5.160.235.222 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 5.160.235.222 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟡 Low Risk — 42/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: Iran
  • Network: AS42337 respina networks & beyond pjsc
  • Noticed: 38 times
  • Protocols Attacked: telnet
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, South Africa, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Open Ports: 8080
  • Tor Node: No

Tags

  • attack
  • awssafrica
  • bruteforce
  • cyber security
  • ioc
  • login
  • malicious
  • Nextray
  • phishing
  • scanner
  • SSH
  • telnet
  • Telnet

Associated CVEs

  • CVE-2018-10088

Attack Log References

Whois Information

inetnum: 5.160.0.0 - 5.160.255.255 netname: IR-RSPN-20120725 country: IR descr: respina org: ORG-RNB1-RIPE admin-c: EM13591-RIPE tech-c: EM13591-RIPE status: ALLOCATED PA mnt-by: RIPE-NCC-HM-MNT mnt-by: MNT-RSPN mnt-lower: MNT-RSPN mnt-domains: MNT-RSPN mnt-routes: MNT-RSPN created: 2014-09-25T08:16:29Z last-modified: 2021-06-04T09:53:13Z organisation: ORG-RNB1-RIPE org-name: Respina Networks & Beyond PJSC descr: Respina Networks & Beyond PJSC country: IR descr: Respina Networks & Beyond PJSC org-type: LIR address: No. 1, Pedaran Alley, Nezami Ganjavi St., address: 1434894411 address: Tehran address: IRAN, ISLAMIC REPUBLIC OF phone: +982192000000 phone: +982191070000 fax-no: +982188191083 admin-c: RA7044-RIPE admin-c: RA7044-RIPE abuse-c: RAD41-RIPE mnt-ref: RIPE-NCC-HM-MNT mnt-ref: MNT-RSPN mnt-by: RIPE-NCC-HM-MNT mnt-by: MNT-RSPN created: 2007-01-16T11:11:03Z last-modified: 2023-04-16T09:53:14Z person: Ebrahim Mojtabaei address: No.1, Pedaran Alley. Nezami Ganjavi St. Tavanir St. Valiasr St. Tehran, Iran, Zip Code: 14348 phone: +982191070000 org: ORG-RNB1-RIPE nic-hdl: EM13591-RIPE mnt-by: PDZ-MNT mnt-by: MNT-RSPN mnt-by: RSPN-Admin created: 2021-04-07T12:48:32Z last-modified: 2021-04-07T12:48:32Z route: 5.160.235.0/24 origin: AS42337 mnt-by: MNT-RSPN created: 2019-09-30T09:28:36Z last-modified: 2019-09-30T09:28:36Z