211.245.108.124 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 211.245.108.124 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟡 Low Risk — 35/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: South Korea
  • Network: AS9318 sk broadband co ltd
  • Noticed: 5 times
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Tor Node: No

Tags

  • Malicious IP
  • Nextray
  • SSH
  • Telnet
  • UK Based
  • attack
  • blacklist
  • botnet
  • bruteforce
  • cyber security
  • ioc
  • ip monitor
  • login
  • malicious
  • mirai
  • phishing
  • scan
  • scanner
  • tcp
  • telnet
  • vultr

Attack Log References

Whois Information

inetnum: 190.152.128.0/17 status: allocated aut-num: AS27757 aut-num: AS14420 owner: CORPORACION NACIONAL DE TELECOMUNICACIONES - CNT EP ownerid: EC-ANSA-LACNIC responsible: Sandra López - CNT EP address: 9 de Octubre N24-113, 113, Luis Cordero. Edif Droira. 7mo Piso address: 170524 - Quito - PICHINCHA country: EC phone: +593 023731700 [0000] owner-c: EVG8 tech-c: EVG8 abuse-c: FBM inetrev: 190.152.146.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.144.0/23 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.148.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 inetrev: 190.152.128.0/20 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.147.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.149.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.150.0/23 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 inetrev: 190.152.152.0/21 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.160.0/19 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.224.0/20 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.240.0/21 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 inetrev: 190.152.220.0/22 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.216.0/23 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.218.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.208.0/22 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230510 AA nslastaa: 20230510 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230510 AA nslastaa: 20230510 inetrev: 190.152.212.0/23 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.215.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.200.0/21 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.196.0/22 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.194.0/23 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.192.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.219.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.193.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 inetrev: 190.152.248.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230510 AA nslastaa: 20230510 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230510 AA nslastaa: 20230510 inetrev: 190.152.249.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230512 AA nslastaa: 20230512 inetrev: 190.152.252.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230513 AA nslastaa: 20230513 inetrev: 190.152.253.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.254.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230508 AA nslastaa: 20230508 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230508 AA nslastaa: 20230508 inetrev: 190.152.251.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 inetrev: 190.152.250.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230511 AA nslastaa: 20230511 inetrev: 190.152.255.0/24 nserver: PICHINCHA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 nserver: TUNGURAHUA.ANDINANET.NET nsstat: 20230509 AA nslastaa: 20230509 created: 20081003 changed: 20220727 nic-hdl: EVG8 person: Sandra López e-mail: sandra.lopez@cnt.gob.ec address: 9 de Octubre y Luis Cordero, 24, 113 address: 3110 - Quito - Pi country: EC phone: +593 23731700 [21009] created: 20140506 changed: 20211228 nic-hdl: FBM person: Carmen Isabel Suarez Lascano e-mail: tecciberseguridades@cnt.gob.ec address: 9 de Octubre y Cordero, N24, Edificio Droira CNT address: 593 - Quito - Pichincha country: EC phone: +593 20982004251 [21278] created: 20050107 changed: 20220727