3.121.202.19 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 3.121.202.19 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: Germany
  • Network: AS16509 amazon.com inc
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10134 10243 10250 10443 10554 11112 11371 1337 14265 16992 16993 17000 18081 19000 20000 3128 3200 3211 3221 3260 3270 3306 3311 3333 3352 3401 3402 3403 3404 3405 3406 3522 3541 3551 3552 3555 3556 3563 3566 3567 3690 3780 3790 3791 3954 4002 4040 4042 4043 4063 4064 4117 4200 4242 4282 4369 4433 4444 4445 4523 4567 4747 4782 4808 4840 4949 5001 5005 5007 5172 5190 5201 5222 5357 5431 5443 5500 5560 5567 5569 5593 5597 5601 5604 5673 5900 5909 5910 5984 6000 6001 6002 6003 6005 6010 6352 6379 6464 6503 6605 6667 6668 7071 7080 7081 7171 7218 7443 7493 7500 7547 7548 7657 7777 7788 7989 80 8001 8010 8012 8016 8017 8019 8023 8026 8028 8032 8033 8040 8048 8050 8052 8055 8060 8069 8071 8083 8084 8096 8098 8107 8110 8112 8118 8126 8143 8180 8181 8182 8222 8239 8249 8333 8409 8413 8426 8443 8446 8500 8513 8545 8575 8637 8649 8700 8728 8801 8813 8834 8835 8842 8845 8846 8853 8854 8857 8859 8868 8873 8874 8875 8879 8889 8969 8989 8991 9000 9002 9009 9010 9024 9026 9035 9042 9044 9050 9070 9080 9090 9091 9094 9097 9100 9103 9105 9107 9109 9110 9119 9151 9160 9191 9200 9201 9204 9205 9208 9217 9219 9222 9301 9302 9304 9306 9307 9443 9530 9550 9595 9600 9606 9704 9743 9800 9861 9943 9944 9950 9966 9981 9994 9998 9999

CVEs Detected

CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12527 CVE-2019-12528 CVE-2019-12529 CVE-2019-12854 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2020-11945 CVE-2020-14058 CVE-2020-15049 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-28662 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-46784 CVE-2022-41318

Map

Whois Information

  • NetRange: 3.0.0.0 - 3.127.255.255
  • CIDR: 3.0.0.0/9
  • NetName: AT-88-Z
  • NetHandle: NET-3-0-0-0-1
  • Parent: NET3 (NET-3-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS:
  • Organization: Amazon Technologies Inc. (AT-88-Z)
  • RegDate: 2017-12-20
  • Updated: 2022-05-18
  • Ref: https://rdap.arin.net/registry/ip/3.0.0.0
  • OrgName: Amazon Technologies Inc.
  • OrgId: AT-88-Z
  • Address: 410 Terry Ave N.
  • City: Seattle
  • StateProv: WA
  • PostalCode: 98109
  • Country: US
  • RegDate: 2011-12-08
  • Updated: 2022-09-30
  • Comment: All abuse reports MUST include:
  • Comment: * src IP
  • Comment: * dest IP (your IP)
  • Comment: * dest port
  • Comment: * Accurate date/timestamp and timezone of activity
  • Comment: * Intensity/frequency (short log extracts)
  • Comment: * Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
  • Ref: https://rdap.arin.net/registry/entity/AT-88-Z
  • OrgRoutingHandle: ARMP-ARIN
  • OrgRoutingName: AWS RPKI Management POC
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/ARMP-ARIN
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN
  • OrgRoutingHandle: IPROU3-ARIN
  • OrgRoutingName: IP Routing
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/IPROU3-ARIN
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • NetRange: 3.120.0.0 - 3.123.255.255
  • CIDR: 3.120.0.0/14
  • NetName: AMAZO-ZFRA
  • NetHandle: NET-3-120-0-0-1
  • Parent: AT-88-Z (NET-3-0-0-0-1)
  • NetType: Reallocated
  • OriginAS:
  • Organization: A100 ROW GmbH (RG-123)
  • RegDate: 2018-06-27
  • Updated: 2018-06-27
  • Ref: https://rdap.arin.net/registry/ip/3.120.0.0
  • OrgName: A100 ROW GmbH
  • OrgId: RG-123
  • Address: Marcel-Breuer-Strasse 10
  • City: Munchen
  • StateProv:
  • PostalCode: 80807
  • Country: DE
  • RegDate: 2014-11-07
  • Updated: 2014-11-07
  • Ref: https://rdap.arin.net/registry/entity/RG-123
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN

Links to attack logs

anonymous-proxy-ip-list-2023-06-22