45.55.34.252 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 45.55.34.252 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 40/100
Host and Network Information
-
Tags: botnet, mysql, port 3306, tcp/3306, TOR, VPN
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network:
- Noticed: 20 times
- Protocols Attacked: snmp
- Countries Attacked: United States of America
- Passive DNS Results: arabaevmotor.com restored-db-mongodb-78945-2a32e916.mongo.ondigitalocean.com www.thedats.com thedats.com
Malware Detected on Host
Count: 22 d3cfa04b4b9c12efcf02a27d92cecd8ead55b66d3a494786a0e845e68e4c5461 03b9340f0db0d85b0f3aca0e6af268df73b6e463fc36a6f80cefd47b108ae066 2fd353ffcace535b5c0cdd3b70784bcbf1d4e35879a3109ed8825c2f970d22d3 2c40c4609332c0309aa20784ddab4bb2356bcab8867993cd13b45fb7e74b381b 759cc5a5e5e150bd44807e46d56873f1fdc3ad9a874a1bd2ce3350350ac1c333 2ce399a329b20c97bec49d1ecd1315aca646c5a0dd95e4b9bbffc9b52a9a528d a896be5e1f5b7d498d6556c9d64fe6407b70360e36dd3f47ee46da9367748ff6 e746ba510b706bc06b084ce84d6cd7e417137efde85bf12e421fdf21fd677943 ce11997dc64e5db0dc62219e25dc06c4209ba388589112d24973e5fc22ae48ee 25837be752586ccedb7da8ab32d563a7baa799d91ca69067f0b8acc14dfc0923
Map
Whois Information
- NetRange: 45.55.0.0 - 45.55.255.255
- CIDR: 45.55.0.0/16
- NetName: DIGITALOCEAN-45-55-0-0
- NetHandle: NET-45-55-0-0-1
- Parent: NET45 (NET-45-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: DigitalOcean, LLC (DO-13)
- RegDate: 2015-02-05
- Updated: 2021-03-08
- Comment: Routing and Peering Policy can be found at https://www.as14061.net
- Comment:
- Ref: https://rdap.arin.net/registry/ip/45.55.0.0
- OrgName: DigitalOcean, LLC
- OrgId: DO-13
- Address: 105 Edgeview Drive, Suite 425
- City: Broomfield
- StateProv: CO
- PostalCode: 80021
- Country: US
- RegDate: 2012-05-14
- Updated: 2025-04-11
- Ref: https://rdap.arin.net/registry/entity/DO-13
- OrgAbuseHandle: DIGIT19-ARIN
- OrgAbuseName: DigitalOcean Abuse
- OrgAbusePhone: +1-646-827-4366
- OrgAbuseEmail: abuse@digitalocean.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/DIGIT19-ARIN
- OrgNOCHandle: NOC32014-ARIN
- OrgNOCName: Network Operations Center
- OrgNOCPhone: +1-646-827-4366
- OrgNOCEmail: noc@digitalocean.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- OrgTechHandle: NOC32014-ARIN
- OrgTechName: Network Operations Center
- OrgTechPhone: +1-646-827-4366
- OrgTechEmail: noc@digitalocean.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- RAbuseHandle: DAOC-ARIN
- RAbuseName: DigitalOcean Abuse Operations Center
- RAbusePhone: +1-347-875-6044
- RAbuseEmail: aoc@digitalocean.com
- RAbuseRef: https://rdap.arin.net/registry/entity/DAOC-ARIN
Links to attack logs
****** digitaloceantoronto-snmp-bruteforce-ip-list-2023-08-06 ****** ******
Share on: