198.2.210.66 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 198.2.210.66 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 5/100
Host and Network Information
-
JARM: 3fd3fd0003fd3fd21c42d42d000000bdfc58c9a46434368cf60aa440385763
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network:
- Noticed: 1 times
- Protocols Attacked: spam
- Passive DNS Results: xyjz.baedkzs.xyz huitongjifang.com nanhuanjiwu.com 35588msc.com www.tianguan37.icu www.guanbin23.icu www.huahua6.icu www.16fayi.icu www.23maofei.icu www.32laili.icu luanbai7.icu 23maofei.icu liwei40.icu 16fayi.icu tianguan37.icu 32laili.icu guanbin23.icu huahua6.icu www.fanbang8.site fanbang8.site www.buwu6.site buwu6.site www.ziwu35.site ziwu35.site www.xiuri3.site xiuri3.site www.sanqun46.site sanqun46.site www.8linbi.site 8linbi.site www.32yifang.site www.31xinran.site www.31qidan.site www.40xudi.site 40xudi.site 32yifang.site www.10dadeng.site 10dadeng.site 31qidan.site 31xinran.site www.14liaoli.site 14liaoli.site www.28juzhi.site 28juzhi.site www.29chouye.site 29chouye.site www.11weixin.site 11weixin.site www.16nuku.site 16nuku.site www.24shengshui.site 24shengshui.site
Open Ports Detected
Map
Whois Information
- NetRange: 198.2.192.0 - 198.2.255.255
- CIDR: 198.2.192.0/18
- NetName: PT-82-7
- NetHandle: NET-198-2-192-0-1
- Parent: NET198 (NET-198-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS54600
- Organization: PEG TECH INC (PT-82)
- RegDate: 2013-04-18
- Updated: 2013-04-19
- Ref: https://rdap.arin.net/registry/ip/198.2.192.0
- OrgName: PEG TECH INC
- OrgId: PT-82
- Address: 2805 Mission College Blvd
- City: Santa Clara
- StateProv: CA
- PostalCode: 95054
- Country: US
- RegDate: 2012-03-27
- Updated: 2024-11-25
- Ref: https://rdap.arin.net/registry/entity/PT-82
- OrgTechHandle: NOC12550-ARIN
- OrgTechName: NOC
- OrgTechPhone: +1-408-692-5581
- OrgTechEmail: noc@petaexpress.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
- OrgAbuseHandle: ABUSE3497-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-408-692-5581
- OrgAbuseEmail: abuse@petaexpress.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3497-ARIN
- OrgNOCHandle: NOC12550-ARIN
- OrgNOCName: NOC
- OrgNOCPhone: +1-408-692-5581
- OrgNOCEmail: noc@petaexpress.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
- NetRange: 198.2.210.64 - 198.2.210.95
- CIDR: 198.2.210.64/27
- NetName: 199-180-100-0-1
- NetHandle: NET-198-2-210-64-1
- Parent: PT-82-7 (NET-198-2-192-0-1)
- NetType: Reassigned
- OriginAS: AS54600
- Customer: China Outcom-urhosts.net (C03408736)
- RegDate: 2013-05-24
- Updated: 2013-05-24
- Ref: https://rdap.arin.net/registry/ip/198.2.210.64
- CustName: China Outcom-urhosts.net
- Address: Beijing
- City: Beijing
- StateProv: BEIJING
- PostalCode: 610023
- Country: CN
- RegDate: 2013-05-24
- Updated: 2013-05-24
- Ref: https://rdap.arin.net/registry/entity/C03408736
- OrgTechHandle: NOC12550-ARIN
- OrgTechName: NOC
- OrgTechPhone: +1-408-692-5581
- OrgTechEmail: noc@petaexpress.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
- OrgAbuseHandle: ABUSE3497-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-408-692-5581
- OrgAbuseEmail: abuse@petaexpress.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3497-ARIN
- OrgNOCHandle: NOC12550-ARIN
- OrgNOCName: NOC
- OrgNOCPhone: +1-408-692-5581
- OrgNOCEmail: noc@petaexpress.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12550-ARIN
Links to attack logs
****** forum-spam-ip-list-2013-06-03 ****** ******
Share on: