198.199.92.60 Threat Intelligence and Host Information

General

IP Address
198.199.92.60
IPv4 Address
Location
🇺🇸 San Francisco, United States
US
Network
AS14061
DIGITALOCEAN-ASN
Threat Score
40/100
Medium Risk
badrequestblacklistbotnetbruteforcecybersecurityiockfsensor
Attack Intelligence
Open Ports Detected
22
Geographic Location
Country
United States
City
San Francisco
Region
California
Coordinates
37.7308, -122.3838
Network Information
ASN
AS14061
Organization
DIGITALOCEAN-ASN
Network
AS14061 DIGITALOCEAN-ASN
WHOIS Information
NetRange
198.199.64.0 - 198.199.127.255
CIDR
198.199.64.0/18
NetName
DIGITALOCEAN-198-199-64-0
NetHandle
NET-198-199-64-0-1
Parent
NET198 (NET-198-0-0-0-0)
NetType
Direct Allocation
OriginAS
AS14061
Organization
DigitalOcean, LLC (DO-13)
RegDate
2012-05-14
Updated
2023-10-23
Comment
Ref
https://rdap.arin.net/registry/entity/DO-13
OrgName
DigitalOcean, LLC
OrgId
DO-13
Address
FL2
City
New York
StateProv
NY
PostalCode
10013
Country
US
OrgNOCHandle
NOC32014-ARIN
OrgNOCName
Network Operations Center
OrgNOCPhone
+1-347-875-6044
OrgNOCEmail
noc@digitalocean.com
OrgNOCRef
https://rdap.arin.net/registry/entity/NOC32014-ARIN
Attack Logs
Date Target Location Protocol Link
2024-04-22 Vultrparis-Redis MULTIPLE View Log

  • Country: United States
  • Network: AS14061 digitalocean llc
  • Noticed: 50 times
  • Protocols Attacked: redis
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Spain, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: dev.redirect-fixes.staging.lumi.dev bravo.redirect-fixes.staging.lumi.dev powerpuff-api2.redirect-fixes.staging.lumi.dev lumi-id.redirect-fixes.staging.lumi.dev flapjack-api.redirect-fixes.staging.lumi.dev powerpuff.redirect-fixes.staging.lumi.dev flapjack.redirect-fixes.staging.lumi.dev superhelpful.tech kingofseattle.com starlabs-3171-bin.gbuvps.com waystohealthylife.com

Malware Detected on Host

Count: 9 70352ec87a755f3a55e76725b7a143819a38efce4941f91d534b5652539fccf2 2c11166251da33a0a3a32b784b8d83b0c561976ed5508148e97691aadb47361c e6e5ec0eb573827b97e2767c50e887b5a13ae5fa18e31a894e44178d3b236f01 21b1b63c44fc1d127355a31f11ba624ea27faea35db0c4113f69140e03eb4294 67063fd04054ecc8ffc644d46a399de12257f3602552f547f5c217e190319a5c 8eccc4cedb6765fb5aa29e010424b838c37807f8e86becefd60931fc97e34bec 757b00e13371becb5c0278ca5a9a2c31056b80d68c0ff1bdabcb801a5e5fbf8d a1dbf5fb2577343a2dd3b3156264129983841880ca8368c73ed9917f1f7499ea e93bd090afd58019b30069cf7b66f31dc2ce60cda39487d0592e3cb499044210

Disclaimer
This page contains threat intelligence information for the IPv4 address 198.199.92.60 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.