194.38.20.209 Threat Intelligence and Host Information
Aug 11, 2025
ipinfopage
General
IP Address
194.38.20.209
Location
🇺🇦 Dnipro, Ukraine
Network
AS48693
Threat Score
35/100
Attack Intelligence
MITRE ATT&CK Techniques
T1110 - Brute Force
Open Ports Detected
22
Geographic Location
Country
Ukraine
City
Dnipro
Region
Dnipropetrovsk Oblast
Coordinates
48.4653, 35.0330
Network Information
ASN
AS48693
Organization
Rices Privately owned enterprise
Network
AS48693 Rices Privately owned enterprise
WHOIS Information
inetnum
194.38.20.0 - 194.38.20.255
org
ORG-RPOE1-RIPE
netname
NTS-1
country
UA
admin-c
NA7006-RIPE
tech-c
NA7006-RIPE
abuse-c
ACRO363-RIPE
status
ASSIGNED PA
mnt-by
NTSERVICE-AS
created
2016-02-24T17:10:08Z
last-modified
2022-12-01T17:24:34Z
organisation
ORG-RPOE1-RIPE
mnt-ref
SYNTEGRA-MNT
org-name
Rices Privately owned enterprise
org-type
OTHER
address
Dnepropetrovsk region, Mogilev, Kivskiy sst., n.9
role
NT-NOC
nic-hdl
NA7006-RIPE
route
194.38.20.0/24
origin
AS48693
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2025-08-11 | Perth, Australia | MULTIPLE | View Log |
- Country: Ukraine
- Network:
- Noticed: 5 times
- Protocols Attacked: SSH
- Countries Attacked: Australia
- Passive DNS Results: solflare.com.cm mailserv1-stellar.org whdadcw.com solflare.nz launchaweb.com jonncoolidge.com gamood.com colorsjs.com xiaofendeng.com mydarren.com csop-ripple.com xn–rippe-y6a.com volengine.com acceleratedstaking.com jjduanlian.com flatpackohio.com yenihisarpet.com didimveterinerklinigi.com didimvet.com
Disclaimer
This page contains threat intelligence information for the IPv4 address 194.38.20.209 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.