5.175.214.197 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 5.175.214.197 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: Germany
  • Network: AS12586 ghostnet gmbh
  • Noticed: 1 times
  • Protcols Attacked: spam

Malware Detected on Host

Count: 4 4a9f5c1e2624af402f76365739f7e06e822eb1da16df5b5e7b423974eefb925a edf8dbae2354d43675b5608158fa53ac53a608f785a93cba1bc0e6aeb4146c11 d85ea41ee083edcaa79a76f57c42e06e1d3471ec7cc7f52f7c3705ce88b17756 2ef45fb22c2fb96ed5940600a4bdadf830b8b83132cd2c5d936234add4dc5ba9

Map

Whois Information

  • inetnum: 5.175.214.0 - 5.175.214.255
  • netname: DE-GHOSTNET-FRA-GN-HOSTING-VPS
  • descr: GHOSTnet Network used for VPS Hosting Services
  • descr: 427 LA SALLE ST, 60605 Chicago
  • descr: Illinois, United States
  • country: US
  • admin-c: GN-RIPE
  • tech-c: GN-RIPE
  • status: ASSIGNED PA
  • mnt-by: GHOSTNET-MNT
  • mnt-lower: GHOSTNET-MNT
  • mnt-routes: GHOSTNET-MNT
  • created: 2012-09-05T03:51:53Z
  • last-modified: 2014-05-03T22:19:27Z
  • role: GHOSTnet GmbH
  • admin-c: GNSG-RIPE
  • tech-c: GNSG-RIPE
  • address: Am Dachsbau 17
  • address: 65812 Bad Soden a. Ts.
  • address: Deutschland
  • phone: +49 6172 185025
  • fax-no: +49 6172 185029
  • nic-hdl: GN-RIPE
  • abuse-mailbox: [email protected]
  • mnt-by: GHOSTNET-MNT
  • created: 2003-04-17T02:22:16Z
  • last-modified: 2017-11-10T09:36:32Z
  • route: 5.175.214.0/24
  • descr: GHOSTnet GmbH IP Space
  • origin: AS12586
  • mnt-by: GHOSTNET-MNT
  • created: 2013-10-24T00:31:19Z
  • last-modified: 2013-10-24T00:31:19Z

Links to attack logs

forum-spam-ip-list-2015-03-03