199.19.225.153 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 199.19.225.153 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 45/100
Host and Network Information
-
Tags: cyber security, ioc, malicious, Nextray, phishing
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network:
- Noticed: 30 times
- Protocols Attacked: ntp
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
Open Ports Detected
10000 1012 1023 1024 1026 1028 1029 106 1080 1099 11 1103 111 1111 113 1153 1167 1177 1181 1188 119 1200 121 122 1234 1245 1290 13 1311 1337 1343 135 1370 1387 1400 1414 143 1433 1443 1453 1459 1471 1521 1599 1604 1660 1723 1741 175 177 179 1800 1801 1883 189 19 190 1911 1925 1926 1935 1947 195 1952 1954 1955 1957 1958 1960 1962 1964 1967 1968 1971 1975 1976 1981 1982 1983 1986 1989 1990 2000 2001 2002 2003 2006 2008 2049 2050 2057 2061 2065 2066 2067 2069 2070 2072 2077 2082 2083 2086 2087 2091 21 2100 2103 2107 2108 2109 2121 2133 2134 2150 2154 2181 2196 22 221 2210 222 2222 2225 2250 2266 2271 23 2332 234 2345 2351 2352 2362 2375 2376 2379 24 2404 2435 2453 2455 2480 2506 2548 2549 2551 2552 2559 2560 2561 2570 26 2628 263 264 2701 2761 2762 2806 285 2850 2995 3000 3001 3002 3004 3009 3010 3020 3042 3048 3049 3050 3051 3062 3072 3073 3079 3087 3091 3101 3109 311 3110 3113 3115 3125 3128 3136 3137 3139 3141 3144 3146 3155 3158 3159 3160 3166 3172 3173 3174 3176 3179 3187 3188 3190 3193 3194 3196 3198 3260 3268 3269 3299 3301 3306 3310 3333 3352 3365 3388 3389 340 3405 3406 3460 3498 3524 3530 3541 3542 3548 3551 3557 3558 3563 3567 3568 3689 37 3780 3790 389 3910 3954 4000 4021 4022 4040 4042 4043 4063 4064 4100 4101 4104 4147 4150 4172 4190 4200 427 4282 43 4300 4321 4343 4344 4369 443 4431 4433 4434 444 4440 4443 4449 445 4461 4463 4466 448 4482 449 4499 4500 4505 4506 4510 452 4520 4530 4543 4567 4572 4664 4700 4734 4782 4786 4808 4840 4848 488 4899 4911 4949 5000 5001 5005 5006 5007 5009 5010 502 503 5051 5080 5093 5100 513 5140 515 5180 5190 5201 5209 522 5222 5226 5229 5230 5236 5237 5240 5242 5244 5246 5247 5254 5255 5257 5262 5265 5269 5270 5274 5276 5277 53 5357 5400 541 5435 5494 5495 554 5543 5556 5557 5560 5601 5614 5672 5696 5801 5858 5900 5901 5904 591 5916 5918 593 5938 5984 5985 5986 5987 5996 6000 6001 6002 6004 6005 6006 6010 602 6080 6081 6161 6308 631 632 6352 636 6400 6433 6440 6443 6464 6488 65 6503 6505 6544 6588 6622 6633 6653 666 6664 6668 6688 6697 6699 6700 6779 6799 70 700 7001 7002 7005 7011 7012 7014 7016 7057 7071 7081 7082 7083 7084 7090 7170 7171 7173 7218 7272 7325 7331 7349 7401 7415 7434 7441 7443 7474 7493 7547 7548 7634 7657 7676 771 772 7776 7778 7779 7782 7788 7801 7887 789 7980 7989 80 8000 8001 8002 8005 8006 8008 8009 8010 8011 8016 8019 8025 8028 8038 8048 8049 8053 8059 8060 8063 8065 8069 8076 8080 8081 8083 8085 8086 8087 8089 8090 8093 8096 8098 8099 81 8102 8103 8106 8108 8109 811 8112 8113 8114 8121 8123 8125 8126 8127 8128 8129 8131 8132 8138 8139 8140 8144 8149 8153 8156 8163 8165 8169 8172 8173 8175 8177 8181 8183 8186 8187 8188 8192 8193 8194 8196 8198 82 8200 8222 8230 8239 8241 8249 8252 8285 8291 83 8300 831 8322 8333 8334 8340 84 8401 8414 8417 8419 8423 8428 8429 8430 8436 8441 8443 8445 8449 8460 8463 8473 8480 8481 8493 8502 8506 8515 8519 8523 8531 8532 8536 8540 8543 8545 8549 8550 8554 8557 8561 8562 8568 8569 8573 8574 8575 8577 8578 8581 8582 8590 8591 8592 8596 8599 86 8600 8605 8606 8623 8641 8643 8649 8663 8680 8703 8708 8709 8723 873 8745 8765 8771 8787 8790 88 8800 8801 8802 8803 8812 8813 8815 8821 8826 8828 8829 8831 8833 8835 8836 8839 8844 8845 8846 8847 8854 886 8862 8866 8872 888 8880 8881 8888 8889 8891 8901 8906 8907 8916 8935 8969 8980 8988 8993 9000 9001 9002 9003 9008 9009 9011 9016 9017 9019 902 9022 9024 9028 9031 9033 9035 9038 9041 9042 9043 9048 9051 9053 9059 9069 9070 9073 9079 9080 9086 9088 9089 9090 9091 9092 9093 9094 9095 9100 9106 9109 9114 9115 9119 9121 9127 9136 9138 9139 9144 9145 9146 9150 9151 9158 9165 9166 9169 9170 9171 9175 9179 9186 9187 9191 9194 9196 92 9200 9201 9202 9204 9210 9212 9214 9215 9219 9221 9222 9230 9242 9245 9248 9250 9253 9256 9283 9292 9295 93 9301 9304 9305 9306 9307 9308 9353 9389 9393 9398 9400 9418 9443 9445 947 95 9513 9530 9553 9595 9600 9606 9611 9682 9700 9754 9761 9779 98 9800 9869 9872 9876 9898 992 9929 9939 994 9943 9944 995 9950 9981 9988 9990 9992 9993 9997 9998 9999
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-20372 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-23017 CVE-2021-3618 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-44487 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465
Map
Whois Information
- NetRange: 199.19.224.0 - 199.19.227.255
- CIDR: 199.19.224.0/22
- NetName: PONYNET-01
- NetHandle: NET-199-19-224-0-1
- Parent: NET199 (NET-199-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS18779, AS53667
- Organization: FranTech Solutions (SYNDI-5)
- RegDate: 2010-08-03
- Updated: 2012-03-25
- Ref: https://rdap.arin.net/registry/ip/199.19.224.0
- OrgName: FranTech Solutions
- OrgId: SYNDI-5
- Address: 1621 Central Ave
- City: Cheyenne
- StateProv: WY
- PostalCode: 82001
- Country: US
- RegDate: 2010-07-21
- Updated: 2024-11-25
- Ref: https://rdap.arin.net/registry/entity/SYNDI-5
- OrgAbuseHandle: FDI19-ARIN
- OrgAbuseName: Dias, Francisco
- OrgAbusePhone: +1-778-977-8246
- OrgAbuseEmail: fdias@frantech.ca
- OrgAbuseRef: https://rdap.arin.net/registry/entity/FDI19-ARIN
- OrgTechHandle: FDI19-ARIN
- OrgTechName: Dias, Francisco
- OrgTechPhone: +1-778-977-8246
- OrgTechEmail: fdias@frantech.ca
- OrgTechRef: https://rdap.arin.net/registry/entity/FDI19-ARIN
Links to attack logs
****** awsau-ntp-bruteforce-ip-list-2021-02-16 aws-ntp-bruteforce-ip-list-2021-02-27 awsau-ntp-bruteforce-ip-list-2021-02-27 ****** ****** awsbah-ntp-bruteforce-ip-list-2021-02-16
Share on: