45.148.121.63 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 45.148.121.63 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 30/100

Host and Network Information

  • Tags: Malicious IP, Nextray, UPnP, awsau, awsbah, awsjap, blacklist, botnet, cyber security, ioc, malicious, mirai, nmap, ntp, phishing, portscan, scan, scanner, scanners, snmp, udp
  • View other sources: Spamhaus VirusTotal

  • Country: Netherlands
  • Network: AS64425 skb enterprise b.v.
  • Noticed: 1 times
  • Protcols Attacked: ntp snmp
  • Countries Attacked: Australia, Bahrain, Canada, Czechia, Denmark, Estonia, France, Germany, Japan, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: serrangeles.com

Malware Detected on Host

Count: 17 56dd3e8741b659b626e7df685a32829ba95a2580bd1a697e431028ab39642577 fda262e038db39f2bf748409fc84e812f73d39a3ae844a2ddf1ee4bf9515d613 d489acc98bd113e00e7f20785ce18f11f6d301a8fbd994b05ab7ebaa1822a51b e2995aaf57a16c4e6cc3c72448af05c54ed42fa21838cb70ff80e0ac930515ba 66b59c17183d911cad796bc72238a0265676b16ce2909a8ecbdd596857c26e65 b28c056ac00f58e50db60e13a030f968b1f2a5f3667da02c5eb533b026124100 46f7173516829069068d875022cf720bd5746d0378e78d676eaf55e15432f53b 23ca79716fc62624309fbe02520a168dfc9a28ff1d757d12b54c4ba59b4e40a1 603fdf1a227ab74e5347ab9d11c76f86e399251a457ed88960d4cc8e311b7c0e 2fce4b394a3a089934f28773742c343301aebd704220f06c324c44b60a6ea391

Map

Whois Information

  • inetnum: 45.148.121.0 - 45.148.121.255
  • netname: SKB-Enterprise
  • country: NL
  • admin-c: SE4295-RIPE
  • tech-c: SE4295-RIPE
  • geoloc: 52.3702 4.8952
  • org: ORG-SE92-RIPE
  • status: ASSIGNED PA
  • mnt-by: skbenterprise
  • created: 2019-09-03T08:07:44Z
  • last-modified: 2023-04-17T20:25:20Z
  • organisation: ORG-SE92-RIPE
  • org-name: SKB Enterprise B.V.
  • country: NL
  • org-type: OTHER
  • address: Kingsfordweg 151
  • address: 1043 GR Amsterdam
  • address: The Netherlands
  • abuse-c: SE4341-RIPE
  • mnt-ref: skbenterprise
  • mnt-ref: IPXO-MNT
  • mnt-ref: SpectraIP
  • mnt-by: skbenterprise
  • created: 2016-07-28T14:36:56Z
  • last-modified: 2022-12-01T17:25:32Z
  • role: SKB Enterprise B.V.
  • address: Kingsfordweg 151
  • address: 1043 GR Amsterdam
  • address: The Netherlands
  • abuse-mailbox: [email protected]
  • phone: +31852018594
  • nic-hdl: SE4295-RIPE
  • mnt-by: skbenterprise
  • created: 2016-06-01T08:52:20Z
  • last-modified: 2021-09-20T13:47:20Z
  • route: 45.148.121.0/24
  • origin: AS64425
  • mnt-by: skbenterprise
  • created: 2019-09-06T21:03:32Z
  • last-modified: 2019-09-06T21:03:32Z

Links to attack logs

awsbah-ntp-bruteforce-ip-list-2021-11-22 awsau-snmp-bruteforce-ip-list-2020-12-23 snmp-bruteforce-ip-list-2020-12-14 awsau-ntp-bruteforce-ip-list-2020-12-14 awsjap-snmp-bruteforce-ip-list-2020-12-23 awsbah-snmp-bruteforce-ip-list-2020-12-14 ntp-bruteforce-ip-list-2020-07-31 awsbah-snmp-bruteforce-ip-list-2020-12-09 awsbah-ntp-bruteforce-ip-list-2021-11-18 awsbah-ntp-bruteforce-ip-list-2021-11-19 awsbah-ntp-bruteforce-ip-list-2021-11-21 awsbah-ntp-bruteforce-ip-list-2020-12-09 awsau-ntp-bruteforce-ip-list-2020-12-09 ntp-bruteforce-ip-list-2020-12-09 awsbah-snmp-bruteforce-ip-list-2020-12-15 awsbah-ntp-bruteforce-ip-list-2021-11-16 awsau-ntp-bruteforce-ip-list-2021-11-22 ntp-bruteforce-ip-list-2020-07-26 awsau-ntp-bruteforce-ip-list-2021-11-16 awsbah-ntp-bruteforce-ip-list-2021-11-17 awsau-ntp-bruteforce-ip-list-2021-11-19 awsjap-ntp-bruteforce-ip-list-2020-12-09 ntp-bruteforce-ip-list-2020-08-04 awsjap-ntp-bruteforce-ip-list-2020-12-14 awsau-ntp-bruteforce-ip-list-2021-11-17 awsbah-snmp-bruteforce-ip-list-2020-12-23 awsbah-ntp-bruteforce-ip-list-2021-11-15 awsbah-ntp-bruteforce-ip-list-2021-11-20 awsau-snmp-bruteforce-ip-list-2020-12-14 awsau-ntp-bruteforce-ip-list-2020-12-15 ntp-bruteforce-ip-list-2020-08-05 awsjap-snmp-bruteforce-ip-list-2020-12-14 awsjap-ntp-bruteforce-ip-list-2020-12-15 awsau-ntp-bruteforce-ip-list-2021-11-20 awsau-ntp-bruteforce-ip-list-2021-11-21 ntp-bruteforce-ip-list-2020-12-15 snmp-bruteforce-ip-list-2020-12-23 awsau-ntp-bruteforce-ip-list-2021-11-15 awsau-ntp-bruteforce-ip-list-2021-11-18