192.241.220.204 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 192.241.220.204 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • Mitre ATT&CK IDs: T1595 - Active Scanning
  • Tags: Nextray, badrequest, botnet, bruteforce, cowrie, cyber security, digital ocean, ioc, malicious, mirai, nmap, phishing, port-scan, probing, scanners, scanning, snmp, ssh, webscan, webscanner, webscanner bruteforce web app attack

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network: AS14061 digitalocean llc
  • Noticed: 1 times
  • Protcols Attacked: snmp
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: ur321day.com help1221.com assist213.com helpingyou21.com lowlow777.com ppp2o21.com futuredays7.com greeat7321.com trynew7.com youryear2o21.com besttime7.com newyou212o.com rwrdz777.com potus202o.com 2timez1.com need2021.com tonight777.com 2win20.com doyou2020.com yourtime7.com lowerwin7.com 1time2save.com happy721.com yoursavings1023.com super2o2o.com yourbenefit2o.info yrteam202o.com sweet2o.com smaller7321.com getpaid1738.com getpaidoct2o2o.com agift4younow.com 2o21ppp.com now731.com yourfuture777.com yousavingnow44.com 123savings321.com class1right11.com helpsaving777.com 3seven2o.com whip2oo.com livetime77.com 1rwrd321.com heresaveings38.com urteam202o.com 222is777.com easelife20.com slick321.com your2o2o.com nextlevelofxellence.com supernutrient99.com 1wins2o.com gooddayz2o.com 202opotus.com lifesave321.com see1best132.com style2o2o.info savings2o2o.com 1now10.com concealedcarry2020.com style2o.info sms2o.info w3live4u.com 1monthfree321.com 12020now.com crimedoor11.com urdaily321.info auto2020savings.com yoursave280.com 7easy2o.com getyours2o2o.com monthly2o21.com getmoneyoctober2o2o.com paidlyfe2o.com 1now20.com 1stat2o.com 1win2o.com lowlow77.com 20needs20.com yoursavings7.com lowerwins777.com teamed20.com easygummies2o.com newflashlight2o20.com 12newlight20.com yourflashlightasap.info tacflashlight2020.info mas2o.com safe2o2o.com mas2o2o.com tonight108.com gethelp2020.com yougetpaid2o2o.com live321.info hip2o2o.info carrying2o2o.info health2o2o.com life2o2o.com kicks2o2o.com scrillasms.com 6657.bestlif3.info 1best.info smil3.info 430am.info fl3x.info good-lif3.info great-lif3.info sweet-lif3.info healthsid3.info healthside.info health-side.info lif3smile.info life5-mile.info lif3-smile.info sleep-2019.com bestlif3.info easy-lif3.info easylif3.info best-lif3.info lovelif3.info love-lif3.info lif3love.info lif3-love.info sleeplif3.info happysmil35.info p3rfectlife.info happy-smile5.info perf3ct-life.info happysmile5.info perfect-lif3.info fun-tim319.info lif3-healthy.info funtime5.info funtime9.info mor3lifes.info smil3-life.info mor3-fun.info mroe-life.info smil3life.info themeatprovider.com rg.hydra.delivery balling.papergangster.com

Map

Whois Information

  • NetRange: 192.241.128.0 - 192.241.255.255
  • CIDR: 192.241.128.0/17
  • NetName: DIGITALOCEAN-192-241-128-0
  • NetHandle: NET-192-241-128-0-1
  • Parent: NET192 (NET-192-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS14061
  • Organization: DigitalOcean, LLC (DO-13)
  • RegDate: 2013-06-10
  • Updated: 2020-04-03
  • Comment: Routing and Peering Policy can be found at https://www.as14061.net
  • Comment:
  • Ref: https://rdap.arin.net/registry/ip/192.241.128.0
  • OrgName: DigitalOcean, LLC
  • OrgId: DO-13
  • Address: 101 Ave of the Americas
  • Address: FL2
  • City: New York
  • StateProv: NY
  • PostalCode: 10013
  • Country: US
  • RegDate: 2012-05-14
  • Updated: 2023-07-07
  • Ref: https://rdap.arin.net/registry/entity/DO-13
  • OrgNOCHandle: NOC32014-ARIN
  • OrgNOCName: Network Operations Center
  • OrgNOCPhone: +1-347-875-6044
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
  • OrgTechHandle: NOC32014-ARIN
  • OrgTechName: Network Operations Center
  • OrgTechPhone: +1-347-875-6044
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
  • OrgAbuseHandle: ABUSE5232-ARIN
  • OrgAbuseName: Abuse, DigitalOcean
  • OrgAbusePhone: +1-347-875-6044
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE5232-ARIN

Links to attack logs

nmap-scanning-list-2022-09-16 awsau-snmp-bruteforce-ip-list-2021-06-10 dolondon-snmp-bruteforce-ip-list-2022-05-22