52.184.28.225 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 52.184.28.225 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 35/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Country: Hong Kong
  • Network:
  • Noticed: 29 times
  • Protocols Attacked: ntp
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: flexreplicapromotehaserver638483185377326100.sqltest-eg1.mscds.com ks053.com ks6615.com ks5237.com ks5281.com ks5285.com ks5283.com ks5278.com ks5277.com ks5272.com ks5273.com ks5271.com ks5270.com ks5269.com ks5268.com ks5267.com ks5265.com ks5263.com ks5261.com ks5260.com ks5259.com ks5257.com ks5256.com ks5255.com ks5254.com ks5251.com ks5248.com ks5249.com ks5247.com ks5246.com ks5245.com ks5242.com ks5241.com ks5240.com ks5239.com ks5235.com ks5233.com ks5232.com ks5231.com ks5230.com ks5229.com

Map

Whois Information

Links to attack logs

****** awsjap-ntp-bruteforce-ip-list-2021-07-26 ****** ******

Share on: