49.12.4.20 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 49.12.4.20 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 15/100
Host and Network Information
-
JARM: 29d3fd00029d29d00029d3fd29d29dbabc3637e9ad820e5c83b58a633fe7bb
-
View other sources: Spamhaus VirusTotal
- Country: Germany
- Network: AS24940 hetzner online gmbh
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: almomen.org.sa slsbel.com www.consult.alkursii.com consult.alkursii.com adt.fudex-tech.net onlyrent.net www.olayaninvestor.com olayaninvestor.com www.accessobccrelaxbanking.bubgi.com accessobccrelaxbanking.bubgi.com abahussin.com www.abahussin.com www.demo.atah.com.sa demo.atah.com.sa www.digitalinflu.com digitalinflu.com www.cc-gs.com cc-gs.com www.hptworld.net hptworld.net old.lorenzo.sa www.old.lorenzo.sa www.digitous.net test.specialfood.com.sa www.test.specialfood.com.sa www.atah.com.sa atah.com.sa www.slsbyl.com servizioclientibcc.alkursii.com www.servizioclientibcc.alkursii.com www.cashpoint21.com cashpoint21.com demo.alkursii.com www.demo.alkursii.com www.backend.qimm.net backend.qimm.net prreetty.com www.prreetty.com www.old.almahaeye.com old.almahaeye.com coco.sa www.coco.sa slsbyl.com www.bulldozertech.com digitous.net lorenzo.sa www.lorenzo.sa www.ertaqee.com ertaqee.com www.ardwtalb.com ardwtalb.com www.az.parts www.adamgold.sa adamgold.sa mukyfy.com master.mukyfy.com www.master.mukyfy.com bulldozertech.com www.test.bubgi.com test.bubgi.com www.demo.qimm.net demo.qimm.net www.ducat.solutions ducat.solutions www.qimm.net qimm.net www.backend.mukyfy.com backend.mukyfy.com order.dolma.sa www.order.dolma.sa valueapp.club www.valueapp.club www.almahaeye.com www.future-lifts.com.sa future-lifts.com.sa websocket.asjad.co www.websocket.asjad.co backend.tawreedimdad.com www.backend.tawreedimdad.com www.shop2.tawreedimdad.com www.nuxt.tawreedimdad.com shop2.tawreedimdad.com nuxt.tawreedimdad.com shop2-nuxt.tawreedimdad.com www.shop2-nuxt.tawreedimdad.com www.tawreedimdad.com tawreedimdad.com www.shop1.tawreedimdad.com shop1.tawreedimdad.com shop1-nuxt.tawreedimdad.com www.shop1-nuxt.tawreedimdad.com www.feedback.specialfood.com.sa feedback.specialfood.com.sa www.dal-fd.com dal-fd.com specialfood.com.sa www.specialfood.com.sa www.bubgi.com bubgi.com www.joobly.org joobly.org plastbauarabia.com www.plastbauarabia.com www.beta.plastbauarabia.com beta.plastbauarabia.com www.alnghmosh.com www.tayeer.co books.multigrows.net www.books.multigrows.net www.ababtain-group.com ababtain-group.com www.nuxt-store1.manssah.com nuxt-store1.manssah.com www.manssah.com manssah.com www.dolma.sa dolma.sa portal.eddprepaidcard.com.dolma.sa www.portal.eddprepaidcard.com.dolma.sa www.forsatcom.arabcryptos.com forsatcom.arabcryptos.com www.beta.arabcryptos.com beta.arabcryptos.com www.arabcryptos.com allvalue.club www.allvalue.club www.store3.manssah.com store3.manssah.com www.jesrexpress.com mahsol.com.sa www.mahsol.com.sa alkursii.com www.alkursii.com www.mrfresh.sa mrfresh.sa store1.manssah.com www.store1.manssah.com www.store2.manssah.com store2.manssah.com www.3sjad.com www.webmail.az.parts www.demo.3sjad.com demo.3sjad.com www.demo.showpush.co demo.showpush.co asjad.co www.asjad.co visionarabia.com.sa www.visionarabia.com.sa www.k--s.net k–s.net www.adwar.com.sa adwar.com.sa demo.perfectzone.co www.demo.perfectzone.co mfresh.sa www.mfresh.sa www.kiltd.sa kiltd.sa www.mhllat.com mhllat.com www.highfive-sports.com belhana.co www.belhana.co esh7enha.com www.mobile.jesrexpress.com mobile.jesrexpress.com www.multigrows.net arabcryptos.com www.ttc.multigrows.net ttc.multigrows.net multigrows.net highfive-sports.com mronah.com az.parts jesrexpress.com almahaeye.com medicalbalsam.com.sa www.medicalbalsam.com.sa jacal.studio www.jacal.studio 3sjad.com tayeer.co www.jacal.jacal.studio jacal.jacal.studio alnghmosh.com www.t5awy.com t5awy.com wp.fudex-tech.net turn.juliusbregenzer.de
Open Ports Detected
110 143 2077 2082 2083 2086 2087 2095 2096 21 22 443 53 80 993 995
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767
Map
Whois Information
- inetnum: 49.12.0.0 - 49.13.255.255
- netname: STUB-49-12SLASH15
- descr: Transferred to the RIPE region on 2018-06-27T02:24:02Z.
- country: ZZ
- admin-c: STUB-AP
- tech-c: STUB-AP
- abuse-c: AS2444-AP
- status: ALLOCATED PORTABLE
- mnt-by: APNIC-STUB
- mnt-irt: IRT-STUB-AP
- last-modified: 2023-05-17T13:13:11Z
- irt: IRT-STUB-AP
- address: N/A
- e-mail: no-email@apnic.net
- abuse-mailbox: no-email@apnic.net
- admin-c: STUB-AP
- tech-c: STUB-AP
- mnt-by: APNIC-HM
- last-modified: 2024-01-24T04:04:44Z
- role: ABUSE STUBAP
- address: N/A
- country: ZZ
- phone: +000000000
- e-mail: no-email@apnic.net
- admin-c: STUB-AP
- tech-c: STUB-AP
- nic-hdl: AS2444-AP
- abuse-mailbox: no-email@apnic.net
- mnt-by: APNIC-ABUSE
- last-modified: 2024-01-24T04:05:14Z
- person: STUB PERSON
- address: N/A
- country: ZZ
- phone: +00 0000 0000
- e-mail: no-email@apnic.net
- nic-hdl: STUB-AP
- mnt-by: APNIC-HM
- last-modified: 2019-09-23T04:53:33Z