192.72.6.152 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 192.72.6.152 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟡 Low Risk — 30/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: Taiwan
  • Network: AS4780 digital united inc.
  • Noticed: 30 times
  • Protocols Attacked: SSH
  • Countries Attacked: Belgium
  • Open Ports: 161, 1701, 443
  • Tor Node: No

MITRE ATT&CK TTPs

  • T1046 - Network Service Scanning
  • T1583.005 - Botnet

Associated CVEs

  • CVE-2013-4508

Attack Log References

Whois Information

inetnum: 192.72.6.0 - 192.72.6.255 netname: SEED-NET6 descr: imported inetnum object for III country: TW admin-c: IfII1-AP tech-c: IfII1-AP abuse-c: AT939-AP status: ASSIGNED PORTABLE notify: helpdesk@apnic.net mnt-by: APNIC-HM mnt-irt: IRT-TWNIC-AP last-modified: 2021-11-04T00:48:53Z irt: IRT-TWNIC-AP address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan e-mail: hostmaster@twnic.net.tw abuse-mailbox: hostmaster@twnic.net.tw admin-c: TWA2-AP tech-c: TWA2-AP mnt-by: MAINT-TW-TWNIC last-modified: 2021-11-04T00:59:51Z role: ABUSE TWNICAP address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan country: ZZ phone: +000000000 e-mail: hostmaster@twnic.net.tw admin-c: TWA2-AP tech-c: TWA2-AP nic-hdl: AT939-AP abuse-mailbox: hostmaster@twnic.net.tw mnt-by: APNIC-ABUSE last-modified: 2021-11-04T01:00:32Z person: Institute for Information Industry Maintainer For ERX Transfers address: 10F Formosa Plastics rear building country: TW phone: +00 00 0000 0000 e-mail: no-email-erx@apnic.net nic-hdl: IfII1-AP notify: no-email-erx@apnic.net mnt-by: MNT-ERX-INSTIFORINFORINDUS-NON-TW last-modified: 2008-09-04T07:29:38Z inetnum: 192.72.6.0 - 192.72.6.255 netname: SEEDNET-NET descr: New Century InfoComm Tech. Co., Ltd. descr: 1F~11F, No. 218, Rueiguang Road descr: Taipei Taiwan country: TW admin-c: IO1-TW tech-c: IO1-TW mnt-by: MAINT-TW-TWNIC changed: antispam@seed.net.tw 20080827 status: ASSIGNED NON-PORTABLE person: Anti-Spammer NCIC address: New Century InfoComm Tech Co., Ltd address: No.218, Rueiguang Road,Nei-Hu, Taipei City address: TW Taiwan country: TW phone: +886-2-7700-8888 fax-no: +886-2-7700-8888 e-mail: antispam@seed.net.tw nic-hdl: IO1-TW changed: hostmaster@twnic.net 20170320