192.124.249.13 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 192.124.249.13 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • Tags: tsec

  • JARM: 3fd3fd0003fd3fd00042d42d0000002059a3b916699461c5923779b77cf06b

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_emd, hphosts_psh

Malware Detected on Host

Count: 60 3be072810830495c2917e40b468741377bbc18d10e271a1ebf466517bb857e63 8165eb1e6ebc0f6980ee99eb7da68e06ad3f8db92bd7bce8bf6031e347cd058f a1e036782f5c3677127f31461566ff4c480c7e507e8eb9f8f78af17514ce9414 07a3894e36686a4fbd0c092e1f28c2f5e7def2384af9645949d1b710bef56d8d d17bdf6048d030081a31f41886b95734f9b2ac2d5a9a561beaaa21c814040667 2725a30724883b2b4f86e0e9020b0c888b89347de23de6e2bde79fa726e6b3ba 51902c5e287cfb364ec0a05c363f338349c8b11f95599cd0515f402a9c5436cd 2b279a61e7e535838316672e3829bef1df11205dbc478a2df1ed2fb6946d3141 cc5c0964c08cc4689293db639a3b6232a151780d01eeea20eb69eeea307cc9ea cc2b417ec4d001b0f3cc9fb55a2d5dac17bb13db028294fc7c5afc4eae844457

Open Ports Detected

443 80

CVEs Detected

CVE-2011-4969 CVE-2012-6708 CVE-2015-9251 CVE-2018-19296 CVE-2019-11358 CVE-2020-11022 CVE-2020-11023 CVE-2020-11025 CVE-2020-11026 CVE-2020-11027 CVE-2020-11028 CVE-2020-11029 CVE-2020-11030 CVE-2020-25286 CVE-2020-28032 CVE-2020-28033 CVE-2020-28034 CVE-2020-28035 CVE-2020-28036 CVE-2020-28037 CVE-2020-28038 CVE-2020-28039 CVE-2020-28040 CVE-2020-36326 CVE-2020-4046 CVE-2020-4047 CVE-2020-4048 CVE-2020-4049 CVE-2020-4050 CVE-2021-29450 CVE-2021-39200 CVE-2021-39201 CVE-2021-44223 CVE-2022-21661 CVE-2022-21662 CVE-2022-21663 CVE-2022-21664 CVE-2022-3590 CVE-2022-43497 CVE-2022-43500 CVE-2022-43504 CVE-2023-22622 CVE-2023-2745

Map

Whois Information

  • NetRange: 192.124.249.0 - 192.124.249.255
  • CIDR: 192.124.249.0/24
  • NetName: SUCURI-ARIN-002
  • NetHandle: NET-192-124-249-0-1
  • Parent: NET192 (NET-192-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS174, AS3257, AS30148
  • Organization: Sucuri (SUCUR-2)
  • RegDate: 2015-04-01
  • Updated: 2023-08-22
  • Comment: —–BEGIN CERTIFICATE—–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—–END CERTIFICATE—–
  • Ref: https://rdap.arin.net/registry/ip/192.124.249.0
  • OrgName: Sucuri
  • OrgId: SUCUR-2
  • Address: 30141 Antelope Rd
  • City: Menifee
  • StateProv: CA
  • PostalCode: 92584
  • Country: US
  • RegDate: 2014-12-11
  • Updated: 2020-04-29
  • Ref: https://rdap.arin.net/registry/entity/SUCUR-2
  • OrgTechHandle: SOC55-ARIN
  • OrgTechName: Security Operations Center
  • OrgTechPhone: +1-951-234-3945
  • OrgTechEmail: soc@sucuri.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/SOC55-ARIN
  • OrgAbuseHandle: SOC55-ARIN
  • OrgAbuseName: Security Operations Center
  • OrgAbusePhone: +1-951-234-3945
  • OrgAbuseEmail: soc@sucuri.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/SOC55-ARIN
Share on: