196.216.220.204 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Likely Malicious Host 🟠 70/100

Host and Network Information

  • Mitre ATT&CK IDs: T1110 - Brute Force, T1110.003 - Password Spraying, T1498 - Network Denial of Service
  • Tags: Azure, Cyclops, Gamardeon, HermeticWiper, IsaacWiper, PartyTicket, RDP, SSH, WhisperGate, abuse, attack ddos, botnet, bruteforce, ddos, fraud, ipqs, ipqualityscore, la, lafusioncenter, list ips, louisiana, russia, russian, ukraine, vnc, web attack
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: proxylists_1d, proxylists_30d, proxylists_7d, proxz_30d, sblam, socks_proxy_30d, socks_proxy_7d, stopforumspam, stopforumspam_180d, stopforumspam_365d, stopforumspam_90d

  • Country: Sierra Leone
  • Network: AS327903 african network information center
  • Noticed: 42 times
  • Protcols Attacked: spam
  • Countries Attacked: Russian Federation

Malware Detected on Host

Count: 4 5ee96cce83902ae9cb52fafac4479412f4d12bfc9b699cb81763f140e7b979a8 88cb6da94b1ff0e563cd656bc37eb1aac3506f852cb333b378d007e1d699d63b c4ad00d7360fc45e1c35cb76b174818ad6462f13fa9b66cec85e1774a170b674 7c04d5055ff536669c3c4bd99b60f7cff3a55f6b3fc6ad0840a1a9f5106f09f2

Map

Whois Information

  • inetnum: 196.216.220.0 - 196.216.221.255
  • netname: MICG
  • descr: Ministry of Information and Communications, Government of Sierra Leone
  • country: SL
  • org: ORG-MOIA1-AFRINIC
  • admin-c: AAK2-AFRINIC
  • tech-c: FFS2-AFRINIC
  • status: ASSIGNED PI
  • mnt-by: AFRINIC-HM-MNT
  • mnt-lower: MOIAC-MNT
  • mnt-domains: MOIAC-MNT
  • parent: 196.0.0.0 - 196.255.255.255
  • organisation: ORG-MOIA1-AFRINIC
  • org-name: Ministry of Information and Communications, Government of Sierra Leone
  • org-type: LIR
  • country: SL
  • address: 8th Floor, Youyi Building, Brookfields
  • address: Free Town
  • phone: tel:+232-76-616347
  • phone: tel:+232-78-553062
  • phone: tel:+232-787042
  • admin-c: AAK2-AFRINIC
  • tech-c: FFS2-AFRINIC
  • mnt-ref: AFRINIC-HM-MNT
  • mnt-ref: MOIAC-MNT
  • mnt-by: AFRINIC-HM-MNT
  • person: Aiah A. Kortequee
  • address: 8th Floor, Youyi Building, Brookfields
  • address: Free Town
  • address: Sierra Leone
  • phone: tel:+232-78-694072
  • nic-hdl: AAK2-AFRINIC
  • mnt-by: GENERATED-X1HBJCRN2J7O3GYUNOL0RQHIBNKSMWNJ-MNT
  • person: Francis Fatalay Sesay
  • nic-hdl: FFS2-AFRINIC
  • address: 8th Floor, Youyi Building, Brookfields
  • address: Free Town
  • address: Sierra Leone
  • address: Freetown 00232
  • address: Sierra Leone
  • phone: tel:+232-78-553062
  • mnt-by: SALCAB-FFS-MTN

Links to attack logs

forum-spam-ip-list-2020-12-27