197.232.21.22 Threat Intelligence and Host Information
Share on:General
This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.
Known Malicious Host 🔴 72/100
Host and Network Information
- Mitre ATT&CK IDs: T1110 - Brute Force, T1498 - Network Denial of Service, T1499 - Endpoint Denial of Service, T1499.002 - Service Exhaustion Flood
- Tags: Cyclops, DDOS, DDoS, Gamardeon, HEAD Floods, HermeticWiper, IsaacWiper, KillNet, Killnet, PartyTicket, T1498, T1499, WhisperGate, attack ddos, botnet, cc.py, ddos, list ips, russia, russian, ukraine, vnc
- View other sources: Spamhaus VirusTotal
-
Contained within other IP sets: botscout_30d, socks_proxy_1d, socks_proxy_30d, socks_proxy_7d, stopforumspam, stopforumspam_180d, stopforumspam_1d, stopforumspam_30d, stopforumspam_365d, stopforumspam_7d, stopforumspam_90d
- Country: Kenya
- Network: AS36866 african network information center
- Noticed: 50 times
- Protcols Attacked: spam telnet
- Countries Attacked: Russian Federation
Malware Detected on Host
Count: 2 d9935a9e41eb7c533ff0c68c61e4c74e582066fb28ee55053bc346bb8a3a571d 20d2071c7c5490020e3444077a3e479eb521b7078c43ba23092461367f05f1f5
Open Ports Detected
Map
Whois Information
- inetnum: 197.232.16.0 - 197.232.31.255
- netname: FAIBA-ENTERPRISE3
- descr: Allocated to Enterprise FAIBA
- country: KE
- admin-c: Jk10-AFRINIC
- admin-c: MO29-AFRINIC
- tech-c: Jk10-AFRINIC
- tech-c: MO29-AFRINIC
- status: ASSIGNED PA
- mnt-by: MNT-JTL
- parent: 197.232.0.0 - 197.232.255.255
- person: Joseph Kiptui
- nic-hdl: JK10-AFRINIC
- address: P O Box 47419 -00100 Nairobi
- address: Nairobi 48
- address: Kenya
- phone: tel:+254-747-585100
- fax-no: tel:+254-747-585100
- mnt-by: GENERATED-NI5QMPDAMJVEKAFBBSQJXG24SEKOPYKS-MNT
- person: Michael Odongo
- nic-hdl: MO29-AFRINIC
- address: Box 47419-00100 NAIROBI
- address: Nairobi 48
- address: Kenya
- phone: tel:+254-747-585100
- fax-no: tel:+254-20-3877350
- mnt-by: GENERATED-BJHM5XEMGUHAXXI0RCGPQZRT9OHRJDN5-MNT
- route: 197.232.20.0/23
- origin: AS36866
- descr: FAIBA
- mnt-by: MNT-JTL
Links to attack logs
dosing-telnet-bruteforce-ip-list-2022-09-16 forum-spam-ip-list-2021-01-08 forum-spam-ip-list-2021-08-19 forum-spam-ip-list-2021-08-20