31.15.226.14 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 31.15.226.14 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Tags: Malicious IP, Nextray, SSH, Telnet, attack, blacklist, botnet, bruteforce, cowrie, cyber security, digital ocean, ioc, login, malicious, mirai, phishing, scan, scanner, tcp, telnet
  • View other sources: Spamhaus VirusTotal

  • Country: Slovenia
  • Network: AS3212 telemach ug d.o.o.
  • Noticed: 10 times
  • Protcols Attacked: telnet
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

100 10001 102 1024 10243 1025 1027 104 1050 106 1063 1080 1099 11 110 11000 111 11112 1119 113 11300 1153 1200 12000 1234 1250 1290 13 131 1337 1344 13579 1366 1400 14147 14265 143 1433 1471 1494 15 1500 1521 154 1554 1599 16010 1604 1650 1660 16992 17 1723 1741 175 179 1801 18081 1820 18245 1830 1833 1883 19000 19071 1925 1926 1935 1947 195 1951 1962 199 1990 20 2000 20000 2001 2008 2010 2012 2018 20256 2030 2049 2050 2052 2054 20547 2055 2056 2057 2058 2061 2063 2064 2065 2067 2068 2069 2077 2079 2082 2083 2086 2087 2095 21 2111 2121 2122 21379 2150 2154 2181 22 2200 221 222 2220 2222 2223 2225 2232 2259 2266 23424 2345 2375 2379 2382 2404 2443 2455 2480 25 25001 25105 2551 2553 2554 2555 2557 2559 2562 2563 2568 26 2601 2602 263 264 27015 2709 2761 2762 28015 28017 2985 3000 3001 3048 3049 3050 3052 3053 3055 3057 3058 3062 3066 3067 3068 3069 3073 3078 3080 3081 3083 3086 3089 3092 3093 3096 3097 3098 3099 3102 3108 3110 3115 3116 3118 3119 3120 3128 3129 31337 3200 3211 32400 3260 3269 3270 32764 3299 3301 33060 3310 3333 3337 3388 3389 340 3400 3404 3409 3412 35000 3542 3549 3551 3556 3557 3558 3559 3561 3566 3569 3570 3689 3690 37 37215 37777 3780 38 3838 389 3922 3951 3953 4000 4001 4010 4022 4040 4042 4043 4063 4064 4118 41800 4242 4243 4282 43 4321 4369 44158 4445 448 44818 4482 4506 4550 4567 465 4664 4747 4782 4786 4840 4899 49 4911 4949 4999 5000 50000 5002 5003 5005 50050 5006 5007 50070 5009 5010 5025 5090 51106 5122 51235 5150 5201 522 5222 5269 52869 5357 541 54138 5432 5435 5446 548 5494 5500 55000 554 55443 5555 55554 5567 5568 5590 5595 5597 5600 5601 5604 5606 5609 5672 5673 5800 5801 5822 5858 587 5900 5906 5938 5984 5985 6000 60001 6002 6004 6007 6008 6009 6010 6102 6161 61613 61616 62078 6262 6264 6308 631 6352 636 6363 6379 6443 646 6464 6503 6512 6560 6588 6602 6603 6633 6650 6653 6662 6664 6667 6697 6748 685 6887 6955 70 7004 7005 7010 7081 7090 7171 7401 7443 7445 7465 7474 7535 7537 7654 7657 7676 771 772 7776 7777 7779 7887 789 79 7989 7999 80 800 8000 8001 8002 8004 8007 801 8010 8011 8013 8014 8016 8019 8020 8024 8031 8032 8034 8036 8039 8040 8041 8043 8046 8048 805 8050 8053 8054 8055 8056 8058 806 8060 8066 8071 8072 8080 8083 8084 8085 8086 8087 8088 8089 8090 8093 8094 8095 8096 8097 8098 8099 81 8100 8102 8105 8106 8112 8123 8126 8139 8180 8181 8184 8190 8200 8222 8236 8237 8241 8243 8251 8291 83 8334 8401 8402 8404 8406 8407 8408 8410 8412 8416 8418 8419 8420 8421 8423 8425 8426 8427 8431 8433 8442 8443 8447 8448 85 8500 8513 8545 8553 8554 8575 8586 86 8602 8649 8700 8728 873 8767 8779 8782 88 8800 8805 8806 8807 8808 8811 8817 8819 8820 8822 8826 8828 8829 8831 8833 8834 8835 8837 8838 8839 8841 8842 8843 8844 8847 8849 8850 8851 8852 8853 8855 8856 8862 8865 8866 8868 8869 8870 8871 8872 8874 8875 8878 8880 8885 8888 8889 8891 8969 8990 8991 8999 9000 9003 9005 9006 9011 9012 9016 9019 902 9020 9021 9022 9024 9026 9028 9030 9032 9033 9038 9040 9041 9042 9043 9044 9045 9046 9047 9049 9051 9080 9082 9088 9089 9090 9091 9092 9093 9094 9095 9102 9104 9106 9111 9136 9151 9160 9201 9202 9203 9204 9205 9206 9209 9211 9215 9216 9217 9219 9220 9295 9299 9300 9303 9305 9309 9310 9418 9433 9443 9445 9527 9530 9550 96 9600 9682 9761 9800 9861 9869 9876 9899 993 9943 9944 995 9966 9981 9988 999 9990 9992 9993 9998 9999

Map

Whois Information

  • inetnum: 31.15.226.0 - 31.15.226.255
  • netname: Telemach-NET
  • country: SI
  • admin-c: TRTB1-RIPE
  • tech-c: TRTB1-RIPE
  • status: ASSIGNED PA
  • mnt-by: TELEMACH-MNT
  • created: 2012-06-20T06:08:17Z
  • last-modified: 2018-01-26T06:33:06Z
  • role: Telemach RIPE Team BBN
  • address: Telemach d.o.o.
  • address: Brnciceva ulica 49A
  • address: SI-1231 Ljubljana-Crnuce
  • address: Slovenia
  • phone: +386 591 88600
  • admin-c: AR1264-RIPE
  • tech-c: MS10243-RIPE
  • tech-c: GN1562-RIPE
  • tech-c: JL12686-RIPE
  • nic-hdl: TRTB1-RIPE
  • mnt-by: TELEMACH-MNT
  • created: 2009-09-25T09:49:27Z
  • last-modified: 2020-12-03T16:43:17Z
  • abuse-mailbox: [email protected]
  • route: 31.15.128.0/17
  • descr: TELEMACH, Provider Aggregated Block
  • origin: AS12644
  • mnt-by: TELEMACH-MNT
  • created: 2011-04-20T12:24:01Z
  • last-modified: 2011-04-20T12:24:01Z
  • route: 31.15.128.0/17
  • descr: TELEMACH, Provider Aggregated Block
  • origin: AS3212
  • mnt-by: TELEMACH-MNT
  • created: 2015-12-31T08:48:51Z
  • last-modified: 2018-01-17T12:58:07Z

Links to attack logs

dofrank-telnet-bruteforce-ip-list-2021-09-18 telnet-bruteforce-ip-list-2021-07-28 dotoronto-telnet-bruteforce-ip-list-2021-10-06