198.2.201.81 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 198.2.201.81 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: zygo361.com ytrsf.com yhjy520.com hkymgj.com nb-hengxu.com baiui1.com jiechengwz.com zzsekj.com www.qzffyj.com qzffyj.com rograin.com dglmm.com myyvip.com kr-eloven.com fzcy0591.com www.baiduxl.com baiduxl.com ajbys.com www.aiqu808.com ast1eunice.com aiqu808.com www.anzhitv.com anzhitv.com www.scmingyou.com scmingyou.com ldc0099.com

Open Ports Detected

17000 3306 443 5432 5601 5672 6379 80 8000 8008 8080 8086 9200 9800

CVEs Detected

CVE-2019-7317 CVE-2020-14814 CVE-2020-14830 CVE-2020-14837 CVE-2020-14839 CVE-2020-14845 CVE-2020-14846 CVE-2020-14852 CVE-2020-15358 CVE-2020-1971 CVE-2021-22570 CVE-2021-3618 CVE-2023-21977 CVE-2023-22015 CVE-2023-22026 CVE-2023-22028 CVE-2023-22084 CVE-2023-44487

Map

Whois Information

Links to attack logs

****** ****** ******

Share on: