213.136.92.199 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 213.136.92.199 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 13/100
Host and Network Information
-
JARM: 15d3fd16d29d29d00042d43d000000fe02290512647416dcf0a400ccbc0b6b
-
View other sources: Spamhaus VirusTotal
- Country: Germany
- Network:
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
- Passive DNS Results: demo.edenoverseas.com demo.ashberryrecruitment.net ftp.ashberryrecruitment.net ashberryrecruitment.net demo.pulsehealthcaregb.co.uk pulsehealthcaregb.co.uk ftp.pulsehealthcaregb.co.uk www.events.cloudex369.com careers.cloudex369.com www.careers.cloudex369.com documents.cloudex369.com faq.cloudex369.com www.app.bibimathew.com app.bibimathew.com new.bibimathew.com www.new.bibimathew.com www.majorfoods.bibimathew.com majorfoods.bibimathew.com modernfamilyrestaurant.bibimathew.com www.modernfamilyrestaurant.bibimathew.com demo.bibimathew.com www.demo.bibimathew.com www.signexinteriors.bibimathew.com signexinteriors.bibimathew.com ftp.rawdot.in ftp.bibimathew.com bibimathew.com www.bibimathew.com rawdot.in www.rawdot.in eventdemo.cloudex369.com www.guidanceplus.in guidanceplus.in ftp.guidanceplus.in www.orionclub.in orionclub.in www.mozantallc.com ftp.mozantallc.com mozantallc.com erp.slashcloud.in exam.slashcloud.in crm.slashcloud.in ctf.cloudex369.com community.cloudex369.com events.cloudex369.com brbhardwaresolutions.com www.brbhardwaresolutions.com www.dishaacademyenglish.com dishaacademyenglish.com hrm.cloudex369.com www.demolms.cloudex369.com demolms.cloudex369.com www.siffa.in siffa.in academy.cloudex369.com test.cloudex369.com ftp.cloudex369.com aiiwa.org www.aiiwa.org office.slashcloud.in edenoverseas.com www.edenoverseas.com www.davidchrisapp.com ftp.milisinternational.com www.milisinternational.com milisinternational.com app.davidchrisapp.com davidchrisapp.com api.davidchrisapp.com ftp.davidchrisapp.com www.alnoorshipping.com alnoorshipping.com ftp.alnoorshipping.com ftp.slashcloud.in www.slashcloud.in slashcloud.in www.learn.slashcloud.in learn.slashcloud.in www.knowb.in knowb.in ftp.knowb.in www.cloudex369.com cloudex369.com 4dtoto.app phonenumerology.com 4dtotoapp.com numerologyteller.com
Malware Detected on Host
Count: 2 b21d8212fb9200e03521fcf4e50f1eae53d70e4829d309b1c7376a6e74235f10 aa310469926150f9d6f980dd6ba200d1c9c7dec7c4b66c7de4cff6a30c038560
Open Ports Detected
CVEs Detected
CVE-2021-23017 CVE-2021-3618 CVE-2023-44487
Map
Whois Information
- inetnum: 213.136.80.0 - 213.136.94.255
- netname: CONTABO
- descr: Contabo GmbH
- country: DE
- org: ORG-GG22-RIPE
- admin-c: MH7476-RIPE
- tech-c: MH7476-RIPE
- status: ASSIGNED PA
- mnt-by: MNT-CONTABO
- mnt-lower: MNT-CONTABO
- mnt-domains: MNT-CONTABO
- mnt-routes: MNT-CONTABO
- created: 2015-03-05T08:10:15Z
- last-modified: 2015-03-05T08:10:15Z
- organisation: ORG-GG22-RIPE
- org-name: Contabo GmbH
- country: DE
- org-type: LIR
- address: Aschauer Strasse 32a
- address: 81549
- address: Munchen
- address: GERMANY
- phone: +498921268372
- fax-no: +498921665862
- abuse-c: MH12453-RIPE
- mnt-ref: RIPE-NCC-HM-MNT
- mnt-ref: MNT-CONTABO
- mnt-ref: MNT-OCIRIS
- mnt-by: RIPE-NCC-HM-MNT
- mnt-by: MNT-CONTABO
- created: 2009-12-09T13:41:08Z
- last-modified: 2021-09-14T10:49:04Z
- person: Johannes Selg
- address: Contabo GmbH
- address: Aschauer Str. 32a
- address: 81549 Muenchen
- phone: +49 89 21268372
- fax-no: +49 89 21665862
- nic-hdl: MH7476-RIPE
- mnt-by: MNT-CONTABO
- mnt-by: MNT-GIGA-HOSTING
- created: 2010-01-04T10:41:37Z
- last-modified: 2024-04-15T11:05:18Z
- route: 213.136.92.0/23
- descr: CONTABO
- origin: AS51167
- mnt-by: MNT-CONTABO
- created: 2014-03-02T10:02:28Z
- last-modified: 2014-03-02T10:02:28Z
Links to attack logs
anonymous-proxy-ip-list-2025-09-08
Share on: