24.100.78.243 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 24.100.78.243 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟠 Elevated — 51/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: United States
  • Network: AS11492 cable one inc.
  • Noticed: 3 times
  • Protocols Attacked: ssh
  • Countries Attacked: Australia
  • Open Ports: 5060
  • Tor Node: No
  • Associated Malware Samples: 1

Tags

  • brute force
  • Bruteforce
  • Brute-Force
  • cowrie
  • ssh
  • SSH

MITRE ATT&CK TTPs

  • T1078 - Valid Accounts
  • T1083 - File and Directory Discovery
  • T1098.004 - SSH Authorized Keys
  • T1105 - Ingress Tool Transfer
  • T1110.004 - Credential Stuffing
  • T1110 - Brute Force

Attack Log References

Whois Information

NetRange: 24.100.0.0 - 24.100.191.255 CIDR: 24.100.128.0/18, 24.100.0.0/17 NetName: NEWWAVE-KY-1 NetHandle: NET-24-100-0-0-1 Parent: NET24 (NET-24-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: New Wave Communications (NWC-12) RegDate: 2008-01-18 Updated: 2012-03-02 Ref: https://rdap.arin.net/registry/ip/24.100.0.0 OrgName: New Wave Communications OrgId: NWC-12 Address: 210 e Earll Dr City: Phoenix StateProv: AZ PostalCode: 85012 Country: US RegDate: 2005-05-09 Updated: 2022-08-10 Ref: https://rdap.arin.net/registry/entity/NWC-12 OrgTechHandle: DUDGE5-ARIN OrgTechName: Dudgeon, West OrgTechPhone: +1-480-600-2002 OrgTechEmail: west.dudgeon@cableone.biz OrgTechRef: https://rdap.arin.net/registry/entity/DUDGE5-ARIN OrgTechHandle: ARIZP3-ARIN OrgTechName: Arizpe, Carlos OrgTechPhone: +1-602-364-6231 OrgTechEmail: Carlos.Arizpe@cableone.biz OrgTechRef: https://rdap.arin.net/registry/entity/ARIZP3-ARIN OrgTechHandle: DCVG-ARIN OrgTechName: van Gessel, Douglas Charles OrgTechPhone: +1-602-364-6959 OrgTechEmail: douglas.vangessel@sparklight.biz OrgTechRef: https://rdap.arin.net/registry/entity/DCVG-ARIN OrgAbuseHandle: COAD-ARIN OrgAbuseName: Cable One Abuse Department OrgAbusePhone: +1-877-692-2253 OrgAbuseEmail: abuse@cableone.biz OrgAbuseRef: https://rdap.arin.net/registry/entity/COAD-ARIN OrgTechHandle: AEM41-ARIN OrgTechName: Morong, Alexander Eugene OrgTechPhone: +1-602-364-6401 OrgTechEmail: alexander.morong@sparklight.biz OrgTechRef: https://rdap.arin.net/registry/entity/AEM41-ARIN OrgNOCHandle: CONOC-ARIN OrgNOCName: Cable ONE Network Operations Center OrgNOCPhone: +1-602-763-6262 OrgNOCEmail: noc@cableone.biz OrgNOCRef: https://rdap.arin.net/registry/entity/CONOC-ARIN RAbuseHandle: IBBSN-ARIN RAbuseName: IBBS NOC RAbusePhone: +1-877-440-1989 RAbuseEmail: noc@momentumtelecom.com RAbuseRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN RTechHandle: IBBSN-ARIN RTechName: IBBS NOC RTechPhone: +1-877-440-1989 RTechEmail: noc@momentumtelecom.com RTechRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN RNOCHandle: IBBSN-ARIN RNOCName: IBBS NOC RNOCPhone: +1-877-440-1989 RNOCEmail: noc@momentumtelecom.com RNOCRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN NetRange: 24.100.78.0 - 24.100.79.255 CIDR: 24.100.78.0/23 NetName: NEWWAVE-EASTERN-ILLINOIS NetHandle: NET-24-100-78-0-1 Parent: NEWWAVE-KY-1 (NET-24-100-0-0-1) NetType: Reassigned OriginAS: Customer: New Wave Communications (C02253884) RegDate: 2009-06-19 Updated: 2009-06-19 Ref: https://rdap.arin.net/registry/ip/24.100.78.0 CustName: New Wave Communications Address: 115B Cherry St. City: Carmi StateProv: IL PostalCode: 62821 Country: US RegDate: 2009-06-19 Updated: 2011-03-19 Ref: https://rdap.arin.net/registry/entity/C02253884 OrgTechHandle: DUDGE5-ARIN OrgTechName: Dudgeon, West OrgTechPhone: +1-480-600-2002 OrgTechEmail: west.dudgeon@cableone.biz OrgTechRef: https://rdap.arin.net/registry/entity/DUDGE5-ARIN OrgTechHandle: ARIZP3-ARIN OrgTechName: Arizpe, Carlos OrgTechPhone: +1-602-364-6231 OrgTechEmail: Carlos.Arizpe@cableone.biz OrgTechRef: https://rdap.arin.net/registry/entity/ARIZP3-ARIN OrgTechHandle: DCVG-ARIN OrgTechName: van Gessel, Douglas Charles OrgTechPhone: +1-602-364-6959 OrgTechEmail: douglas.vangessel@sparklight.biz OrgTechRef: https://rdap.arin.net/registry/entity/DCVG-ARIN OrgAbuseHandle: COAD-ARIN OrgAbuseName: Cable One Abuse Department OrgAbusePhone: +1-877-692-2253 OrgAbuseEmail: abuse@cableone.biz OrgAbuseRef: https://rdap.arin.net/registry/entity/COAD-ARIN OrgTechHandle: AEM41-ARIN OrgTechName: Morong, Alexander Eugene OrgTechPhone: +1-602-364-6401 OrgTechEmail: alexander.morong@sparklight.biz OrgTechRef: https://rdap.arin.net/registry/entity/AEM41-ARIN OrgNOCHandle: CONOC-ARIN OrgNOCName: Cable ONE Network Operations Center OrgNOCPhone: +1-602-763-6262 OrgNOCEmail: noc@cableone.biz OrgNOCRef: https://rdap.arin.net/registry/entity/CONOC-ARIN RAbuseHandle: IBBSN-ARIN RAbuseName: IBBS NOC RAbusePhone: +1-877-440-1989 RAbuseEmail: noc@momentumtelecom.com RAbuseRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN RTechHandle: IBBSN-ARIN RTechName: IBBS NOC RTechPhone: +1-877-440-1989 RTechEmail: noc@momentumtelecom.com RTechRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN RNOCHandle: IBBSN-ARIN RNOCName: IBBS NOC RNOCPhone: +1-877-440-1989 RNOCEmail: noc@momentumtelecom.com RNOCRef: https://rdap.arin.net/registry/entity/IBBSN-ARIN network:Class-Name:network network:ID:NET-CBL1-24-100-78-0 network:Auth-Area:24.100.78.0/24 network:Network-Name:CBL1-24-100-78-0 network:IP-Network:24.100.78.0/24 network:IP-Network-Block:24.100.78.0 - 24.100.78.255 network:Org-Name;I:CBL1 network:Street-Address:1176 E 1500 North Road network:City:Taylorville network:State:IL network:Postal-Code:62568 network:Country-Code:US network:Tech-Contact;I:noc@cableone.net network:Admin-Contact;I:West.Dudgeon@sparklight.biz network:Created:20181206124411000 network:Updated:20240708051612000 network:Updated-By:noc@cableone.net network:Class-Name:network network:ID:NET-CBL1-24-100-0-0 network:Auth-Area:24.100.0.0/17 network:Network-Name:CBL1-24-100-0-0 network:IP-Network:24.100.0.0/17 network:IP-Network-Block:24.100.0.0 - 24.100.127.255 network:Org-Name;I:CBL1 network:Country-Code:us network:Tech-Contact;I:noc@cableone.net network:Admin-Contact;I:West.Dudgeon@sparklight.biz network:Created:20181203014836000 network:Updated:20221018072115000 network:Updated-By:noc@cableone.net