199.253.30.147 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 199.253.30.147 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟠 Elevated — 55/100

Geographic Location

Host and Network Information

Tags

  • Bruteforce
  • Brute-Force
  • cowrie
  • ssh
  • SSH

MITRE ATT&CK TTPs

  • T1078 - Valid Accounts
  • T1083 - File and Directory Discovery
  • T1098.004 - SSH Authorized Keys
  • T1105 - Ingress Tool Transfer
  • T1110.004 - Credential Stuffing
  • T1110 - Brute Force

Attack Log References

Whois Information

NetRange: 199.253.28.0 - 199.253.31.255 CIDR: 199.253.28.0/22 NetName: LEVELONESERVERS-V4-03 NetHandle: NET-199-253-28-0-1 Parent: NET199 (NET-199-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: PureVoltage Hosting Inc. (PH-710) RegDate: 2022-04-08 Updated: 2025-07-21 Comment: Report abuse: http://purevolta.ge/abuse Ref: https://rdap.arin.net/registry/ip/199.253.28.0 OrgName: PureVoltage Hosting Inc. OrgId: PH-710 Address: 7 Teleport Drive Address: Suite P City: Staten Island StateProv: NY PostalCode: 10311 Country: US RegDate: 2020-10-19 Updated: 2025-05-17 Comment: https://purevoltage.com Comment: Providing colocation, dedicated servers, 10G, 20G, 40g,100G unmetered servers and bandwidth. Ref: https://rdap.arin.net/registry/entity/PH-710 OrgRoutingHandle: ADMIN3215-ARIN OrgRoutingName: Admin Operations OrgRoutingPhone: +1-855-787-8658 OrgRoutingEmail: abuse@purevoltage.com OrgRoutingRef: https://rdap.arin.net/registry/entity/ADMIN3215-ARIN OrgAbuseHandle: ADMIN3215-ARIN OrgAbuseName: Admin Operations OrgAbusePhone: +1-855-787-8658 OrgAbuseEmail: abuse@purevoltage.com OrgAbuseRef: https://rdap.arin.net/registry/entity/ADMIN3215-ARIN OrgDNSHandle: ADMIN3215-ARIN OrgDNSName: Admin Operations OrgDNSPhone: +1-855-787-8658 OrgDNSEmail: abuse@purevoltage.com OrgDNSRef: https://rdap.arin.net/registry/entity/ADMIN3215-ARIN OrgTechHandle: ADMIN3215-ARIN OrgTechName: Admin Operations OrgTechPhone: +1-855-787-8658 OrgTechEmail: abuse@purevoltage.com OrgTechRef: https://rdap.arin.net/registry/entity/ADMIN3215-ARIN NetRange: 199.253.30.0 - 199.253.30.255 CIDR: 199.253.30.0/24 NetName: PLOXHOST-NYC NetHandle: NET-199-253-30-0-1 Parent: LEVELONESERVERS-V4-03 (NET-199-253-28-0-1) NetType: Reallocated OriginAS: Organization: PloxHost (ZL-92) RegDate: 2022-08-04 Updated: 2022-08-04 Comment: https://plox.host/ Comment: network-contact@plox.host Ref: https://rdap.arin.net/registry/ip/199.253.30.0 OrgName: PloxHost OrgId: ZL-92 Address: ZoomingWork LLC Address: 867 Boylston Street City: Boston StateProv: MA PostalCode: 02116 Country: US RegDate: 2021-03-29 Updated: 2022-07-07 Ref: https://rdap.arin.net/registry/entity/ZL-92 OrgDNSHandle: NOCTE39-ARIN OrgDNSName: NOC Team OrgDNSPhone: +1-833-334-0756 OrgDNSEmail: network-contact@plox.host OrgDNSRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgAbuseHandle: NOCTE39-ARIN OrgAbuseName: NOC Team OrgAbusePhone: +1-833-334-0756 OrgAbuseEmail: network-contact@plox.host OrgAbuseRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgNOCHandle: NOCTE39-ARIN OrgNOCName: NOC Team OrgNOCPhone: +1-833-334-0756 OrgNOCEmail: network-contact@plox.host OrgNOCRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgTechHandle: NOCTE39-ARIN OrgTechName: NOC Team OrgTechPhone: +1-833-334-0756 OrgTechEmail: network-contact@plox.host OrgTechRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgRoutingHandle: NOCTE39-ARIN OrgRoutingName: NOC Team OrgRoutingPhone: +1-833-334-0756 OrgRoutingEmail: network-contact@plox.host OrgRoutingRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN NetRange: 199.253.30.144 - 199.253.30.255 CIDR: 199.253.30.192/26, 199.253.30.144/28, 199.253.30.160/27 NetName: PLOXHOST-NYC NetHandle: NET-199-253-30-144-1 Parent: PLOXHOST-NYC (NET-199-253-30-0-1) NetType: Reassigned OriginAS: Customer: PloxHost (C09111430) RegDate: 2022-12-29 Updated: 2022-12-29 Comment: https://plox.host Comment: network-contact@plox.host Ref: https://rdap.arin.net/registry/ip/199.253.30.144 CustName: PloxHost Address: 7 Teleport Drive City: Staten Island StateProv: NY PostalCode: 10311 Country: US RegDate: 2022-12-29 Updated: 2022-12-29 Ref: https://rdap.arin.net/registry/entity/C09111430 OrgDNSHandle: NOCTE39-ARIN OrgDNSName: NOC Team OrgDNSPhone: +1-833-334-0756 OrgDNSEmail: network-contact@plox.host OrgDNSRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgAbuseHandle: NOCTE39-ARIN OrgAbuseName: NOC Team OrgAbusePhone: +1-833-334-0756 OrgAbuseEmail: network-contact@plox.host OrgAbuseRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgNOCHandle: NOCTE39-ARIN OrgNOCName: NOC Team OrgNOCPhone: +1-833-334-0756 OrgNOCEmail: network-contact@plox.host OrgNOCRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgTechHandle: NOCTE39-ARIN OrgTechName: NOC Team OrgTechPhone: +1-833-334-0756 OrgTechEmail: network-contact@plox.host OrgTechRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN OrgRoutingHandle: NOCTE39-ARIN OrgRoutingName: NOC Team OrgRoutingPhone: +1-833-334-0756 OrgRoutingEmail: network-contact@plox.host OrgRoutingRef: https://rdap.arin.net/registry/entity/NOCTE39-ARIN