy-ip-list-2024-02-12 anonymous-proxy-ip-list-2025-08-22 anonymous-proxy-ip-list-2024-06-15 anonymous-proxy-ip-list-2024-12-30 anonymous-proxy-ip-list-2025-06-21 anonymous-proxy-ip-list-2025-07-18 anonymous-proxy-ip-list-2024-12-14 anonymous-proxy-ip-list-2025-02-14 anonymous-proxy-ip-list-2025-09-01 anonymous-proxy-ip-list-2023-08-05 anonymous-proxy-ip-list-2024-09-25 anonymous-proxy-ip-list-2024-11-04 anonymous-proxy-ip-list-2024-12-10 anonymous-proxy-ip-list-2023-07-18 anonymous-proxy-ip-list-2023-08-23 anonymous-proxy-ip-list-2023-08-25 anonymous-proxy-ip-list-2023-11-14 anonymous-proxy-ip-list-2025-06-23 anonymous-proxy-ip-list-2024-03-24 anonymous-proxy-ip-list-2024-05-16 anonymous-proxy-ip-list-2025-01-03 anonymous-proxy-ip-list-2025-01-06 ****** anonymous-proxy-ip-list-2023-09-12 anonymous-proxy-ip-list-2025-07-11 anonymous-proxy-ip-list-2025-08-10 anonymous-proxy-ip-list-2024-06-25 anonymous-proxy-ip-list-2024-09-19 anonymous-proxy-ip-list-2024-11-05 anonymous-proxy-ip-list-2024-06-26 anonymous-proxy-ip-list-2024-11-13 anonymous-proxy-ip-list-2025-01-29 anonymous-proxy-ip-list-2023-09-01 anonymous-proxy-ip-list-2025-09-04 anonymous-proxy-ip-list-2024-08-01 anonymous-proxy-ip-list-2024-08-10 anonymous-proxy-ip-list-2024-12-18 anonymous-proxy-ip-list-2023-08-16 anonymous-proxy-ip-list-2023-08-21 anonymous-proxy-ip-list-2023-11-13 anonymous-proxy-ip-list-2025-06-22 anonymous-proxy-ip-list-2025-07-14 anonymous-proxy-ip-list-2025-07-23 anonymous-proxy-ip-list-2024-09-11 anonymous-proxy-ip-list-2024-11-03 anonymous-proxy-ip-list-2023-07-10 anonymous-proxy-ip-list-2025-08-28 anonymous-proxy-ip-list-2025-06-24 anonymous-proxy-ip-list-2025-06-29 anonymous-proxy-ip-list-2024-07-10 anonymous-proxy-ip-list-2024-07-14 anonymous-proxy-ip-list-2024-09-20 anonymous-proxy-ip-list-2025-02-16 anonymous-proxy-ip-list-2024-07-11 anonymous-proxy-ip-list-2024-07-12 anonymous-proxy-ip-list-2024-09-15 anonymous-proxy-ip-list-2024-11-14 anonymous-proxy-ip-list-2025-02-03 anonymous-proxy-ip-list-2025-08-29 anonymous-proxy-ip-list-2025-07-12 anonymous-proxy-ip-list-2025-08-15 anonymous-proxy-ip-list-2024-05-15 anonymous-proxy-ip-list-2024-11-11 anonymous-proxy-ip-list-2024-02-26 anonymous-proxy-ip-list-2024-07-13 anonymous-proxy-ip-list-2024-08-29 anonymous-proxy-ip-list-2024-09-24 anonymous-proxy-ip-list-2023-08-14 anonymous-proxy-ip-list-2023-09-10 anonymous-proxy-ip-list-2025-08-01 anonymous-proxy-ip-list-2024-06-24 anonymous-proxy-ip-list-2024-11-12 anonymous-proxy-ip-list-2024-12-12 anonymous-proxy-ip-list-2023-08-20 anonymous-proxy-ip-list-2024-12-20 anonymous-proxy-ip-list-2025-02-08 anonymous-proxy-ip-list-2023-07-03 anonymous-proxy-ip-list-2025-07-08 anonymous-proxy-ip-list-2024-08-16 ****** anonymous-proxy-ip-list-2025-08-09 anonymous-proxy-ip-list-2024-06-23 anonymous-proxy-ip-list-2024-10-07 anonymous-proxy-ip-list-2024-12-05 anonymous-proxy-ip-list-2025-02-11 anonymous-proxy-ip-list-2025-08-16 anonymous-proxy-ip-list-2024-05-18 anonymous-proxy-ip-list-2024-07-31 anonymous-proxy-ip-list-2025-02-19 ****** anonymous-proxy-ip-list-2025-04-04 anonymous-proxy-ip-list-2025-07-21 anonymous-proxy-ip-list-2024-10-04 anonymous-proxy-ip-list-2024-12-28
Share on: