45.79.56.102 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 45.79.56.102 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 35/100
Host and Network Information
-
Tags: Bruteforce, Brute-Force, cyber security, ioc, malicious, Nextray, phishing, SSH
-
View other sources: Spamhaus VirusTotal
- Country: United States
- Network: AS63949 linode llc
- Noticed: 50 times
- Protocols Attacked: ssh
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
- Passive DNS Results: 45-79-56-102.ipv4.staticdns1.io 45-79-56-102.ip.linodeusercontent.com siia.mx www.siia.mx porkcharron.com www.porkcharron.com maprosur.com www.maprosur.com www.angelpino.com angelpino.com pulsarmx.com www.pulsarmx.com www.pagemx.com www.tiglass.net pagemx.com www.unidadhiperbarica.com www.sticgsa.com www.empretelmerida.com www.turismaya.com www.pcavanzada.com drcetina.com www.drcetina.com www.vig.com.mx www.grupodynamic.mx www.9meses.org www.dynamicdesign.mx www.customshop.pagemx.com customshop.pagemx.com tiglass.net nuevo.pcavanzada.com www.nuevo.pcavanzada.com www.inbound.descarga.com.mx inbound.descarga.com.mx cpcalendars.sticgsa.com cpcontacts.sticgsa.com sticgsa.com cpcalendars.pcavanzada.com pcavanzada.com cpcontacts.pcavanzada.com cpcalendars.logra.mivps.net cpcontacts.logra.mivps.net logra.mivps.net cpcalendars.unidadhiperbarica.com cpcontacts.unidadhiperbarica.com unidadhiperbarica.com promos.pcavanzada.com www.promos.pcavanzada.com www.fundacion.descarga.com.mx fundacion.descarga.com.mx speedtest-fr.inetlocker.com pulsarmx.empretelmerida.com www.pulsarmx.empretelmerida.com www.tienda.9meses.org tienda.9meses.org cpcalendars.empretelmerida.com empretelmerida.com cpcontacts.empretelmerida.com ticket.empretelmerida.com www.ticket.empretelmerida.com angelpino.empretelmerida.com www.angelpino.empretelmerida.com cpcalendars.grupodynamic.mx cpcontacts.grupodynamic.mx marista.descarga.com.mx www.marista.descarga.com.mx cpcalendars.turismaya.com turismaya.com cpcontacts.turismaya.com cpcontacts.9meses.org cpcalendars.9meses.org cpcalendars.vig.com.mx cpcontacts.vig.com.mx cpcalendars.descarga.com.mx cpcontacts.descarga.com.mx cpcalendars.dynamicdesign.mx cpcontacts.dynamicdesign.mx dynamicdesign.mx dynamicdesign.grupodynamic.mx www.dynamicdesign.grupodynamic.mx www.remax.grupodynamic.mx remax.grupodynamic.mx grupodynamic.mx carlosescalante.xyz vig.com.mx 9meses.org
Map
Whois Information
- NetRange: 45.79.0.0 - 45.79.255.255
- CIDR: 45.79.0.0/16
- NetName: LINODE-US
- NetHandle: NET-45-79-0-0-1
- Parent: NET45 (NET-45-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS3595, AS21844, AS6939, AS8001
- Organization: Akamai Technologies, Inc. (AKAMAI)
- RegDate: 2015-04-29
- Updated: 2023-09-18
- Comment: Geofeed https://ipgeo.akamai.com/linode-geofeed.csv
- Ref: https://rdap.arin.net/registry/ip/45.79.0.0
- OrgName: Akamai Technologies, Inc.
- OrgId: AKAMAI
- Address: 145 Broadway
- City: Cambridge
- StateProv: MA
- PostalCode: 02142
- Country: US
- RegDate: 1999-01-21
- Updated: 2023-10-24
- Ref: https://rdap.arin.net/registry/entity/AKAMAI
- OrgTechHandle: IPADM11-ARIN
- OrgTechName: ipadmin
- OrgTechPhone: +1-617-444-0017
- OrgTechEmail: ip-admin@akamai.com
- OrgTechRef: https://rdap.arin.net/registry/entity/IPADM11-ARIN
- OrgAbuseHandle: NUS-ARIN
- OrgAbuseName: NOC United States
- OrgAbusePhone: +1-617-444-2535
- OrgAbuseEmail: abuse@akamai.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/NUS-ARIN
- OrgTechHandle: SJS98-ARIN
- OrgTechName: Schecter, Steven Jay
- OrgTechPhone: +1-617-274-7134
- OrgTechEmail: ip-admin@akamai.com
- OrgTechRef: https://rdap.arin.net/registry/entity/SJS98-ARIN
- RTechHandle: LNO21-ARIN
- RTechName: Linode Network Operations
- RTechPhone: +1-609-380-7100
- RTechEmail: support@linode.com
- RTechRef: https://rdap.arin.net/registry/entity/LNO21-ARIN
- RAbuseHandle: LAS12-ARIN
- RAbuseName: Linode Abuse Support
- RAbusePhone: +1-609-380-7100
- RAbuseEmail: abuse@linode.com
- RAbuseRef: https://rdap.arin.net/registry/entity/LAS12-ARIN
- RNOCHandle: LNO21-ARIN
- RNOCName: Linode Network Operations
- RNOCPhone: +1-609-380-7100
- RNOCEmail: support@linode.com
- RNOCRef: https://rdap.arin.net/registry/entity/LNO21-ARIN
- NetRange: 45.79.0.0 - 45.79.255.255
- CIDR: 45.79.0.0/16
- NetName: LINODE
- NetHandle: NET-45-79-0-0-2
- Parent: LINODE-US (NET-45-79-0-0-1)
- NetType: Reassigned
- OriginAS: AS63949
- Organization: Linode (LINOD)
- RegDate: 2022-12-21
- Updated: 2023-09-18
- Comment: Geofeed https://ipgeo.akamai.com/linode-geofeed.csv
- Ref: https://rdap.arin.net/registry/ip/45.79.0.0
- OrgName: Linode
- OrgId: LINOD
- Address: 249 Arch St
- City: Philadelphia
- StateProv: PA
- PostalCode: 19106
- Country: US
- RegDate: 2008-04-24
- Updated: 2022-12-15
- Comment: http://www.linode.com
- Ref: https://rdap.arin.net/registry/entity/LINOD
- OrgTechHandle: LNO21-ARIN
- OrgTechName: Linode Network Operations
- OrgTechPhone: +1-609-380-7100
- OrgTechEmail: support@linode.com
- OrgTechRef: https://rdap.arin.net/registry/entity/LNO21-ARIN
- OrgNOCHandle: LNO21-ARIN
- OrgNOCName: Linode Network Operations
- OrgNOCPhone: +1-609-380-7100
- OrgNOCEmail: support@linode.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/LNO21-ARIN
- OrgTechHandle: IPADM11-ARIN
- OrgTechName: ipadmin
- OrgTechPhone: +1-617-444-0017
- OrgTechEmail: ip-admin@akamai.com
- OrgTechRef: https://rdap.arin.net/registry/entity/IPADM11-ARIN
- OrgAbuseHandle: LAS12-ARIN
- OrgAbuseName: Linode Abuse Support
- OrgAbusePhone: +1-609-380-7100
- OrgAbuseEmail: abuse@linode.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/LAS12-ARIN
Links to attack logs
****** dofrank-ssh-bruteforce-ip-list-2022-12-04 ****** ******
Share on: