217.174.148.65 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 217.174.148.65 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: hphosts_emd, hphosts_psh

  • Country: Bulgaria
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH

Malware Detected on Host

Count: 51 c282605799af2ac761f342bc6e1ec4ac49d703c0a55ee7bc6bfa74a9f540e7ae d123eae0d047292787c98bfd05c58da586923a664c09d8165763ed8ce44c7f92 7201fd1b768b775f686acb7b2be9ed720b1f25e01cefeb0465dc8ff2f2116291 9c218b9ea14bf651fc5a41f1342b04857d884ea2609543fbc7830bbcf626adae e7c4e5d960e885f38e46235d508e465547ec3004258d0c49a809e894da0a7f83 d89930ec68edec7bc6d12ac1b957a3d4ee441bfe71f1b66faed4f119788725f7 de70729c4ecaaf844a39c36ea96d269c55203bda3bb7f251c715f39cf3db09c3 391123496895ea0ecfc7bbf55084d2bb075878b6e0eba553d87de094d13de495 4bed89bee2db19481a9318b8329fbb63d8ed5794646699415eba9126c8b6dbc6 1fa80045af107d1b261c4514e4e145177a7b0e60c37bf51d2e31717b818097a9

Open Ports Detected

443

Map

Whois Information

  • inetnum: 217.174.148.0 - 217.174.149.255
  • netname: NS1
  • descr: NS1 Ltd.
  • country: BG
  • org: ORG-NA970-RIPE
  • admin-c: NN2499-RIPE
  • tech-c: NN2499-RIPE
  • status: ASSIGNED PA
  • mnt-by: AZ39139-MNT
  • created: 2012-12-04T13:49:32Z
  • last-modified: 2023-03-30T12:23:37Z
  • organisation: ORG-NA970-RIPE
  • org-name: NS1
  • org-type: OTHER
  • address: r. Mladost 4, str. “Profesor Aleksandar Tanev” 11, bl. Biznes tsentar “RUVEKS”, fl. 6, ap. ofis 5
  • address: 1715 Sofia, Bulgaria
  • abuse-c: NA5787-RIPE
  • mnt-ref: NS1-MNT
  • mnt-ref: MNT-LIR-BG
  • mnt-by: NS1-MNT
  • mnt-by: MNT-LIR-BG
  • mnt-by: AZ39139-MNT
  • created: 2017-12-21T13:09:58Z
  • last-modified: 2025-11-17T10:27:45Z
  • person: NS1 NOC
  • address: r. Mladost 4, str. “Profesor Aleksandar Tanev” 11, bl. Biznes tsentar “RUVEKS”, fl. 6, ap. ofis 5
  • address: 1715 Sofia, Bulgaria
  • phone: +35929534155
  • nic-hdl: NN2499-RIPE
  • mnt-by: NS1-MNT
  • mnt-by: MNT-LIR-BG
  • created: 2017-12-21T12:51:13Z
  • last-modified: 2025-11-17T10:27:44Z
  • route: 217.174.148.0/24
  • descr: NS1
  • origin: AS57344
  • mnt-by: AZ39139-MNT
  • created: 2023-12-11T16:21:06Z
  • last-modified: 2023-12-11T16:21:06Z

Links to attack logs

****** ****** ******

Share on: