212.41.8.52 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 212.41.8.52 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 17/100

Host and Network Information

  • Country: Russia
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: r2y.ru rubycats.com www.aioninside.ru aioninside.ru pluto.drone-studio.one

Malware Detected on Host

Count: 2 1fab19b64165a73e63581cecc29fc54f78a2c6a459b10ac3d300db53d7d5e5a4 d8f234494f427a934034e1fd07ff47649722f1ff16af158b7f5ddf095181733e

Open Ports Detected

11000 11001 11112 11210 11211 11288 11434 11602 12000 12088 12101 12126 12129 12131 12132 12133 12139 12144 12146 12158 12162 12165 12170 12176 12186 12192 12201 12203 12204 12207 12223 12224 12226 12232 12239 12241 12243 12246 12259 12261 12290 12300 12316 12322 12335 12337 12340 12347 12348 12349 12362 12363 12373 12374 12376 12378 12384 12398 12399 12401 12417 12422 12435 12438 12443 12447 12449 12461 12462 12467 12471 12479 12480 12487 12498 12509 12511 12513 12520 12522 12526 12533 12558 12560 12568 12580 12588 161 2111 2122 22 80

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2021-3618 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-44487 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2024-6387 CVE-2025-26465

Map

Links to attack logs

anonymous-proxy-ip-list-2025-01-20

Share on: