192.3.164.201 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 192.3.164.201 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 17/100

Host and Network Information

  • Country: United States
  • Network: AS36352 colocrossing
  • Noticed: 1 times
  • Protocols Attacked: spam
  • Passive DNS Results: scooterstaging.basednet.co wiki.server2.projectdeathstar.us mixpost.server2.projectdeathstar.us ss14.server2.projectdeathstar.us up.server2.projectdeathstar.us proxy.server2.projectdeathstar.us verify.server2.projectdeathstar.us netdata.server2.projectdeathstar.us ghost.server2.projectdeathstar.us csport.server2.projectdeathstar.us n8n.server2.projectdeathstar.us code.server2.projectdeathstar.us stremio.server2.projectdeathstar.us calibre.server2.projectdeathstar.us server2.projectdeathstar.us nginx.server2.projectdeathstar.us port.server2.projectdeathstar.us www.detyr.com detyr.com

Open Ports Detected

21 22 3306 443 80 8000 8001 8080 8181 9001 9443

CVEs Detected

CVE-2023-21972 CVE-2023-21976 CVE-2023-21977 CVE-2023-21980 CVE-2023-21982 CVE-2023-22007 CVE-2023-22032 CVE-2023-22059 CVE-2023-22064 CVE-2023-22065 CVE-2023-22066 CVE-2023-22068 CVE-2023-22070 CVE-2023-22078 CVE-2023-22079 CVE-2023-22084 CVE-2023-22092 CVE-2023-22097 CVE-2023-22103 CVE-2023-22104 CVE-2023-22110 CVE-2023-22111 CVE-2023-22112 CVE-2023-22113 CVE-2023-22114 CVE-2023-22115 CVE-2024-20961 CVE-2024-20963 CVE-2024-20965 CVE-2024-20967 CVE-2024-20969 CVE-2024-20971 CVE-2024-20973 CVE-2024-20977 CVE-2024-20981 CVE-2024-20983 CVE-2024-20985 CVE-2024-21165 CVE-2024-21171

Map

Links to attack logs

forum-spam-ip-list-2015-03-09 ****** ****** ******

Share on: