62.163.28.142 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 62.163.28.142 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: Netherlands
  • Network: AS33915 vodafone libertel b.v.
  • Noticed: 1 times
  • Protcols Attacked: telnet
  • Passive DNS Results: degriek.direct.quickconnect.to

Open Ports Detected

1000 1012 102 1023 1025 1026 104 1099 11 1110 1153 1167 1200 1234 1290 13 1311 1344 1388 15 1521 1604 1649 1660 17 1723 1741 179 19 1901 1926 1935 1947 199 1990 20 2003 2008 2012 2022 2030 2049 2050 2054 2055 2057 2058 2061 2062 2065 2070 2077 2079 2081 2086 2087 2121 2150 2154 22 2201 222 2220 2221 2232 225 2250 23 2351 2375 2376 2379 2455 2480 2506 2548 2551 2552 2554 2557 2559 2562 2566 2567 2569 2572 26 2626 263 2650 2761 2806 3001 3048 3049 3050 3051 3052 3056 3058 3059 3061 3063 3066 3067 3068 3069 3075 3076 3082 3083 3085 3086 3087 3089 3091 3093 3094 3095 3097 3100 3102 3105 3106 3107 3109 311 3111 3112 3113 3116 3118 3120 3128 3200 3260 3268 3310 3389 3401 3403 3404 3405 3407 3408 3409 3410 3412 3503 3522 3541 3549 3551 3552 3556 3557 3568 3569 3689 37 3780 3792 3838 389 3910 3950 3951 3952 3954 4002 4010 4022 4042 4063 4117 4242 4243 4282 4321 443 4433 444 4443 447 450 4500 4506 4524 4567 4646 4664 4734 4782 4786 4840 4848 491 5000 5001 5002 5005 5006 5007 5010 503 5070 5080 5122 5172 5190 5201 522 5269 5280 5357 5400 5431 5432 5443 554 5542 5567 5592 5595 5598 5599 5600 5601 5605 5800 5801 5858 587 5900 5901 5906 5907 5910 5938 5984 5986 6001 6002 6004 6005 6007 6036 6080 631 6352 636 6379 6443 6511 6543 6550 6600 6603 6653 6662 6664 6668 6697 6748 685 6998 70 7001 7010 7071 7090 7218 7433 7443 7445 7465 7474 7537 7700 7777 7778 7788 79 7979 800 8000 8003 8004 8006 8008 8009 8010 8011 8012 8014 8015 8029 8030 8033 8034 8043 8044 8045 8046 8047 8048 8049 8051 8054 8055 8058 8060 8069 8072 808 8080 8082 8084 8085 8087 8091 8103 8104 8105 8107 8108 8110 8123 8126 8140 8159 8200 8236 8238 8248 8251 830 84 8409 8410 8411 8412 8414 8415 8416 8422 8425 8426 8428 8429 843 8432 8433 8442 8443 8545 8553 8585 8590 8602 8622 8623 8649 8663 87 8700 8733 8767 8779 8784 8787 8788 8791 88 880 8801 8808 8809 8811 8813 8816 8818 8824 8830 8833 8839 8841 8857 8859 8863 8866 8875 8876 8878 8880 8885 8888 8889 8891 9000 902 92 96 99 992 994 995 999

CVEs Detected

CVE-2011-4969 CVE-2012-6708 CVE-2014-6071 CVE-2015-9251 CVE-2019-11358 CVE-2020-11022 CVE-2020-11023 CVE-2020-23064

Map

Whois Information

  • inetnum: 62.163.28.0 - 62.163.30.255
  • netname: UPC-NL
  • descr: CPE Customers NL
  • country: NL
  • admin-c: LGI-RIPE
  • tech-c: LGI-RIPE
  • status: ASSIGNED PA
  • mnt-by: ZIGGO-SERVICES-MNT
  • created: 2008-12-09T11:28:35Z
  • last-modified: 2020-12-21T14:59:25Z
  • role: Liberty Global RIPE DBM
  • address: Liberty Global B.V.
  • address: Boeing Avenue 53
  • address: 1119PE Schiphol-Rijk
  • address: Netherlands
  • phone: +31 20 778 9840
  • fax-no: +31 20 7788203
  • admin-c: SVS4-RIPE
  • admin-c: LG10360-RIPE
  • admin-c: AA37138-RIPE
  • tech-c: SVS4-RIPE
  • tech-c: LG10360-RIPE
  • tech-c: AA37138-RIPE
  • nic-hdl: LGI-RIPE
  • mnt-by: MNT-LGI
  • created: 2012-07-03T07:33:27Z
  • last-modified: 2022-05-02T11:15:08Z
  • route: 62.163.0.0/17
  • descr: VODAFONE_ZIGGO
  • origin: AS33915
  • mnt-by: AS6830-MNT
  • mnt-by: TNF-MNT
  • mnt-by: ZIGGO-RTRMGMT
  • created: 2020-10-16T15:34:16Z
  • last-modified: 2020-10-30T12:00:02Z

Links to attack logs

vultrparis-telnet-bruteforce-ip-list-2023-08-29