38.55.7.189 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 38.55.7.189 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 5/100
Host and Network Information
-
JARM: 40d40d40d00040d1dc42d42d00000050e943b5b7e58fd544eaa893d2301948
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network: AS8796 kurun cloud inc
- Noticed: 1 times
- Protcols Attacked: SSH
- Passive DNS Results: tainanlq.com henglipidiao.com dscgf.com tianzeyz.com chinacranedemake.com zyxjwzjhgy.com topratedhostels.com dzjydkt.com bibiyoujia.com
Open Ports Detected
443 6000 6001 6002 6008 6363 6443 6503 6590 6600 6602 6633 6653 6664 6667 6668 6697 6789 6955 7001 7071 7171 7218 7443 7465 7474 7634 7776 7887 7989 7999 80 8000 8001 8008 8009 8010 8012 8022 8035 8041 8055 8060 8080 8081 8083 8085 8086 8087 8089 8090 8099 8104 8110 8112 8140 8181 8237 8249 8291 8333 8334 8383 8406 8409 8446 8513 8575 8637 8728 8789 8800 8805 8817 8825 8834 8846 8847 8851 8858 8868 8878 8880 8889 8899 9000 9001 9002 9009 9011 9013 9015 9040 9041 9042 9043 9084 9092 9151 9160 9191 9202 9214 9220 9295 9306 9309 9433 9500 9530 9595 9600 9633 9761 9800 9898 9943 9944 9992 9993 9998 9999
Map
Whois Information
- NetRange: 38.0.0.0 - 38.255.255.255
- CIDR: 38.0.0.0/8
- NetName: COGENT-A
- NetHandle: NET-38-0-0-0-1
- Parent: ()
- NetType: Direct Allocation
- OriginAS: AS174
- Organization: PSINet, Inc. (PSI)
- RegDate: 1991-04-16
- Updated: 2023-10-11
- Comment: IP allocations within 38.0.0.0/8 are used for Cogent customer static IP assignments.
- Comment:
- Comment:
- Comment: Geofeed https://geofeed.cogentco.com/geofeed.csv
- Ref: https://rdap.arin.net/registry/ip/38.0.0.0
- OrgName: PSINet, Inc.
- OrgId: PSI
- Address: 2450 N Street NW
- City: Washington
- StateProv: DC
- PostalCode: 20037
- Country: US
- RegDate:
- Updated: 2023-10-11
- Comment: Geofeed https://geofeed.cogentco.com/geofeed.csv
- Ref: https://rdap.arin.net/registry/entity/PSI
- OrgAbuseHandle: COGEN-ARIN
- OrgAbuseName: Cogent Abuse
- OrgAbusePhone: +1-877-875-4311
- OrgAbuseEmail: abuse@cogentco.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/COGEN-ARIN
- OrgNOCHandle: ZC108-ARIN
- OrgNOCName: Cogent Communications
- OrgNOCPhone: +1-877-875-4311
- OrgNOCEmail: noc@cogentco.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/ZC108-ARIN
- OrgTechHandle: IPALL-ARIN
- OrgTechName: IP Allocation
- OrgTechPhone: +1-877-875-4311
- OrgTechEmail: ipalloc@cogentco.com
- OrgTechRef: https://rdap.arin.net/registry/entity/IPALL-ARIN
- RTechHandle: PSI-NISC-ARIN
- RTechName: IP Allocation
- RTechPhone: +1-877-875-4311
- RTechEmail: ipalloc@cogentco.com
- RTechRef: https://rdap.arin.net/registry/entity/PSI-NISC-ARIN
- NetRange: 38.55.0.0 - 38.55.63.255
- CIDR: 38.55.0.0/18
- NetName: KURUN-CGNT-NET-1
- NetHandle: NET-38-55-0-0-1
- Parent: COGENT-A (NET-38-0-0-0-1)
- NetType: Reallocated
- OriginAS: AS8796, AS395886
- Organization: KURUN CLOUD INC (KC-2074)
- RegDate: 2023-08-23
- Updated: 2023-08-23
- Ref: https://rdap.arin.net/registry/ip/38.55.0.0
- OrgName: KURUN CLOUD INC
- OrgId: KC-2074
- Address: 6550 Meadow Lane PL, Rancho Cucamonga, CA 91701
- City: LA
- StateProv: CA
- PostalCode: 91701
- Country: US
- RegDate: 2020-11-19
- Updated: 2020-12-10
- Ref: https://rdap.arin.net/registry/entity/KC-2074
- OrgAbuseHandle: ABUSE8033-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-909-279-1111
- OrgAbuseEmail: abuse@kurun.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE8033-ARIN
- OrgNOCHandle: NOC33228-ARIN
- OrgNOCName: NOC
- OrgNOCPhone: +1-909-279-1111
- OrgNOCEmail: noc@kurun.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC33228-ARIN
- OrgTechHandle: TECH1232-ARIN
- OrgTechName: Tech
- OrgTechPhone: +1-909-279-1111
- OrgTechEmail: noc@kurun.com
- OrgTechRef: https://rdap.arin.net/registry/entity/TECH1232-ARIN
- network:ID:NET4-2637000012
- network:Network-Name:NET4-2637000012
- network:IP-Network:38.55.0.0/18
- network:Org-Name:KURUN CLOUD INC
- network:Street-Address:624 SOUTH GRAND AVENUE
- network:City:LOS ANGELES
- network:State:CA
- network:Country:US
- network:Postal-Code:90017
- network:Tech-Contact:ZC108-ARIN
- network:Updated:2022-08-18 13:54:17