34.254.90.167 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 34.254.90.167 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: Ireland
  • Network: AS16509 amazon.com inc
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10001 10134 10243 10250 10443 10554 11000 11112 11210 11211 11300 11371 1337 13579 14147 14265 16010 16993 17000 18081 18245 19000 20000 3128 3129 3200 3221 3268 3269 3270 3299 3301 3306 3307 3310 3311 3333 3388 3400 3409 3410 3443 3479 3498 3522 3524 3541 3542 3549 3550 3551 3554 3555 3556 3558 3561 3563 3566 3567 3570 3689 3749 3790 3793 3794 3838 3922 3951 3953 4000 4001 4022 4040 4042 4063 4064 4117 4242 4243 4282 4321 4369 4433 4443 4445 4482 4505 4506 4523 4524 4545 4567 4643 4664 4734 4747 4782 4808 4840 4848 4899 4949 4999 5000 5001 5002 5005 5006 5007 5009 5010 5025 5050 5122 5150 5201 5280 5357 5443 5446 5454 5494 5500 5542 5555 5560 5569 5590 5591 5593 5595 5596 5597 5598 5601 5602 5603 5604 5608 5609 5672 5673 5800 5801 5853 5858 5900 5901 5908 5909 5984 5985 5986 6000 6001 6002 6004 6080 6308 6352 6363 6379 6443 6464 6503 6561 6565 6580 6581 6590 6601 6602 6622 6633 6653 6662 6666 6667 6668 6697 6748 6955 7001 7002 7005 7010 7070 7081 7170 7171 7218 7415 7443 7445 7465 7474 7500 7510 7548 7634 7654 7657 7676 7776 7777 7778 7779 7788 7979 7989 80 8000 8001 8004 8006 8007 8008 8009 8010 8011 8013 8014 8016 8018 8020 8023 8030 8031 8032 8035 8036 8037 8038 8040 8041 8042 8043 8044 8047 8048 8050 8051 8052 8053 8054 8056 8058 8069 8071 8080 8083 8084 8086 8087 8089 8090 8091 8092 8093 8095 8098 8099 8100 8103 8104 8105 8106 8107 8112 8118 8123 8126 8139 8140 8143 8181 8184 8200 8236 8238 8239 8241 8249 8252 8282 8291 8333 8334 8383 8402 8403 8405 8407 8408 8409 8410 8412 8413 8415 8416 8426 8427 8429 8432 8433 8443 8445 8446 8447 8448 8545 8554 8575 8585 8586 8622 8623 8649 8663 8666 8686 8688 8700 8728 8733 8765 8782 8787 8789 8800 8802 8804 8806 8807 8809 8810 8811 8815 8816 8817 8819 8825 8827 8828 8831 8833 8834 8835 8837 8839 8841 8845 8852 8853 8854 8855 8856 8858 8859 8860 8861 8863 8865 8866 8867 8868 8869 8870 8871 8874 8878 8879 8880 8881 8885 8889 8890 8935 8969 8989 8990 8991 8993 9000 9001 9002 9004 9007 9009 9011 9012 9013 9014 9018 9022 9024 9025 9026 9027 9028 9030 9031 9034 9035 9037 9040 9042 9044 9045 9048 9051 9080 9088 9089 9090 9091 9092 9093 9097 9098 9099 9100 9101 9103 9109 9119 9151 9191 9200 9202 9204 9206 9208 9210 9212 9215 9217 9220 9295 9299 9301 9303 9304 9305 9306 9310 9311 9418 9443 9445 9500 9530 9550 9595 9600 9682 9704 9743 9761 9800 9861 9869 9876 9898 9943 9944 9950 9955 9966 9981 9988 9991 9993 9994 9998 9999

CVEs Detected

CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12527 CVE-2019-12528 CVE-2019-12529 CVE-2019-12854 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2020-11945 CVE-2020-14058 CVE-2020-15049 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-28662 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-46784 CVE-2022-41318

Map

Whois Information

  • NetRange: 34.192.0.0 - 34.255.255.255
  • CIDR: 34.192.0.0/10
  • NetName: AT-88-Z
  • NetHandle: NET-34-192-0-0-1
  • Parent: NET34 (NET-34-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS:
  • Organization: Amazon Technologies Inc. (AT-88-Z)
  • RegDate: 2016-09-12
  • Updated: 2016-09-12
  • Ref: https://rdap.arin.net/registry/ip/34.192.0.0
  • OrgName: Amazon Technologies Inc.
  • OrgId: AT-88-Z
  • Address: 410 Terry Ave N.
  • City: Seattle
  • StateProv: WA
  • PostalCode: 98109
  • Country: US
  • RegDate: 2011-12-08
  • Updated: 2022-09-30
  • Comment: All abuse reports MUST include:
  • Comment: * src IP
  • Comment: * dest IP (your IP)
  • Comment: * dest port
  • Comment: * Accurate date/timestamp and timezone of activity
  • Comment: * Intensity/frequency (short log extracts)
  • Comment: * Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
  • Ref: https://rdap.arin.net/registry/entity/AT-88-Z
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
  • OrgRoutingHandle: IPROU3-ARIN
  • OrgRoutingName: IP Routing
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/IPROU3-ARIN
  • OrgRoutingHandle: ARMP-ARIN
  • OrgRoutingName: AWS RPKI Management POC
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/ARMP-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • NetRange: 34.248.0.0 - 34.255.255.255
  • CIDR: 34.248.0.0/13
  • NetName: AMAZON-DUB
  • NetHandle: NET-34-248-0-0-1
  • Parent: AT-88-Z (NET-34-192-0-0-1)
  • NetType: Reallocated
  • OriginAS: AS16509
  • Organization: Amazon Data Services Ireland Limited (ADSIL-1)
  • RegDate: 2016-11-30
  • Updated: 2016-11-30
  • Ref: https://rdap.arin.net/registry/ip/34.248.0.0
  • OrgName: Amazon Data Services Ireland Limited
  • OrgId: ADSIL-1
  • Address: Unit 4033, Citywest Avenue Citywest Business Park
  • City: Dublin
  • StateProv: D24
  • PostalCode:
  • Country: IE
  • RegDate: 2014-07-18
  • Updated: 2014-07-18
  • Ref: https://rdap.arin.net/registry/entity/ADSIL-1
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN

Links to attack logs

roxy-ip-list-2023-05-03 roxy-ip-list-2023-05-05