207.174.215.159 Threat Intelligence and Host Information

General

IP Address
207.174.215.159
IPv4 Address
Location
🇺🇸 United States
US
Network
AS46606
UNIFIEDLAYER-AS-1
Threat Score
85/100
Critical
anydeskas15169as16509as19871as22612as9002businessemail
Attack Intelligence
MITRE ATT&CK Techniques
T1021.001 - Remote Desktop Protocol, T1110 - Brute Force, T1184 - SSH Hijacking, T1192 - Spearphishing Link, T1194 - Spearphishing via Service, T1442 - Fake Developer Accounts, T1454 - Malicious SMS Message, T1566 - Phishing, T1583.001 - Domains, T1583.006 - Web Services, T1585.001 - Social Media Accounts, T1586 - Compromise Accounts, T1591.002 - Business Relationships
Open Ports Detected
143
Geographic Location
Country
United States
City
Unknown
Region
Unknown
Coordinates
37.7510, -97.8220
Network Information
ASN
AS46606
Organization
UNIFIEDLAYER-AS-1
Network
AS46606 UNIFIEDLAYER-AS-1
WHOIS Information
NetRange
207.174.212.0 - 207.174.215.255
CIDR
207.174.212.0/22
NetName
PUBLICDOMAINREGISTRY-NETWORKS
NetHandle
NET-207-174-212-0-1
Parent
NET207 (NET-207-0-0-0-0)
NetType
Direct Allocation
OriginAS
AS394695
Organization
PDR (PSUL-1)
RegDate
2015-08-04
Updated
2019-11-07
Ref
https://rdap.arin.net/registry/entity/PSUL-1
OrgName
PDR
OrgId
PSUL-1
Address
P.D.R Solutions LLC, 10, Corporate Drive, Suite 300
City
Burlington
StateProv
MA
PostalCode
01803
Country
US
OrgTechHandle
EIGAR-ARIN
OrgTechName
eig-arin
OrgTechPhone
+1-866-897-5421
OrgTechEmail
eig-net-team@endurance.com
OrgTechRef
https://rdap.arin.net/registry/entity/EIGAR-ARIN
OrgDNSHandle
EIGAR-ARIN

Malware Detected on Host

Count: 3 12148655eeb312b25c8f65407ef6decf2cbfe50f891f268f975730928062abf9 2f24d2322899e22d7e4d2536bf7cf7c0cc61945e74b2db34ac6f315b57370bf7 11a8d5236913d596853f2690b0e8150bc96c37fc0391deef00be69a9c5b4f217

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-11022 CVE-2020-11023 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465

Disclaimer
This page contains threat intelligence information for the IPv4 address 207.174.215.159 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.