205.185.199.12 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 205.185.199.12 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 5/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: United States
- Network: AS33438 highwinds network group inc.
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
Malware Detected on Host
Count: 1 63994ceaf61df6d150193d409ac109451519e88a185f08283a7bb8131dcf6ce5
Open Ports Detected
10001 10134 102 1024 10243 10554 10909 1099 11 110 111 11112 113 11300 11371 11434 119 12000 12345 13 1311 13579 1400 14147 14265 1433 14344 1471 15 1521 1599 16010 16030 1604 16992 17 1723 1741 175 1800 18245 1883 19 19071 1911 1925 1935 195 2000 20000 2002 20256 2052 20547 2067 2081 2082 2086 2087 21025 2121 21379 2154 2181 22 22067 2222 23023 2345 2375 2379 2404 2480 25 25001 25105 26 264 27015 27017 2761 2762 3000 3001 3072 3077 3100 3113 3128 32400 3260 3269 32764 3299 3310 3333 3388 3389 3460 35000 3541 3542 3551 3689 37 3749 37777 4000 4040 4242 43 4321 4369 44158 444 445 44818 4506 4567 4664 4782 4786 4840 4848 4899 49 49153 5000 5005 50050 50070 5009 502 5025 503 515 5201 522 5222 5269 52869 53 5357 54138 5435 554 5555 5560 5601 5605 5672 5800 5801 5822 5858 587 5900 5901 5938 5984 5985 59980 6000 60001 6001 60010 60030 6080 6264 631 6379 6580 6633 6653 666 6664 6668 70 7415 7434 7465 7474 7493 7547 7657 771 7777 7779 789 7900 7989 80 8000 8001 8002 8008 8010 8060 8069 8080 8086 8087 8090 8098 81 8102 8112 8126 8143 82 8200 8291 83 8334 84 8554 8602 8649 8728 8767 88 8800 8888 89 9009 9027 9042 9080 9090 9100 9103 9191 92 9200 9295 9306 9418 9530 9595 9800 9869 9876 9898 993 9944 9981 9999
Map
Whois Information
- NetRange: 205.185.199.0 - 205.185.199.255
- CIDR: 205.185.199.0/24
- NetName: NETPROTECT
- NetHandle: NET-205-185-199-0-2
- Parent: NET205 (NET-205-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS54203
- Organization: Netprotect, Inc. (NETPR-14)
- RegDate: 2009-08-03
- Updated: 2023-06-14
- Ref: https://rdap.arin.net/registry/ip/205.185.199.0
- OrgName: Netprotect, Inc.
- OrgId: NETPR-14
- Address: 114 5th Avenue
- Address: 15th Floor
- City: New York
- StateProv: NY
- PostalCode: 10011
- Country: US
- RegDate: 2020-11-13
- Updated: 2023-04-17
- Ref: https://rdap.arin.net/registry/entity/NETPR-14
- OrgAbuseHandle: NAD113-ARIN
- OrgAbuseName: Netprotect Abuse Department
- OrgAbusePhone: +1-800-591-5241
- OrgAbuseEmail: abuse@netprotect.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/NAD113-ARIN
- OrgTechHandle: NNO107-ARIN
- OrgTechName: Netprotect Network Operations
- OrgTechPhone: +1-800-591-5241
- OrgTechEmail: noc@netprotect.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NNO107-ARIN
- NetRange: 205.185.199.0 - 205.185.199.255
- CIDR: 205.185.199.0/24
- NetName: NETPROTECT-LAX-SP
- NetHandle: NET-205-185-199-0-3
- Parent: NETPROTECT (NET-205-185-199-0-2)
- NetType: Reassigned
- OriginAS: AS54203
- Customer: Netprotect (C08137774)
- RegDate: 2021-12-19
- Updated: 2023-06-14
- Ref: https://rdap.arin.net/registry/ip/205.185.199.0
- CustName: Netprotect
- Address: 900 N. Alameda St.
- City: Los Angeles
- StateProv: CA
- PostalCode: 90012
- Country: US
- RegDate: 2021-12-19
- Updated: 2021-12-19
- Ref: https://rdap.arin.net/registry/entity/C08137774
- OrgAbuseHandle: NAD113-ARIN
- OrgAbuseName: Netprotect Abuse Department
- OrgAbusePhone: +1-800-591-5241
- OrgAbuseEmail: abuse@netprotect.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/NAD113-ARIN
- OrgTechHandle: NNO107-ARIN
- OrgTechName: Netprotect Network Operations
- OrgTechPhone: +1-800-591-5241
- OrgTechEmail: noc@netprotect.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NNO107-ARIN
Links to attack logs
anonymous-proxy-ip-list-2024-02-28
Share on: