45.141.71.149 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 45.141.71.149 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 30/100

Host and Network Information

  • Tags: Bruteforce, Nextray, SSH, cyber security, ioc, malicious, phishing
  • View other sources: Spamhaus VirusTotal

  • Country: Hong Kong
  • Network: AS207190 united systems l.p.
  • Noticed: 1 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: yujie.live 4ksucai.com www.bingganmeimei.com bingganmeimei.com api.jiamimu.com www.jiamimu.com u.zcokk.com vip.hyyhct.com levelcdn.com cr-ydbm.hyyhct.com m.zcokk.com 298191.com muf7kwy8.0jing.cc 4erfqxtu.n.0jing.cc fdburg2h.n.0jing.cc 2345797.com bitcasset.co tkk789.com 298183.com 6pd6.com 9fg9.com 5pd5.com 2fg2.com 7pd7.com 2pd2.com 5fg5.com 4fg4.com 9pd9.com 6fg6.com 7fg7.com 3pd3.com 3fg3.com 1pd1.com 7212116.com 7212117.com 7212118.com www.7212118.com www.7212116.com www.7212117.com mall.andazulin.com 99yw.vip pay.zcokk.com xpj2345797.com wwvv.qpsdw.com xz.qpsdw.com www.qpsdw.cc www.qpsdw.com qpsdw.cc

Map

Whois Information

  • inetnum: 45.141.68.0 - 45.141.71.255
  • netname: HK-YUHONET-20190814
  • country: HK
  • org: ORG-YIL3-RIPE
  • admin-c: TG10317-RIPE
  • tech-c: TG10317-RIPE
  • status: ALLOCATED PA
  • mnt-by: mnt-hk-yuhonet-1
  • mnt-by: RIPE-NCC-HM-MNT
  • created: 2019-08-14T13:11:00Z
  • last-modified: 2020-01-09T14:14:51Z
  • organisation: ORG-YIL3-RIPE
  • org-name: YUHONET INTERNATIONAL LIMITED
  • country: HK
  • org-type: LIR
  • address: Room 402, 4/F, So Uk Estate, Cheung Sha Wan, Kowloon,
  • address: 00000
  • address: Hong Kong
  • address: HONG KONG
  • phone: +85269835725
  • admin-c: TG10317-RIPE
  • tech-c: TG10317-RIPE
  • abuse-c: AR53943-RIPE
  • mnt-ref: mnt-hk-yuhonet-1
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: mnt-hk-yuhonet-1
  • created: 2019-07-16T08:46:18Z
  • last-modified: 2020-12-16T12:18:32Z
  • person: Tianhe Guo
  • address: Room 402, 4/F, So Uk Estate, Cheung Sha Wan, Kowloon,
  • address: 00000
  • address: Hong Kong
  • address: HONG KONG
  • phone: +85269835725
  • nic-hdl: TG10317-RIPE
  • mnt-by: mnt-hk-yuhonet-1
  • created: 2019-07-16T08:46:17Z
  • last-modified: 2019-07-16T08:46:18Z
  • route: 45.141.71.0/24
  • origin: AS207190
  • mnt-by: mnt-hk-yuhonet-1
  • mnt-by: mnt-hk-yuhonet1-1
  • created: 2022-12-05T15:23:33Z
  • last-modified: 2022-12-05T15:23:33Z

Links to attack logs

bruteforce-ip-list-2020-12-28