54.221.122.179 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 54.221.122.179 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network: AS14618 amazon.com inc.
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10001 10134 10250 10443 10554 11000 11112 11210 11211 11371 1337 13579 14265 16010 16993 17000 18245 19071 20000 3128 3200 3211 3221 3269 3301 3310 3311 3337 3352 3403 3408 3412 3479 3503 3521 3523 3524 3541 3542 3550 3551 3557 3562 3569 3792 3793 3794 3951 4043 4242 4282 4433 4500 4545 4567 4747 4808 4848 4911 5003 5006 5009 5010 5070 5172 5222 5357 5400 5443 5454 5592 5598 5601 5609 5800 5858 5900 5901 5907 5908 5938 6000 6004 6007 6008 6010 6080 6264 6443 6543 6565 6601 6633 6650 6653 6664 6666 6667 6789 7001 7003 7005 7014 7070 7081 7090 7401 7415 7443 7465 7474 7634 7657 7700 7777 8003 8010 8016 8027 8029 8037 8039 8040 8046 8049 8054 8055 8069 8072 8080 8081 8082 8083 8085 8086 8097 8098 8102 8104 8123 8140 8182 8190 8239 8248 8252 8401 8402 8405 8407 8409 8411 8412 8416 8417 8421 8425 8428 8430 8444 8445 8446 8500 8586 8621 8622 8728 8766 8779 8788 8800 8804 8805 8806 8808 8820 8822 8826 8827 8833 8834 8842 8845 8847 8851 8856 8857 8858 8862 8864 8865 8866 8867 8875 8880 8885 8888 8889 9000 9005 9006 9009 9022 9028 9030 9037 9041 9042 9043 9046 9050 9070 9084 9090 9091 9092 9098 9104 9109 9119 9136 9160 9200 9201 9203 9212 9215 9217 9218 9219 9295 9300 9302 9303 9305 9433 9443 9595 9600 9606 9682 9690 9704 9761 9898 9899 9943 9944 9966 9981 9988 9990 9993 9997 9998

CVEs Detected

CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12527 CVE-2019-12528 CVE-2019-12529 CVE-2019-12854 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2020-11945 CVE-2020-14058 CVE-2020-15049 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-28662 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-46784 CVE-2022-41318

Map

Whois Information

  • NetRange: 54.144.0.0 - 54.221.255.255
  • CIDR: 54.144.0.0/12, 54.192.0.0/12, 54.216.0.0/14, 54.208.0.0/13, 54.160.0.0/11, 54.220.0.0/15
  • NetName: AMAZON
  • NetHandle: NET-54-144-0-0-1
  • Parent: NET54 (NET-54-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS:
  • Organization: Amazon Technologies Inc. (AT-88-Z)
  • RegDate: 2014-10-23
  • Updated: 2021-02-10
  • Ref: https://rdap.arin.net/registry/ip/54.144.0.0
  • OrgName: Amazon Technologies Inc.
  • OrgId: AT-88-Z
  • Address: 410 Terry Ave N.
  • City: Seattle
  • StateProv: WA
  • PostalCode: 98109
  • Country: US
  • RegDate: 2011-12-08
  • Updated: 2022-09-30
  • Comment: All abuse reports MUST include:
  • Comment: * src IP
  • Comment: * dest IP (your IP)
  • Comment: * dest port
  • Comment: * Accurate date/timestamp and timezone of activity
  • Comment: * Intensity/frequency (short log extracts)
  • Comment: * Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
  • Ref: https://rdap.arin.net/registry/entity/AT-88-Z
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • OrgRoutingHandle: ARMP-ARIN
  • OrgRoutingName: AWS RPKI Management POC
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/ARMP-ARIN
  • OrgRoutingHandle: IPROU3-ARIN
  • OrgRoutingName: IP Routing
  • OrgRoutingPhone: +1-206-555-0000
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/IPROU3-ARIN
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN
  • NetRange: 54.221.0.0 - 54.221.255.255
  • CIDR: 54.221.0.0/16
  • NetName: AMAZON-IAD
  • NetHandle: NET-54-221-0-0-1
  • Parent: AMAZON (NET-54-144-0-0-1)
  • NetType: Reallocated
  • OriginAS:
  • Organization: Amazon Data Services NoVa (ADSN-1)
  • RegDate: 2020-04-16
  • Updated: 2021-02-10
  • Ref: https://rdap.arin.net/registry/ip/54.221.0.0
  • OrgName: Amazon Data Services NoVa
  • OrgId: ADSN-1
  • Address: 13200 Woodland Park Road
  • City: Herndon
  • StateProv: VA
  • PostalCode: 20171
  • Country: US
  • RegDate: 2018-04-25
  • Updated: 2019-08-02
  • Ref: https://rdap.arin.net/registry/entity/ADSN-1
  • OrgAbuseHandle: AEA8-ARIN
  • OrgAbuseName: Amazon EC2 Abuse
  • OrgAbusePhone: +1-206-555-0000
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN
  • OrgTechHandle: ANO24-ARIN
  • OrgTechName: Amazon EC2 Network Operations
  • OrgTechPhone: +1-206-555-0000
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
  • OrgNOCHandle: AANO1-ARIN
  • OrgNOCName: Amazon AWS Network Operations
  • OrgNOCPhone: +1-206-555-0000
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN

Links to attack logs

anonymous-proxy-ip-list-2023-06-22