191.252.4.45 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 191.252.4.45 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: 002000000, 005000, all av, antivirus, blacklist sat, contacted, date filename, detection ratio, file, generic malware, http post, hybridanalysis, ids detections, ip lookup, less see, mon jun, open, open ports, strictor cnc, sun jun, thu jun

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_fsa, hphosts_psh

Malware Detected on Host

Count: 348 f5d085234d559b851ce22027382498494e6aa7455934c481b9ed3f4a78a7040d 3081645a8eba30a2609d61c02a7bdde364f2fb7843fed5e746147432717335f7 67d12c3740619c41ed545d7249f8aab1c23143fd9c42a25a95f6c6e016df781e ff53c5c56ef687bc4f328e439159e71c4a3ce6c572b555c90836d60532768352 83da59dd86bd739824337ac514f40eaaa8936e79e012570a440682ca844d2f01 a4afcd1ec80aa5d3c44b2360859146369175fd0f54fe8e70fac6b2a54cd6ab06 4618fb57958c19496e668916d769cb40e6bb0a0af0fbb1ff73ee89e701f3fe9b d4057b56fbaf2e33532e0888e0a4b8d328becaa130a7058d73fb7457950e83aa 5d36470bf682982b9a07c9122781f9a7d72a78fd5b7616f3f83c1f8e53864bea 89e4b41a792187b9e635bfad7e1d94a855ed231194edcdbf4c5c830896cf19fe

Open Ports Detected

443 80

Map

Links to attack logs

****** ****** ******

Share on: