5.198.176.28 Threat Intelligence and Host Information

General

IP Address
5.198.176.28
IPv4 Address
Location
🇮🇷 Iran
IR
Network
AS58224
Iran Telecommunication Company PJS
Threat Score
35/100
Medium Risk
bruteforceBruteforceBrute-ForceinfonoticesshSSH
Attack Intelligence
MITRE ATT&CK Techniques
T1110 - Brute Force
Open Ports Detected
2054
Geographic Location
Country
Iran
City
Unknown
Region
Unknown
Coordinates
35.6980, 51.4115
Network Information
ASN
AS58224
Organization
Iran Telecommunication Company PJS
Network
AS58224 Iran Telecommunication Company PJS
WHOIS Information
inetnum
5.198.160.0 - 5.198.191.255
netname
IR-T-10-20120827
country
IR
org
ORG-ITCP1-RIPE
admin-c
NA6437-RIPE
tech-c
DP15203-RIPE
status
ALLOCATED PA
mnt-by
TCI-RIPE-MNT
created
2019-05-28T08:03:25Z
last-modified
2019-05-28T08:03:25Z
organisation
ORG-ITCP1-RIPE
org-name
Iran Telecommunication Company PJS
org-type
LIR
address
Telecommunication Company of IRAN
phone
+982189797777
fax-no
+982189796605
abuse-c
AR15666-RIPE
mnt-ref
mnt-zahedi
person
Khadijeh Zahedi Arani
nic-hdl
KZ1283-RIPE
route
5.198.160.0/19
origin
AS58224
Attack Logs
Date Target Location Protocol Link
2025-09-21 London, UK SSH View Log

  • Country: Iran
  • Network:
  • Noticed: 14 times
  • Protocols Attacked: ssh
  • Countries Attacked: Australia
Disclaimer
This page contains threat intelligence information for the IPv4 address 5.198.176.28 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.