31.31.198.99 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 31.31.198.99 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 50/100

Host and Network Information

  • Tags: auto-generated security, HONEYPOT, initiator ip, TPOT, UK

  • JARM: 29d29d00029d29d00042d42d0000005d86ccb1a0567e012264097a0315d7a7

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: vxvault

Malware Detected on Host

Count: 15 badfa1f8d1bd98dbfc081938f1b1d5098c71b6e341938b3729e71273845c3987 9f4a7137d90bca418bec11b7c757e49aff4fbb7bd050daa976654221164a8002 4ad65f4846ab829c5dc946f6a8477cfc57d62a02db2c2ddacce6be0c515bc5e7 c94e2b83c30ddcd7aec2141cac5618ab4ee5192758bed2fbd3019b1ed32752d8 9f785ef305f14a841f6836e1c003e122880ad0a687c650a4ae36543694aec4c4 231e8d3020591a8114bccb4904fdf5d7ac43ca2747bfb8a82c5d94d081b70fc2 5d5e5d76e62366e388c877c730b1af722b82db2ef42a529c03176ff961684b3c 8d61694ef0e3c37a88d7c1487d0e8deb35cf7c5d621240f4659c678992ea6c8a 90e8d40fd4e43223feea2e53ddaec9c7864d60ea4a2668504e6a10c10c4ea9ef ff4bda2bf4b5508fdf4103e76ae58098ed9d943800ec2cc2a8145ac112ab1224

Open Ports Detected

111 21 22 25 3306 3310 443 465 53 587 80 993 995

CVEs Detected

CVE-2007-3205 CVE-2013-2220 CVE-2022-4900 CVE-2024-25117 CVE-2024-3566 CVE-2024-5458

Map

Links to attack logs

****** ****** ******

Share on: