5.135.23.164 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 5.135.23.164 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 36/100

Host and Network Information

  • Tags: akamaias, akamaiasn1, amazon02, as15169, as16509, as20940, as3359, as8075, as852, auto-generated security, cuba, facebook, geoip, ghost, google, indonesia, level3, media, mexico, mini, proton, public url, seznam, telecom, Tracking Domains, twitter, ukraine, win32, win64

  • JARM: 2ad2ad0002ad2ad00042d42d0000000464fb8c6842ac133bede81390a48134

  • View other sources: Spamhaus VirusTotal

Malware Detected on Host

Count: 11 38d449829ef5b098991510d168a6ca44b7d94a4adb57c207e010559f5ebeea8c 05bb87008172af62112aec988c3ef5563e3cf8a320dfc1c3bca159d783c61f7a e863cb5ad420c0bdd1adb5e8efba7857a64ce39c136e2eae1b8755d064a95435 98aeea5a672569e584518947b9faaa33d59e5c7db920960109a5a270a5df85c2 3d8657e114a07f6048014b5b50489af4156a1bd946d2b5ffb93d03674fced272 0207231dd52ddabc4805133a550fbb176b8f44400d7f9bb6350e92dd2ff34637 1cc78559dca5120f04ae8f6591f20e9a18717465a2616ca926c70e7c47d30087 295ab670786851078999a4f6454cc4fffae3228cedd64f149bae79a6f9c670dd e005442a34f853bfb8f4ad67a92ae167ea479e67742ad15cfab7c236ee24d957 5c030cfad5651493e044d89e50fdc7e2c8dd2688e671a4c3a4dc92e880dbc640

Open Ports Detected

443 80

Map

Whois Information

  • inetnum: 5.135.23.164 - 5.135.23.167
  • netname: OVH
  • descr: Dedicated Servers
  • country: FR
  • admin-c: OTC2-RIPE
  • tech-c: OTC2-RIPE
  • status: ASSIGNED PA
  • mnt-by: OVH-MNT
  • created: 2014-06-10T16:18:52Z
  • last-modified: 2014-06-10T16:18:52Z
  • role: OVH Technical Contact
  • address: OVH SAS
  • address: 2 rue Kellermann
  • address: 59100 Roubaix
  • address: France
  • admin-c: OK217-RIPE
  • tech-c: GM84-RIPE
  • tech-c: SL10162-RIPE
  • nic-hdl: OTC2-RIPE
  • abuse-mailbox: abuse@ovh.net
  • mnt-by: OVH-MNT
  • created: 2004-01-28T17:42:29Z
  • last-modified: 2014-09-05T10:47:15Z
  • route: 5.135.0.0/16
  • descr: OVH
  • origin: AS16276
  • mnt-by: OVH-MNT
  • created: 2012-07-06T13:00:08Z
  • last-modified: 2012-07-06T13:00:08Z
Share on: