199.188.200.10 Threat Intelligence and Host Information

General

IP Address
199.188.200.10
IPv4 Address
Location
🇺🇸 United States
US
Network
AS22612
NAMECHEAP-NET
Threat Score
74/100
Critical
adwindadwindratagentteslaagentteslaaggahalienspy
Attack Intelligence
MITRE ATT&CK Techniques
T1027 - Obfuscated Files or Information, T1053 - Scheduled Task/Job, T1218 - Signed Binary Proxy Execution, T1220 - XSL Script Processing, T1564 - Hide Artifacts
Open Ports Detected
110
Geographic Location
Country
United States
City
Unknown
Region
Unknown
Coordinates
37.7510, -97.8220
Network Information
ASN
AS22612
Organization
NAMECHEAP-NET
Network
AS22612 NAMECHEAP-NET
WHOIS Information
NetRange
199.188.200.0 - 199.188.207.255
CIDR
199.188.200.0/21
NetName
NCNET-1
NetHandle
NET-199-188-200-0-1
Parent
NET199 (NET-199-0-0-0-0)
NetType
Direct Allocation
OriginAS
AS16626, AS174, AS4323, AS3356, AS22612, AS32421
Organization
Namecheap, Inc. (NAMEC-4)
RegDate
2011-01-28
Updated
2024-11-25
Comment
for any abuse please use: abuse@namecheap.com
Ref
https://rdap.arin.net/registry/entity/NAMEC-4
OrgName
Namecheap, Inc.
OrgId
NAMEC-4
Address
11400 W. Olympic Blvd. Suite 200
City
Los Angeles
StateProv
CA
PostalCode
90064
Country
US
OrgAbuseHandle
ABUSE2885-ARIN
OrgAbuseName
Abuse team
OrgAbusePhone
+1-323-375-2822
OrgAbuseEmail
abuse@namecheaphosting.com
OrgAbuseRef
https://rdap.arin.net/registry/entity/ABUSE2885-ARIN

Malware Detected on Host

Count: 8 7320ef0b7dce1617700dde3656676fd40e87f5c1278b15323da322c42eb7cd17 41212525387db779c41f209912f8d0fa4c6e02ebcfa58bfeb150bb1354beb814 ea40be4bfd388d69705eae2f60a415b1a0789135e195fbc18039009b0feae81c 0fe3c4c8399b870683dd4720c997e108384ca84cc8de2d88b9bc9cc665835acd a011bb18bfc4dfd4398ff8fc7650ffa36c9ac02a9cd9e96217e96b1f5a24cbde d6cf684adf559283fe355354fc243cc80d4176170fd1941a35178e311acedf1b 27606b46ad4119b3973661c5077247c6c90dd29a585ef85ed48eaf7153e26922 d54b720511091c47a46b69ba5ef86d49dc3570f89206c8984beae53274d04145

CVEs Detected

CVE-2007-3205 CVE-2013-2220 CVE-2015-9251 CVE-2017-8923 CVE-2019-11358 CVE-2020-11022 CVE-2020-11023 CVE-2022-31628 CVE-2022-31629 CVE-2022-37454 CVE-2022-4900 CVE-2024-25117

Disclaimer
This page contains threat intelligence information for the IPv4 address 199.188.200.10 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.