37.235.53.208 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 37.235.53.208 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 35/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: cleantalk_30d, cleantalk_updated_30d, sslproxies_30d, stopforumspam, stopforumspam_180d, stopforumspam_30d, stopforumspam_365d, stopforumspam_90d

  • Country: Spain
  • Network: AS39020 comvive servidores s.l.
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10001 10134 10243 10250 10554 11000 11210 11300 1337 13579 14147 14265 16010 16993 18081 18245 19000 20000 3128 3129 3200 3221 3268 3352 3388 3389 3405 3409 3498 3503 3521 3524 3541 3542 3548 3551 3555 3556 3557 3562 3567 3568 3570 3689 3749 3780 3790 3792 3922 3953 4000 4001 4002 4022 4043 4063 4118 4242 4243 4282 4321 4369 4433 4500 4523 4545 4567 4646 4664 4782 4786 4840 4899 4949 4999 5000 5003 5004 5005 5006 5007 5009 5010 5025 5150 5172 5201 5209 5222 5269 5321 5357 5432 5435 5443 5494 5500 5542 5555 5560 5569 5591 5595 5598 5600 5601 5603 5605 5672 5800 5801 5822 5858 5900 5901 5906 5908 5909 5910 5938 5985 5986 6001 6002 6007 6010 6036 6080 6102 6262 6352 6363 6379 6464 6512 6543 6561 6565 6581 6603 6605 6653 6664 6666 6668 6697 6887 6955 7001 7002 7004 7005 7080 7081 7090 7171 7218 7401 7415 7443 7474 7510 7535 7537 7547 7548 7657 7700 7776 7777 7779 7979 7989 7998 7999 80 8000 8001 8002 8004 8008 8009 8010 8018 8022 8024 8029 8030 8032 8034 8038 8039 8044 8046 8047 8048 8050 8051 8052 8053 8054 8056 8058 8060 8069 8080 8081 8082 8086 8087 8088 8089 8092 8096 8098 8099 8104 8106 8108 8110 8123 8126 8139 8140 8143 8159 8180 8181 8184 8190 8200 8222 8237 8239 8243 8251 8282 8333 8334 8406 8409 8420 8421 8424 8426 8431 8432 8442 8443 8446 8447 8500 8545 8554 8575 8586 8590 8602 8622 8649 8663 8666 8733 8784 8789 8790 8791 8800 8805 8806 8808 8810 8816 8817 8820 8822 8823 8824 8830 8833 8834 8836 8838 8839 8840 8842 8844 8847 8849 8852 8854 8855 8860 8866 8869 8871 8873 8878 8879 8881 8887 8888 8889 8969 8988 8989 8993 9000 9002 9007 9008 9012 9013 9021 9022 9025 9026 9028 9031 9035 9036 9037 9042 9044 9046 9050 9051 9080 9084 9088 9091 9092 9093 9094 9095 9098 9100 9103 9104 9106 9108 9110 9111 9151 9160 9200 9202 9204 9210 9212 9214 9216 9218 9219 9221 9222 9295 9299 9303 9305 9389 9418 9433 9443 9444 9527 9530 9595 9600 9606 9682 9765 9800 9869 9898 9899 9966 9981 9988 9991 9998 9999

CVEs Detected

CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12527 CVE-2019-12528 CVE-2019-12529 CVE-2019-12854 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2020-11945 CVE-2020-14058 CVE-2020-15049 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-28662 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-46784 CVE-2022-41318

Map

Whois Information

  • inetnum: 37.235.53.0 - 37.235.53.255
  • netname: EDIS-ES-NET
  • descr: EDIS Infrastructure in Spain
  • country: ES
  • geoloc: 37.392529 -5.994072
  • geofeed: https://www.edis.at/geofeed.txt
  • language: ES
  • org: ORG-EG44-RIPE
  • admin-c: EDIS-AT
  • tech-c: EDIS-AT
  • status: ASSIGNED PA
  • mnt-by: EDIS-MNT
  • mnt-routes: COMVIVE-MNT
  • created: 2012-06-28T12:48:11Z
  • last-modified: 2022-12-07T08:02:29Z
  • organisation: ORG-EG44-RIPE
  • org-name: EDIS GmbH
  • country: AT
  • org-type: LIR
  • address: Hauptplatz 3/3
  • address: 8010
  • address: Graz
  • address: AUSTRIA
  • phone: +43316827500300
  • fax-no: +43316827500777
  • admin-c: GK2
  • admin-c: ISAT
  • mnt-ref: EDIS-MNT
  • mnt-ref: MELBICOM-MNT
  • mnt-ref: NINE-MNT
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: EDIS-MNT
  • abuse-c: EDIS-AT
  • created: 2011-08-10T14:08:22Z
  • last-modified: 2021-02-03T07:58:56Z
  • role: EDIS GmbH - Noc Engineer
  • address: EDIS GmbH, Hauptplatz 3/3, 8010, GRAZ, Austria
  • address: http://www.edis.at
  • phone: +43 316 827500300
  • admin-c: EDIS-RIPE
  • admin-c: GK2
  • admin-c: ISAT
  • tech-c: EDIS-RIPE
  • tech-c: ISAT
  • abuse-mailbox: [email protected]
  • nic-hdl: EDIS-AT
  • mnt-by: EDIS-MNT
  • created: 2011-08-12T07:29:38Z
  • last-modified: 2016-04-08T06:50:42Z
  • route: 37.235.53.0/24
  • descr: EDIS Infrastructure in Spain
  • origin: AS39020
  • mnt-by: COMVIVE-MNT
  • created: 2012-06-29T11:54:14Z
  • last-modified: 2012-06-29T11:54:48Z

Links to attack logs

roxy-ip-list-2023-05-03 anonymous-proxy-ip-list-2023-05-17 anonymous-proxy-ip-list-2023-05-20 roxy-ip-list-2023-05-17 anonymous-proxy-ip-list-2023-05-18 anonymous-proxy-ip-list-2023-05-21 roxy-ip-list-2023-05-05