192.42.116.16 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 192.42.116.16 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Known tor exit node
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: blocklist_net_ua, botscout_30d, botscout_7d, botvrij_dst, cruzit_web_attacks, dm_tor, et_tor, haley_ssh, maxmind_proxy_fraud, snort_ipfilter, stopforumspam, stopforumspam_180d, stopforumspam_1d, stopforumspam_30d, stopforumspam_365d, stopforumspam_7d, stopforumspam_90d, talosintel_ipfilter, tor_exits, tor_exits_1d, tor_exits_30d, tor_exits_7d

  • Known TOR node
  • Country: Netherlands
  • Network: AS1101 surfnet bv
  • Noticed: times
  • Protcols Attacked: ssh
  • Passive DNS Results: block2.mmms.eu oponindoc.kvrddns.com tiatarvasub.kvrddns.com easymail2u.com www.easymail2u.com torakqnap.myqnapcloud.com mobitrax.zapto.org fakedns.crabdance.com barton.jumpingcrab.com clustertux145.noip.me

Malware Detected on Host

Count: 67 b2cda7b8c8214e29b01cc8915de2535db62546e158f7f29b4f5cfa292b66b9a8 2fd353ffcace535b5c0cdd3b70784bcbf1d4e35879a3109ed8825c2f970d22d3 f135a122de05c168865001c50af2cdd0801780cd6904e5bfe68a514f68052668 5a4f7dc3acfefb517f1fbe6f0fe7887b34653d70a1de1b59efa0e38393ba0819 b67d35ccf3a987b3dece996c399cd5ac2d4ef1e601cab7feb981e92b52b93e1d d3eb03abc793c9542a474f6ce8632074be1cf8c657766fd7bdf4a0441ea9d39c b54482dfabf58afcf0f7017efa9b25a5414228290dbb2f5eb00cf41affbb1c4c 38e226d0ad049686980d8441cebdb3be7fd1cbfe21528d24791d389040adb9cc 50f77a4ff1c240c802d1b746cece9cb4122955fdd78b847f53c51c314782c4fc e5eca6d0ae69a693be00d17e751007423cb92b3bfe632e60780047edcf811bc9

Map

Whois Information

  • inetnum: 59.124.0.0 - 59.127.255.255
  • netname: HINET-NET
  • descr: Data Communication Business Group,
  • descr: Chunghwa Telecom Co.,Ltd.
  • descr: No.21, Sec.1, Xinyi Rd., Taipei City
  • descr: 10048, Taiwan
  • country: TW
  • admin-c: HN27-AP
  • tech-c: HN27-AP
  • abuse-c: AT939-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-TW-TWNIC
  • mnt-irt: IRT-TWNIC-AP
  • last-modified: 2021-11-04T00:50:11Z
  • irt: IRT-TWNIC-AP
  • address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: TWA2-AP
  • tech-c: TWA2-AP
  • mnt-by: MAINT-TW-TWNIC
  • last-modified: 2021-11-04T00:59:51Z
  • role: ABUSE TWNICAP
  • address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: TWA2-AP
  • tech-c: TWA2-AP
  • nic-hdl: AT939-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2021-11-04T01:00:32Z
  • person: HINET Network-Adm
  • address: CHTD, Chunghwa Telecom Co., Ltd.
  • address: No. 21, Sec. 21, Hsin-Yi Rd.,
  • address: Taipei Taiwan 100
  • country: TW
  • phone: +886 2 2322 3495
  • phone: +886 2 2322 3442
  • phone: +886 2 2344 3007
  • fax-no: +886 2 2344 2513
  • fax-no: +886 2 2395 5671
  • e-mail: [email protected]
  • nic-hdl: HN27-AP
  • mnt-by: MAINT-TW-TWNIC
  • last-modified: 2011-08-22T06:04:01Z
  • inetnum: 59.127.0.0 - 59.127.255.255
  • netname: HINET-NET
  • descr: Chunghwa Telecom Co.,Ltd.
  • descr: No.21-3, Sec. 1, Xinyi Rd., Taipei 10048, Taiwan, R.O.C.
  • descr: Taipei Taiwan
  • country: TW
  • admin-c: HN184-TW
  • tech-c: HN184-TW
  • mnt-by: MAINT-TW-TWNIC
  • changed: [email protected] 20051020
  • status: ASSIGNED NON-PORTABLE
  • person: HINET Network-Adm
  • address: CHTD, Chunghwa Telecom Co., Ltd.
  • address: Data-Bldg. 6F, No. 21, Sec. 1, Hsin-Yi Rd.,
  • address: Taipei Taiwan
  • country: TW
  • phone: +886-2-2322-3495
  • fax-no: +886-2-2344-2513
  • e-mail: [email protected]
  • nic-hdl: HN184-TW
  • changed: [email protected] 20130307