208.109.189.59 Threat Intelligence and Host Information

General

IP Address
208.109.189.59
IPv4 Address
Location
🇺🇸 United States
US
Network
AS398101
GO-DADDY-COM-LLC
Threat Score
41/100
Medium Risk
bruteforcecowrieInboundScanresearchscannerssh-brutetelnet
Attack Intelligence
MITRE ATT&CK Techniques
T1595 - Active Scanning
Open Ports Detected
110
Geographic Location
Country
United States
City
Unknown
Region
Unknown
Coordinates
37.7510, -97.8220
Network Information
ASN
AS398101
Organization
GO-DADDY-COM-LLC
Network
AS398101 GO-DADDY-COM-LLC
WHOIS Information
NetRange
208.109.0.0 - 208.109.255.255
CIDR
208.109.0.0/16
NetName
GO-DADDY-COM-LLC
NetHandle
NET-208-109-0-0-1
Parent
NET208 (NET-208-0-0-0-0)
NetType
Direct Allocation
OriginAS
Organization
GoDaddy.com, LLC (GODAD)
RegDate
2007-06-01
Updated
2024-11-25
Comment
Please send abuse complaints to abuse@godaddy.com
Ref
https://rdap.arin.net/registry/entity/GODAD
OrgName
GoDaddy.com, LLC
OrgId
GODAD
Address
2155 E GoDaddy Way
City
Tempe
StateProv
AZ
PostalCode
85284
Country
US
OrgAbuseHandle
ABUSE51-ARIN
OrgAbuseName
Abuse Department
OrgAbusePhone
+1-480-624-2505
OrgAbuseEmail
abuse@godaddy.com
OrgAbuseRef
https://rdap.arin.net/registry/entity/ABUSE51-ARIN
Attack Logs
Date Target Location Protocol Link
2026-05-28 Vultrparis TELNET View Log

  • Country: United States
  • Network:
  • Noticed: 3 times
  • Protocols Attacked: telnet
  • Passive DNS Results: www.247drugrehab.com 247drugrehab.com atlanta.cashouthouse.com hotelssavannahga.com www.hotelssavannahga.com greensboro-nc.cashouthouse.com drysos.com birmingham-al.cashouthouse.com charlotte-nc.cashouthouse.com miami-fl.cashouthouse.com 59.189.109.208.host.secureserver.net lucid-robinson.208-109-189-59.plesk.page awesome-roentgen.208-109-189-59.plesk.page inspiring-banzai.208-109-189-59.plesk.page naughty-bhaskara.208-109-189-59.plesk.page nifty-dhawan.208-109-189-59.plesk.page

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728 CVE-2026-35385 CVE-2026-35386 CVE-2026-35387 CVE-2026-35388 CVE-2026-35414

Disclaimer
This page contains threat intelligence information for the IPv4 address 208.109.189.59 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.