45.175.157.53 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 45.175.157.53 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟠 Elevated — 55/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: Paraguay
  • Network: AS267837 vicente sosa peralta
  • Noticed: 18 times
  • Protocols Attacked: ssh
  • Countries Attacked: Australia, Spain, Sweden
  • Tor Node: No

Tags

  • abuseipdb
  • blacklist
  • brute force
  • bruteforce
  • Bruteforce
  • Brute-Force
  • cowrie
  • Malicious IP
  • scan
  • scanners
  • ssh
  • SSH
  • tcp
  • vultr

MITRE ATT&CK TTPs

  • T1046 - Network Service Scanning
  • T1078 - Valid Accounts
  • T1083 - File and Directory Discovery
  • T1098.004 - SSH Authorized Keys
  • T1105 - Ingress Tool Transfer
  • T1110.004 - Credential Stuffing
  • T1110 - Brute Force

Attack Log References

Whois Information

inetnum: 45.175.157.0/24 status: reallocated aut-num: AS267837 owner: CDENET - Procesamiento de Datos ownerid: PY-CPDA2-LACNIC responsible: Vicente Sosa Peralta address: Av. Pioneros del este y Adrian Jara, 7000, address: - CIUDAD DEL ESTE - Alto Parana country: PY phone: +595 61504146 owner-c: VSP tech-c: VSP abuse-c: VSP created: 20190814 changed: 20190814 inetnum-up: 45.175.156.0/22 nic-hdl: VSP person: Vicente Sosa Peralta e-mail: cdenet@cdenet.com.py address: Av. Pioneros del este y Adrian Jara, - 183, Ed.Nadua address: 7000 - Ciudad del Este - Alto Parana country: PY phone: +595 61504146 [0000] created: 20130123 changed: 20220613