194.32.122.35 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Likely Malicious Host 🟠 65/100

Host and Network Information

  • Mitre ATT&CK IDs: T1049 - System Network Connections Discovery, T1110 - Brute Force, T1505 - Server Software Component
  • Tags: Brute-Force, Bruteforce, Nextray, SSH, ahnlabs, april, bloodhound, cve202241040, cve202241082, cyber security, digital ocean, exchange server, february, ioc, july, june, korean, lockbit, lockbit3.0, mail02, malicious, mimikatz, notproxyshell, phishing, scanners, september, ssh, twitter, vultr, webshell
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: stopforumspam, stopforumspam_180d, stopforumspam_365d, stopforumspam_90d

  • Country: Netherlands
  • Network: AS61272 informacines sistemos ir technologijos uab
  • Noticed: 16 times
  • Protcols Attacked: ssh
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: lt.privacy.network

Open Ports Detected

1337 443 80 8443

Map

Whois Information

  • inetnum: 194.32.122.0 - 194.32.122.255
  • netname: CYBERG-194-32-122-0
  • country: LT
  • geoloc: 54.7006037 25.1129543
  • org: ORG-CS718-RIPE
  • admin-c: CSAH13-RIPE
  • tech-c: CSAH13-RIPE
  • status: ASSIGNED PA
  • mnt-by: PREFIXBROKER-MNT
  • created: 2021-09-22T12:34:37Z
  • last-modified: 2021-09-22T12:34:37Z
  • organisation: ORG-CS718-RIPE
  • org-name: Cyberghost SRL
  • org-type: OTHER
  • address: 0-72 Dionisie Lupu Street, District 1
  • address: 010458 Bucharest
  • address: Romania
  • abuse-c: CSAH13-RIPE
  • mnt-ref: PREFIXBROKER-MNT
  • mnt-by: PREFIXBROKER-MNT
  • created: 2021-09-22T12:34:37Z
  • last-modified: 2021-09-22T12:34:37Z
  • role: Cyberghost SRL abuse handling
  • address: 0-72 Dionisie Lupu Street, District 1
  • address: 010458 Bucharest
  • address: Romania
  • nic-hdl: CSAH13-RIPE
  • mnt-by: PREFIXBROKER-MNT
  • created: 2021-09-22T12:34:37Z
  • last-modified: 2021-09-22T12:34:37Z
  • abuse-mailbox: [email protected]
  • route: 194.32.122.0/24
  • origin: AS61272
  • mnt-by: PREFIXBROKER-MNT
  • created: 2021-09-22T12:34:37Z
  • last-modified: 2021-09-22T12:34:37Z

Links to attack logs

dofrank-ssh-bruteforce-ip-list-2023-03-29 vultrwarsaw-ssh-bruteforce-ip-list-2023-03-27 dolondon-ssh-bruteforce-ip-list-2023-03-26 dolondon-ssh-bruteforce-ip-list-2023-03-27 dofrank-ssh-bruteforce-ip-list-2023-03-30