20.84.106.73 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 20.84.106.73 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 30/100

Host and Network Information

  • Tags: Malicious IP, RDP, admin, blacklist, botnet, mirai, nmap, port-scan, scan, tcp, win, windows
  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network: AS8075 microsoft corporation
  • Noticed: 8 times
  • Protcols Attacked: SSH

Malware Detected on Host

Count: ebd54ef210faba2fc5df4942c67d8d5c305e1ff8aee7bd49ea32c077af47e4fa ebd54ef210faba2fc5df4942c67d8d5c305e1ff8aee7bd49ea32c077af47e4fa ebd54ef210faba2fc5df4942c67d8d5c305e1ff8aee7bd49ea32c077af47e4fa 5bf0067f9c95641de081afa7da10473dd7f7aa78303da12bcf7c2ba8a232a5dd 5bf0067f9c95641de081afa7da10473dd7f7aa78303da12bcf7c2ba8a232a5dd

Map

Whois Information

  • inetnum: 111.68.98.145 - 111.68.98.158
  • netname: PERN-PK
  • descr: PERN, IP Allocation
  • country: PK
  • admin-c: AC967-AP
  • tech-c: WAK1-AP
  • abuse-c: AH1072-AP
  • status: ASSIGNED NON-PORTABLE

    Potentially Malicious Host 🟡 35/100

  • mnt-by: MAINT-PK-PERN

    Host and Network Information

  • mnt-irt: IRT-HECPERN-PK
  • Tags: Nextray, awssafrica, badrequest, bruteforce, cowrie, cyber security, ioc, malicious, phishing, probing, scanning, telnet, webscan, webscanner, webscanner bruteforce web app attack
  • last-modified: 2021-01-26T21:55:01Z
  • View other sources: Spamhaus VirusTotal

  • irt: IRT-HECPERN-PK
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: MK575-AP
  • tech-c: AC967-AP
  • mnt-by: MAINT-PK-PERN
  • last-modified: 2023-04-25T13:47:06Z
  • role: ABUSE HECPERNPK
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: MK575-AP
  • tech-c: AC967-AP
  • nic-hdl: AH1072-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-04-25T13:47:29Z
  • person: Abdullah Fayaz Chattha
  • nic-hdl: AC967-AP
  • e-mail: [email protected]
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • phone: +92-51-9040435
  • fax-no: +92-51-9257529
  • country: PK
  • mnt-by: MAINT-NEW
  • Country: * last-modified: 2008-09-04T07:49:15Z United States
  • Network: * person: Waqas Ahmed Khan AS45899 vnpt corp
  • address: Data Center, Higher Education Commission
  • address: Sector H-9, Islamabad
  • Noticed: 23 times
  • address: Pakistan
  • Protcols Attacked: * country: PK SSH
  • phone: +92-51-90406009
  • Passive DNS Results: * fax-no: +92-51-9257529 get-local-dating.life findlocalprize.life your-ladie-fun.life find-your-hot-men.life hotlocalfinder.life winner-is-here.life offer-store.life happy-winners-here.life hot-dating-store.life your-best-profits.life top-investment.life dating-place.life findhotlocal.life bonus-4u.life hotlocalfinder.top datingromance.life open-dating-here.life yourbestmatch.life find-your-men13.com
  • e-mail: [email protected]
  • nic-hdl: WAK1-AP

Map* mnt-by: MAINT-PK-PERN

  • last-modified: 2016-10-28T06:31:46Z

Whois Information

  • route: 111.68.98.0/24
  • origin: AS45773
  • inetnum: 111.68.98.145 - 111.68.98.158
  • netname: PERN-PK
  • descr: HEC
  • descr: PERN, IP Allocation
  • mnt-by: MAINT-PK-PERN
  • country: PK
  • last-modified: 2019-02-28T06:47:51Z
  • admin-c: AC967-AP
  • [email protected]
  • admin-c: HL1318-AP
  • tech-c: WAK1-AP
  • tech-c: HL1318-AP
  • abuse-c: AH1072-AP
  • nic-hdl: ct74-AP
  • status: ASSIGNED NON-PORTABLE
  • notify: [email protected]
  • mnt-by: MAINT-PK-PERN
  • mnt-by: MAINT-cn-cmcc
  • mnt-irt: IRT-HECPERN-PK
  • abuse-mailbox: [email protected]
  • last-modified: 2021-01-26T21:55:01Z
  • last-modified: 2016-11-29T09:37:27Z
  • irt: IRT-HECPERN-PK
  • person: haijun li
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • nic-hdl: HL1318-AP
  • e-mail: [email protected]
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • address: 29,Jinrong Ave, Xicheng district,beijing,100032
  • admin-c: MK575-AP
  • phone: +86 1052686688
  • tech-c: AC967-AP
  • fax-no: +86 10 52616187
  • mnt-by: MAINT-PK-PERN
  • country: CN
  • last-modified: 2023-04-25T13:47:06Z
  • mnt-by: MAINT-CN-CMCC
  • role: ABUSE HECPERNPK
  • abuse-mailbox: [email protected]
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • country: ZZ
  • last-modified: 2016-11-29T09:38:38Z
  • phone: +000000000
  • route: 111.0.0.0/10
  • descr: China Mobile communications corporation
  • e-mail: [email protected]
  • admin-c: MK575-AP
  • origin: AS9808
  • mnt-by: MAINT-CN-CMCC
  • tech-c: AC967-AP
  • last-modified: 2012-02-15T08:47:26Z
  • nic-hdl: AH1072-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-04-25T13:47:29Z
  • person: Abdullah Fayaz Chattha
  • nic-hdl: AC967-AP
  • e-mail: [email protected]
  • address: Data Center, Higher Education Commission, Sector H-9 Islamabad
  • phone: +92-51-9040435
  • fax-no: +92-51-9257529
  • country: PK
  • mnt-by: MAINT-NEW
  • last-modified: 2008-09-04T07:49:15Z
  • person: Waqas Ahmed Khan
  • address: Data Center, Higher Education Commission
  • address: Sector H-9, Islamabad
  • address: Pakistan
  • country: PK
  • phone: +92-51-90406009
  • fax-no: +92-51-9257529
  • e-mail: [email protected]
  • nic-hdl: WAK1-AP
  • mnt-by: MAINT-PK-PERN
  • last-modified: 2016-10-28T06:31:46Z
  • route: 111.68.98.0/24
  • origin: AS45773
  • descr: HEC
  • mnt-by: MAINT-PK-PERN
  • last-modified: 2019-02-28T06:47:51Z
  • [email protected]
  • admin-c: HL1318-AP
  • tech-c: HL1318-AP
  • nic-hdl: ct74-AP
  • notify: [email protected]
  • mnt-by: MAINT-cn-cmcc
  • abuse-mailbox: [email protected]
  • last-modified: 2016-11-29T09:37:27Z
  • person: haijun li
  • nic-hdl: HL1318-AP
  • e-mail: [email protected]
  • address: 29,Jinrong Ave, Xicheng district,beijing,100032
  • phone: +86 1052686688
  • fax-no: +86 10 52616187
  • country: CN
  • mnt-by: MAINT-CN-CMCC
  • abuse-mailbox: [email protected]
  • last-modified: 2016-11-29T09:38:38Z
  • route: 111.0.0.0/10
  • descr: China Mobile communications corporation
  • origin: AS9808
  • mnt-by: MAINT-CN-CMCC
  • last-modified: 2012-02-15T08:47:26Z