199.188.200.49 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 199.188.200.49 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Likely Malicious Host 🟠 64/100

Host and Network Information

  • Mitre ATT&CK IDs: T1021.001 - Remote Desktop Protocol, T1110 - Brute Force, T1184 - SSH Hijacking, T1192 - Spearphishing Link, T1194 - Spearphishing via Service, T1442 - Fake Developer Accounts, T1454 - Malicious SMS Message, T1566 - Phishing, T1583.001 - Domains, T1583.006 - Web Services, T1585.001 - Social Media Accounts, T1586 - Compromise Accounts, T1591.002 - Business Relationships

  • Tags: anydesk, as15169 as16509, as19871 as22612, as9002, business email compromise, c2, caas, fraud, hosting, identifying, parked domains, scams, ssh hijacking, typosquatting

  • JARM: 3fd3fd15d3fd3fd00042d42d000000038eaaf490bec8dc33757f165ce01762

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_fsa, hphosts_psh

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: bookingjob.store ateliernox.online shoesfrenzystore.online snapo.events rentown2.com nusaisociety.org elsu.info libertatedeacasa.com themoroccanship.com khatwakhatwa.com stempowerup.com reclutafast.lat aldiraa.com desertrosetan.com shappyhourmarketing.com moonglowmercantile.com ifeanyiiriele.com pintosstudiosdentallabinc.com grayhairjobs.com rapiduplift.com cosmicshaman.space lomoreuo.site ccosbykids.com absolute-sell.com senexegy.com z3consulting.services apspeyrcll.pro energy.techoassist.com www.easycash1.com broccolicz.xyz whittierbjj.com claritybookkeepingandpayroll.com vicomecr.com servoenterprise.com mindsocietyorganisation.com bononiavet.com easycash1.com frankfordequity.com cwlawfirmllp.com elinros.art fancyliving.ae tipsandbladez.com nimqfz.com metrofleetrepair.com houseofana.love immediatelyllzos.com smartlandsnft.com arxstorage.com azairportcarservice.com arp-transport.com quirantesfruits.com jemrefacciones.com empresslocks.com expatfinancesa.com finisor.com editique.net thebestovjrealt0t0.click carelesslyq.com masqueradew.com gantungan-kilau.com expansivoshop.com 5tyf.com miners-dt.com britanniacartel.com nivala.xyz classnotes.help foodologyhub.blog wishloja.com alabamawholesalebhm.com tech24hh.com www.riverpostplus.com riverpostplus.com wwwmeritking1789.site sunlandstellar.org thomaceglobal.com simaabacus.com thedoglovershub.com pikamon.info syncmyledgernano.app www.geonis.ro mkgloballtd.ca mpllyio.site honorite.pro portal.experts.org.sa kingobuy.com iauto.center worldtransinternational.com humamiatraders.com mycoolcoal.com entarmarket.com backend.zeroozen.com www.audioproacademy.com audioproacademy.com www.candyturk.com candyturk.com bicycelia.com www.bicycelia.com tzedaka.com.mx www.tzedaka.com.mx mmply.online ezadvertize.us mmply.site www.cachouseofprayer.org cachouseofprayer.org monopolydices.store langann.live pcdkenya.org linkcrypter.xyz megaspingames.us luckyspingames.us vikingspinlegends.com loboafrica.com bitcudo.com emilton-dt.com kristineeve.com thepowerplace.store discoveroman-srl.com solidbuild-srl.com jdvernce.com oncall2restore.com naturesceylonexports.com ofertairlene.lat fenngoldbergwedding.com techsnap.shop www.apkbazaar.store apkbazaar.store josskuba.com xn–5-xp1fg74a.com stakedoge-bakery.org www.stakedoge-bakery.org dawnkuba.com coretohealth.com smartpoweram.com buyukiptv.com brkicks2025.com nas-academy.net thegooseisloose.wtf xecomtheme.com truckerstrail.com contentslop.com hobaorganic.com lakytel.com alifbay.store gamesofsilkroute.store www.gamesofsilkroute.store bluecrest.pro wexblockx.lol afriwriters.com defunctionstudios.com xidusmigration.com uniqprod.com www.uniqprod.com rekruite.com galabet.casino confidencewhisper.com afrikamirror.com www.samp.hagecelle.com samp.hagecelle.com monstercointap.com otcmarketx.com sellifyagency.com bluepolariz.com khamaeil.com usualburrito.com samandulugulaw.com vivaluxyry.com letsrenewyourhealth.com madar-almobdaa.com microchippetfeeders.com herculesoffroad.com dropdogex.net thethomsonlawfirm.us mascotlegal.com.ng megawinamp.vip frankieflights.com cryptoonsphere.com nwinvts.pro pasham.online gibcoin.exchange basetardscto.com grandpashyeni.com nerrrruuururrb.com vlietveirnd.info patriot-quakes.com www.teampueo.com www.777reels.com myprivatejeweler.store skyhighbiz.online bonnernaset.online 777banking.host advices-inc.com teampueo.com satoshinakamoton.com pharmacychecks.com 777reels.com digiedgelab.com newhillssavings.com masterlatino.online www.bark-bougie.com bark-bougie.com bestonlinetips.net www.dadi-maaenterprise.info dadi-maaenterprise.info globeazy.online www.globeazy.online favela.live www.favela.live www.devpally.com www.wetestlink.com diraya.ca www.diraya.ca pandemoniumvisuals.com www.pandemoniumvisuals.com masterint.net scratchpaper.net www.fndwanderings.com fndwanderings.com minhfamilyjewellers.store colektorling.org heritchrisschools.org sparc.marketing yoursdelivery.live heartscaping.life remict.foundation windowworkspk.com tradicionfashions.com dinershokal.com cryproarbitrage.com sexscort.com millardjunegreenery.com hagecelle.com motorcycletransam.com mariannekidstv.com jmclegendaryproperties.com naumemedia.com ruselt.net dmcalaw.legal thing-a-bobs.com the3dlabs.com dustinkeversmith.com gokpeng.com elitevisionstudio.com iaays.org wetestlink.com www.sophie.techoassist.com sophie.techoassist.com setupoffice.pro www.setupoffice.pro www.ai-study-center.com astaampbest.vip soimnotalone.com www.theauroraskinclinic.ca theauroraskinclinic.ca getstartedonline.site getsetupnow.site brainstream.moithuti.com www.brainstream.moithuti.com socialens.net dos.origenestudios.com blog.mascothealthcare.com smartbitget.site 7bereich-congs.online evisaform.us amelaexpense.com coca-c0la.com hygrades.com brettyonbase.com www.pogideals.com pogideals.com www.mega4sbottling.com maayandruyan.com www.softsavvy.co.uk softsavvy.co.uk kawkabalasifr.com experts.org.sa sandyhookhoax.xyz hivissolana.site goodgoodthings.site 128url.site societycharity.org bestcomment.online wifniggers.meme doofenshmirtz.lol abrahamcallc.com digitalsafin.com clarityeq.com gyrodus.com jamiluzfx.com ursa808.com kirkiabxqw.com leightonpower.com cinemultimediaflix.com letsgetsetupnow.site samanatrading.com letsgetstartednow.site ezadvertize.com letsgetstarted.store startnewsetup.site getstartednow.site officeproductsetup.site d3vaug.store redeemofficekey.site stemcellrevitalisation.com legitvendor.store bgpms.site solidrock440.org giorgiolatour.dev windowtintingbroward.com cloudmonstershoes.com sanjaygoat.com myhumandogbeds.com moithuti.com zypecontent.com izjoebeatz.com innominado.com etsuyahayafoundation.com officeproductcode.online officeproductcode.site officeprosetup.site meme20200.wiki windzenithedge.site adb-adb.org sksk111.info abnaaalwadh.com devloplanet.com smartgreenhouseltd.com indigohomesisb.com draikotune.com liven-adhd.com qualitylabgrowndiamonds.com hababestnero88.com socialnads.com geeklivenow.com acreoptions.com ianjonesofficial.com bajaba-center.com ipsmarttv4k.com jackofallpets.com tlusdt.online veilbit.net webempty.space hovsepianevents.org sinbuwedding.online turetirotuestrategia.com bostotojackpot.com billiofixedmatchesbet.com infopublishingpreneur.com trustedassets.pro nicknnoni.com typec.vip itqan-ksa.org eafx.online sagapeak.group grasagusa.us saymonsolves.com mustyverse.com nituamandnituam.com pushbola858.xyz bonkbot.org annualreport.click trademinsolutions.com guardianssafe.com foodandcup.com coverages.pro edgewoodcg.net thetopgreek.com staceykingrei.com servicedogtrainersla.com perfecttiming101.shop hiasandinding-premium.com vk99rtp.info www.vk99rtp.info youngshiners.monster www.youngshiners.monster test.tzedaka.com.mx www.test.tzedaka.com.mx maihin.xyz laci-kotak.com jaipurfacetingclub.com metabitblaze.com zeushabanero88.com gampangmenang.art theroyalsofa.com clv-agency.com znation31.store apps7.online zsdigitalmarketing.agency stellar-repsol.com mpcrarchitectural.com zettinvst.com dumham.org mumuphuket.com pkrlivecash.com ai-study-center.com buildabodyyoulove.com denslot.xyz ganacsi.info austinbiolab.com vfsbiometric.com holycitycashdeals.com matroenergy.com limonetintercontinental.com inoxcvas.com bitflexltd.com oluwasegunodesola.com apebot.dev bajaba.sa ayukmasak.com thebestyouevacom.com fortunegrowthpro.com nautwestglobe.online bestfiten.store gdsownfriendsblog.fun aitopart.com turixz.com integritylegalfirm.com senderabox.shop swift-service.net messinc.pro desscleaningservices.pro jayvisiontv.bio tronsprofit.com wallstmemes.dex.claims foxtechnologies.net ifyoucombine.com wonderlandblogs.online amayazine.com heligonsystems.com projecresource.com focuspointkz.com truecable.site runningroots.org dex.claims ameritrades.xyz dominodeveloper.lat pgql.lat virtualfren.com swral.com stoupakislaw.com hurdinsuranceadvisors.com multiversetrade.com tilaalalmasakin.com mn-rentals.com gmalimran.com devpally.com fitcoin.site xms.world hooponopono.consulting valuetennisbets.com herfpower.com ithrivecommunity.com bettermentlive.com fletcherplumbingfl.com genuine-trade.ltd aqgcollection.com calibrateproject.com lxpmd.pro buzzdiy.com www.buzzdiy.com vibrim.studio cncsgrantsusa.online uprise.ltd worm-site.com vasilytech.com nkimz.com www.pawliciousmart.com pawliciousmart.com bandogatewa.xyz christykatuonline.com veraodoms.com ceevtu.com www.ceevtu.com hkmines.com tarheeltourism.com creditcoindesk.com skyeexprexmovers.com yourpackinfo.com test.tangledclothing.com www.test.tangledclothing.com contentalign.online shipping.tronsprofit.com www.shipping.tronsprofit.com www.broker1.tronsprofit.com broker1.tronsprofit.com broker3.tronsprofit.com www.broker3.tronsprofit.com broker2.tronsprofit.com www.broker2.tronsprofit.com owenobrien.xyz tangledclothing.com volverjuntos.com shop.essaynotch.com www.shop.essaynotch.com www.owtango.com owtango.com www.admin.tzedaka.com.mx admin.tzedaka.com.mx zero4.mk www.app.autorepair-x.com app.autorepair-x.com

Malware Detected on Host

Count: 2 36144747bc96b919cb2e1d0ca172d86ebc2f38d85f2ad5e96e32dde2f5709c68 9e7d38e58659f0f0adc80e1214409b8eb960523958d604da5c433fa21769aeef

Open Ports Detected

21 443 53 80

CVEs Detected

CVE-2016-10735 CVE-2018-14040 CVE-2018-14042 CVE-2018-20676 CVE-2018-20677 CVE-2019-8331 CVE-2024-6484

Map

Whois Information

  • NetRange: 199.188.200.0 - 199.188.207.255
  • CIDR: 199.188.200.0/21
  • NetName: NCNET-1
  • NetHandle: NET-199-188-200-0-1
  • Parent: NET199 (NET-199-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS16626, AS174, AS4323, AS3356, AS22612, AS32421
  • Organization: Namecheap, Inc. (NAMEC-4)
  • RegDate: 2011-08-03
  • Updated: 2015-03-24
  • Comment: http://namecheap.com
  • Comment: for any abuse please use: abuse@namecheap.com
  • Ref: https://rdap.arin.net/registry/ip/199.188.200.0
  • OrgName: Namecheap, Inc.
  • OrgId: NAMEC-4
  • Address: 11400 W. Olympic Blvd. Suite 200
  • City: Los Angeles
  • StateProv: CA
  • PostalCode: 90064
  • Country: US
  • RegDate: 2011-01-28
  • Updated: 2024-11-25
  • Ref: https://rdap.arin.net/registry/entity/NAMEC-4
  • OrgAbuseHandle: ABUSE2885-ARIN
  • OrgAbuseName: Abuse team
  • OrgAbusePhone: +1-323-375-2822
  • OrgAbuseEmail: abuse@namecheaphosting.com
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2885-ARIN
  • OrgTechHandle: TECHT4-ARIN
  • OrgTechName: Tech team
  • OrgTechPhone: +1-661-310-2107
  • OrgTechEmail: tech@namecheaphosting.com
  • OrgTechRef: https://rdap.arin.net/registry/entity/TECHT4-ARIN
  • OrgTechHandle: EFIME-ARIN
  • OrgTechName: Efimenko, Igor
  • OrgTechPhone: +1-323-375-2822
  • OrgTechEmail: igor.e@namecheap.com
  • OrgTechRef: https://rdap.arin.net/registry/entity/EFIME-ARIN
  • network:Class-Name:network
  • network:Auth-Area:199.188.200.0/24
  • network:ID:NET-40039.199.188.200.49
  • network:IP-Network:199.188.200.49
  • network:IP-Network-Block:199.188.200.49
  • network:Org-Name:Web-hosting.com
  • network:Street-Address:3402 East University Drive
  • network:City:Phoenix
  • network:State:AZ
  • network:Postal-Code:85034
  • network:Country-Code:US
  • network:Tech-Contact:MAINT-40039.199.188.200.49
  • network:Created:20170405113115000
  • network:Updated:20170519132425000
  • network:Updated-By:net-admin@namecheap.com
  • contact:POC-Name:Network team
  • contact:POC-Email:net-admin@namecheap.com
  • contact:POC-Phone:
  • contact:Tech-Name:Network team
  • contact:Tech-Email:net-admin@namecheap.com
  • contact:Tech-Phone:
  • contact:Abuse-Name:Abuse team
  • contact:Abuse-Email:abuse@namecheaphosting.com

Links to attack logs

****** ****** ******

Share on: