192.185.48.207 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 192.185.48.207 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 50/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: cta_cryptowall

Malware Detected on Host

Count: 22 f04c2baaebc0090b1d67c93a6d0d593f1e6eb8515373c7df5451b7eedd789c50 8ddf354464d86324d5265b26487aba4970bfc1f36a94b0819518b82b498f5e98 ce22e4dd0699b6e23f043d282054cce8e878e55d111e4ec64aab2dbf24fe73fa 3c0843148976655cccce6e6889d801c25f3e15591ee50e1e8cbf4fca9829529d 713183ef4fcb190f74060ac126085caa18a8dae6cc853adad2c895e8cc875b0d 59f3a4d235c31568614ff5cf89b2dab8d7d65bb4b9413be131bc4164b08a33b0 f6a389f8aa82f29a9461de63ccea9a5c82a10105ab1c08ce9d852c6cb77ba367 e55a17a271114392f471b2c9639f0619090acd33d7960a8e15f717a5ff8cb3e1 06f422a9eab393413059d6946ad7af3c192a7234458262ea0ab408e98d737af7 67dad2a04774a8a927a28766c031276f71eec39d99b09702a6b805cbb8b0c6cb

Open Ports Detected

110 143 2082 2083 2086 2087 2095 21 22 2222 26 3306 443 465 53 587 80 993 995

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

Links to attack logs

****** ****** ******

Share on: