199.195.248.138 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 199.195.248.138 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 46/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network:
  • Noticed: 29 times
  • Protocols Attacked: SSH
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: www.nagypeti.eu nagypeti.eu www.nagypeti.com nagypeti.com

Open Ports Detected

10000 1002 1012 102 1023 1024 1025 1027 104 1080 1099 11 110 1103 111 1110 113 1153 1177 119 1190 1200 122 1234 1235 1245 1290 1291 13 131 1311 1337 1343 1344 135 1364 1387 1388 1400 1414 143 1433 1443 1446 1458 1460 1471 1521 154 1557 1588 1599 1604 1660 17 1723 1741 175 177 180 1800 1801 1833 1883 189 19 1911 192 1925 1926 1935 195 1950 1957 1960 1962 1968 1969 1971 1974 1977 1982 199 2 2000 2002 2003 2008 2022 2030 2052 2054 2055 2057 2058 2059 2061 2064 2067 2078 2081 2082 2083 2085 2086 2087 2090 2091 2096 21 2100 2107 211 2111 2121 2130 2134 2154 2181 2195 22 2200 2202 221 2210 2211 2222 2223 225 2259 2320 2323 2327 2332 234 2345 2351 2352 2353 2362 2375 2376 2379 2404 2433 2453 2455 2480 2506 2525 2556 2560 2561 2562 2567 2568 2572 2598 2599 26 2602 2628 263 264 2761 2806 285 2985 3000 3001 3003 3006 3007 3009 3011 3015 3016 3017 3048 3050 3053 3054 3060 3062 3065 3073 3075 3076 3077 3078 3079 3081 3083 3088 3091 3093 3095 3106 3107 311 3110 3111 3119 3121 3123 3124 3125 3127 3128 3134 3135 3138 3144 3145 3149 3152 3156 3160 3163 3164 3166 3167 3172 3176 3178 3180 3186 3193 3198 3199 3200 3211 3260 3268 3269 3270 3299 3301 3306 3310 3333 3337 3341 3388 3389 340 3400 3401 3406 3412 3460 3479 3541 3542 3549 3551 3556 3558 3559 3561 3566 3568 3569 3572 3689 3749 3780 3790 3841 3842 389 3922 3952 4000 4022 4040 4042 4063 4064 4085 4095 4100 4150 4160 4190 4242 4244 4250 427 4282 43 4321 4344 4369 443 4433 4434 4437 444 4443 4444 4449 445 446 4463 447 4488 4499 4500 4502 4506 4567 4572 4664 4747 4782 4786 4821 4840 4848 488 4899 49 4911 4949 4993 5000 5001 5002 5005 5006 5007 5009 5010 502 5022 5025 503 5061 5070 5083 5089 5119 5120 513 515 5201 5209 5222 5227 5228 5234 5240 5241 5242 5243 5245 5248 5250 5255 5256 5263 5264 5265 5271 5272 5274 5278 5351 5357 541 5432 5435 5446 548 5500 5503 554 5552 5555 5556 5560 5567 5593 5596 5598 5609 5613 5630 5650 5672 5701 5800 5801 5853 5858 5900 5903 5905 5909 5912 5913 5914 5918 593 5938 5984 5986 5990 5992 5993 5995 5998 6000 6001 6002 6005 6006 6010 602 6060 6070 6080 6134 6161 6264 6308 631 6331 6348 636 6379 6380 6405 6443 646 6464 6482 6513 6514 6543 6556 6588 66 6601 6603 6622 6633 666 6661 6664 6666 6667 6668 6697 675 6775 6955 70 7001 7010 7016 7018 7022 7057 7071 7083 7084 7088 7090 7100 7171 7218 7348 7373 7401 7415 743 7434 7443 7445 7465 7473 7474 7480 7493 7537 7547 7548 7603 7634 7657 771 772 777 7771 7777 7779 7780 7799 7801 785 7887 789 79 7900 7979 7989 80 8000 8001 8007 8008 8009 8012 8017 8025 8028 8032 8034 8037 8039 8042 8043 8045 8047 805 8050 8051 8055 8057 8060 8062 8069 8071 8072 8080 8081 8083 8084 8085 8086 8087 8089 8090 8091 8095 8098 8099 81 8101 8102 8103 8105 8107 811 8110 8111 8112 8114 8116 8119 8120 8121 8123 8126 8129 8135 8139 8140 8148 8149 8151 8153 8155 8156 8160 8163 8170 8171 8172 8173 8175 8176 8181 8182 8185 8188 8189 8190 8193 8198 82 8200 8237 8250 8282 8291 83 8333 8334 8340 8382 84 8402 8404 8406 8417 8424 8425 8427 8428 843 8430 8434 8435 8436 8440 8442 8443 8446 8454 8455 8459 8462 8464 8467 8482 8494 8503 8510 8523 8525 8532 8533 8544 8545 8551 8554 8560 8565 8574 8575 8577 8582 8583 8586 8589 8590 8591 8595 86 8601 8605 8621 8641 8643 8649 87 8700 8701 8706 8709 8728 873 8743 8764 8782 88 880 8800 8806 8807 8808 8811 8815 8819 8824 8826 8828 8829 8832 8834 8838 8842 8843 8853 8855 8856 8858 8859 8860 8865 8867 8868 8870 8871 8880 8881 8884 8888 8889 8899 89 8905 8906 8989 9000 9001 9002 9004 9005 9008 9015 9017 902 9020 9021 9027 9028 9030 9034 9035 9037 9041 9042 9045 9050 9051 9055 9060 9062 9065 9069 9070 9071 9074 9080 9086 9090 9091 9092 9093 9095 9099 91 9100 9102 9103 9107 9111 9112 9114 9117 9121 9124 9125 9126 9133 9134 9150 9151 9153 9156 9157 9158 9160 9163 9164 9169 9170 9172 9173 9181 9182 9191 9198 9200 9202 9204 9205 9206 9207 9209 9217 9221 9236 9245 9249 9252 9257 9273 9289 9292 9295 9300 9301 9306 9310 9333 9351 9383 9398 94 9410 9418 9446 9447 9488 9505 9510 9513 9530 9595 9600 9611 9663 97 9710 9743 9761 9797 9800 9802 9803 9876 9885 9888 9898 9899 9902 9919 992 9923 9928 9929 993 9943 9944 995 9966 9981 9988 9998 9999

CVEs Detected

CVE-2021-23017 CVE-2021-3618 CVE-2023-44487

Map

Whois Information

Links to attack logs

telnet-bruteforce-ip-list-2020-11-11 ****** ****** ******

Share on: