64.99.64.37 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 64.99.64.37 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Known Malicious Host 🔴 83/100
Host and Network Information
-
Mitre ATT&CK IDs: T1003 - OS Credential Dumping, T1082 - System Information Discovery, T1083 - File and Directory Discovery, T1087 - Account Discovery, T1102 - Web Service, T1105 - Ingress Tool Transfer, T1110 - Brute Force, T1203 - Exploitation for Client Execution, T1204 - User Execution, T1210 - Exploitation of Remote Services, T1211 - Exploitation for Defense Evasion, T1212 - Exploitation for Credential Access, T1213 - Data from Information Repositories, T1214 - Credentials in Registry, T1518 - Software Discovery, T1519 - Emond, T1542 - Pre-OS Boot, T1543 - Create or Modify System Process, T1546 - Event Triggered Execution, T1547 - Boot or Logon Autostart Execution, T1548 - Abuse Elevation Control Mechanism, T1550 - Use Alternate Authentication Material, T1552 - Unsecured Credentials, T1553 - Subvert Trust Controls, T1555 - Credentials from Password Stores, T1557 - Man-in-the-Middle, T1562 - Impair Defenses, T1564 - Hide Artifacts, T1565 - Data Manipulation, T1566 - Phishing, T1567 - Exfiltration Over Web Service, T1568 - Dynamic Resolution, T1571 - Non-Standard Port
-
Tags: auto-generated security, command, control, ta0002, ta0003, ta0005, ta0006, ta0007, ta0008, ta0011, ta0043
-
View other sources: Spamhaus VirusTotal
-
Contained within other IP sets: hphosts_ats, hphosts_emd, hphosts_fsa, hphosts_psh
- Country: Canada
- Network:
- Noticed: 4 times
- Protocols Attacked: SSH
- Passive DNS Results: yapmabuildtech.com photolawton.com awhvacs.com cityboundbus.com oaziz-ca.com arabworldtrd.com yomiintl.com dewar-insurances.com 0two4.com skyelantic.com lctdiagnostics.com mcallisterandvengco.com perroshermanoscr.com lnmarr.com artaralegal.com yulmamusic.com mvls-group.com donebylavina.com vedamritorganics.com hartzelinsurance.com myiotsemiconductor.com atatitles.com apcreationnl.com macibdesigns.com okobzarena.com leonardocarraro.com hikvision-ltd.com qatarsairwaygroups.com queenlashesbeauty.com b10xlab.com akashiprime.com organictanjore.com iesimx.com 120oldeknollroad.com staysweetnevada.com rvrlabconsult.com southernluxkeys.com thenewfilmmakers.com obeegames.com apollo-frelght.com jamzindustries.com theintimateroombyluceez.com omarnaghiyev.com onehundredroots.com nellaisupermarket.com deltawavefc.com 01stopservices.com curvehospitallty.com colectivaworks.com nosonics.com y0urmag.com altainteior.com tehila-madhni.com bdo-om.com tasharkang.com reality-uae.com raquelfregonesi.com anchorrloan.com urbanstonehub.com nescadco.com mnptechnical.com vishalcommodities.com plumadeleste.com magneticmomentsuae.com guttenmachelaw.com pawpriintsapp.com patelche.com remedytepharmacy.com vipmewellness.com drfenterprize.com mecaiac.com 2529luberon.com emberdownpaper.com sumiinsa.com admiospty.com bny-preshing.com qarnas-2030.com jayisonmccorkle.com jhhjhjhjhjhjgg.com bullheim.com balmaxfloors.com hooahbrandco.com nexusforummall.com jultorresproperties.com overlookedskills.com ecodirtbuster.com cirquadusoleil.com aceerocure.com voaise.com blackrocks-usa.com takeheedservices.com tnt-driveaway.com ar-northland.com tiktokmarketing.store golden-deal-z.store pixel-perfect.store traditionalbar.store rtsystems.tech esniq.store narayantriv.store gustyagritrading.store nmgroups.store myaol.online zawaideh.org dannyconstructions.org monarchprotect.org lumenworks.org now-contracting.online thecollegeaccesscollaborative.org troyart.org westernunion-worldwide.org sanjaytourstravel.org yvmmedia.org apexline.org pacificloanmbank.org mallorywpoe.online 4pamperedpets.online ekdantgroup.net mishralawfirmpuri.online cawleyarchitects.net clarityassist.net rellrowdy.online mailprovana.net fxeservices.net cheminutra.net igequipment.net mypvr.net dimexcom.net fedib.net absfil.net celesteservices.net clerkrange.net nuti.info www.839n3rdst.com shakedauto.store kovairoots.store spiritfilledclothing.store theespark.store amigosgrocery.store cmayohospital.store knittedstudio.store introv3rt.store isaworks.store wccnx.org softenium.org shuddhkrishi.org targetin.org assuredtaxservices.org learninglmpactfoundation.org epiqgloble.org antirecldivism.org bettercastings.org queencrabtrust.org connectkidscounseling.org inmigrationcenter.org ajaxis.org binyanschwartz.org cranburycares.org jeromebacud.online diinristic.online unalacademy.online renovationrentals.online sotoresearch.online mytendon.net ecsha.online jarentals.online puneetnema.net anagco.net algoshark.net windrestrictor.net advocatemadhusuthanan.net frontlernet.net sculptnouveau.net roland-group.net skyejmovingllc.net onlineustreasury.net kuberasonline.net standard-golf.net runprovanas.net alphasys.info trueframe.info varman.info innerstacey.club recessathletics.club infoqcd.com tedwallens.com mugacee.com bijucomputerservices.com sa-mofa.com www.surfacespecialistsnc.com surfacespecialistsnc.com shivervo.com skinrulz.com bobrnerlis.com nstrens.com rockpointeescrovv.com lindabkc.com midwesthavenhomesllc.com tgctgov.com fosfoquirn.com seaweedcannabis-ca.com recogefuturo.com mancinidufy.com fullcircledubai.com yugeniuslab.com plttax.com mjitstudent.com minervaingredients.com reliantcapitalgpr.com shiladesigner.com sarvagitconsulting.com chem-venture.com vermeer-corp.com mailstudio98s.com allentownlnc.com engraveng.com localiuna120.com lgyend.com jimcik.com thehaulingfury.com gaitwaymedia.com adrianaglobal.com panoramaantennas-inc.com gstr1.com eotoois.com kavimaenterprises.com simpletalentagency.com mickdphoto.com tirupatireddy.com gulf-skids.com ajantagifts.com navasspa.com kstoledo.com truereiligion.com rootedluxesalon.com sendaigenleads.com briskdatavision.com alloylifescience.com chariootuav.com 6786firetowerrd.com gvhmstech.com aureallabs.com foraypeople.com sideskylaw.com homesbynikita.com thereckmethod.com bradsdesertinn.com kimlery-horn.com thembrownscares.com mail-xl.com frasertheaqency.com ayllaofficiel.com visitwebleadsincs.com r4everie.com grrmotorsports.com petalendpond.com nirmannppl.com linkaslogistics.com blakoutau.com clearbreez.com barnes-haskell.com gulernak.com cappyinvestments.com kiauaagencia.com salonmonetiquetogo.com silverspringshotelsug.com shankhpadma.com liberty-motors-llc.com rmbrneed.com bearland-digitalsolutions.com rienvestment.com biotherys.com tradiuspro.com capitalconvenstion.com c-h-a-r-l-e-s.com samaritasdtw.com adp-payrroll.com riester-gruppo.com nexxgenenterpriseltd.com spaceravenltd.com altusmalaysiia.com drfprivategroup.com nileresorthotel.com zyneriscr.com metropathcom.com breyaime.com duetschebankswift.com okatleconstruction.com ourfreshairs.com atlanticmarinelectronics.com paulroblnson.com fronteirdistributing.com silva-on.com ashandgoldconsulting.com bmwminiofplano.com www.wellnesscenterfayetteville.com wellnesscenterfayetteville.com lonestartruckstxes.store pt100kgold.store thehiddenchestllc.store flive.store autopaintspecialties.store luxuryride.org rootzandwingzhomes.org ytlogistics.org b14foundation.org sushilagencies.org fllawgroup.org ballmergroups.org harveyreeseart.org shcassociates.org invmf.org dreamsgear.org tokki-canon.org biotherys.org arco-sa.org shoreholdings.org culturecollectivecamps.org hooghly.org nlgnovus.org brokenbean.org becavo.org urbanharvests.org globaltravelinsurancee.online ionaerospacecenter.online hopewellsurvey.online moneymotivation.net smart-meals.online becomefitness.online bigloud.online myndz.net kingdomexecutives.net tactcom.online vendiq.online transforemercontainmentbag.net procosur.online nsm-ny.net surgical-innovations.net tryaminetwork.net mg-chemicals.net snailcharity.net dariawilson.net goldentide.net townhospitality.net fab5loanadvisors.net avenidor.net executivefillermetals.net arundaga.net madmagical.net stephaniesaunders.net shalincomposites.net metalurgia.net teleologlc.net byte-bite.net csstechnocommercials.net vetopropac.net spicegems.net foreverlandscape.net mastersmlilwork.net bbraunusa.net nexxpress.net 0xaura.net vcreddy.com flexiistaff.com gloplagoik.com annakootgold.com ghafalsahra.com exfoamericainc.com lancity-cn.com dandymancontracting.com elitexcontrols.com dalmapetro.com lasansk.com srivasavipipes.com ssharidasinfotech.com yutecommuter.com apsnd.com goldenkeyhomz.com sssolutionsus.com aspencreekmarketing.com kd-metals.com visitaigenleads.com cynergypharma.com thewildcardexperience.com geyabksa.com divyasingham.com d-lign.com connects-sa.com transparentgc.com centerlinestripings.com drlve21.com pa1ecek.com landgrouptittle.com enriquecetumente.com allinebeatrici.com alethicinsights.com ffcenterprise.com huntfortomorrow.com archlnsurance.com fastdukaanservices.com cajmrs.com kristiscompletecomfort.com avyanglobalfood.com pcs-cpas.com lolabertea.com visionarycarriersnfp.com ssrincorp.com alexsitiaart.com citibanko.com disputeresolutionsteam.com kyleatlantics.com corhaelth.com encampsell.com wearwilkinson.com vflairsolutions.com lawsonmechanicals.com tasued-edu-ng.com esphour.com grupoabcor.com benjimax.com lastarchi.com cohendixsolomon.com dynamitecreek.com baseoranisation.com myfounderfuel.com harmonyalliancetrust.com ameliadavidson.com delphinesnyers.com axisstatements.com aurorapart.com atacstech.com sasitradnig.com sunwahdreamatelier.com wbsiillc.com kgstechway.com bellewest-fs.com volusiahandymansolution.com conneqtcorporation.com hitachisrail.com sanctuaryhomescr.com jomainesislandenterprises.com shadcl.com tapasenterprises.com smlmjl.com jasmedha.com vitri-law.com bestsurpply.com omsaiindustrialchemicals.com studio-tou.com cbbrorrego.com mpfundingbiz.com learniumlabs.com srisrinivasaschool.com taorahelix.com grovenlabs.com lexymediaagency.com ciannicollections.com precisioncraftbuildersllc.com chd-el.com nessaintegrativeliving.com gtsweed.com growandcommunicatespeechtherapy.com winemovements.com gvstudent.com landgrouptitles.com duncenaviation.com cpaxinfinserv.com bigdtreeservicellc.com lidlesrh.com mailhonor-cn.com nrstren.com osautoleadgroup.com vishwakalyanpathsanstha.com mayflour.co.uk www.purchaseproduct.com www.mayflour.co.uk agentic-systems.tech coregroup.tech stuserve.store themh6llentertainment.store clearlygifted.store vj-gadget.store outlawzzzinc.store chandanweb.store animalfund.store traffictargetads.store 360nocodelab.store kwfngo.org suniltraders.org nyxcollective.org worksera.org incytes.org dwellogroup.org ascensionsetonhca.org istcv.org covenantpropertyholdings.org thirty8pmconsulting.org hrcbse.org inchristpiano.org vibingcats.org
Malware Detected on Host
Count: 7 c4d265f23f070cca01d37ebed24b9f4272816a30c7db9772159add5d7b7d00fd 422d8a97b75426b9725b6a0f6a9ecb1818160dc931140b7615e38c5a62ecaad7 f079d4df62c527354884de65b0b16000921303f3786aa6038e22037995b8a86e 39f98e51bcd3696766ee8f0e7c7f7b5d87d75ed730a19ef63cbf88b74cf8f0cd bfd5d16039ea4299d294770e4c854137af33446c01e1411a89ded1ad259ff475 5e18b23648e33ce04389fcff1cb47f13065ec6b2fa1fc951c9fd90327abb4a3a 83591361c770d4326f89bcb022cc86258244e2d8d820e7e6a03a7ff037237e85
Open Ports Detected
CVEs Detected
CVE-2006-20001 CVE-2007-4723 CVE-2009-0796 CVE-2009-2299 CVE-2011-1176 CVE-2011-2688 CVE-2012-3526 CVE-2012-4001 CVE-2012-4360 CVE-2013-0941 CVE-2013-0942 CVE-2013-2765 CVE-2013-4365 CVE-2016-1546 CVE-2016-4975 CVE-2016-4979 CVE-2016-5387 CVE-2016-8612 CVE-2016-8740 CVE-2016-8743 CVE-2017-15710 CVE-2017-15715 CVE-2017-3167 CVE-2017-3169 CVE-2017-7679 CVE-2017-9788 CVE-2017-9798 CVE-2018-11763 CVE-2018-1283 CVE-2018-1301 CVE-2018-1302 CVE-2018-1303 CVE-2018-1312 CVE-2018-1333 CVE-2018-17189 CVE-2018-17199 CVE-2019-0196 CVE-2019-0211 CVE-2019-0217 CVE-2019-0220 CVE-2019-10082 CVE-2019-10092 CVE-2019-10098 CVE-2019-17567 CVE-2020-11985 CVE-2020-13938 CVE-2020-1927 CVE-2020-1934 CVE-2020-35452 CVE-2021-26690 CVE-2021-26691 CVE-2021-32785 CVE-2021-32786 CVE-2021-32791 CVE-2021-32792 CVE-2021-33193 CVE-2021-34798 CVE-2021-39275 CVE-2021-40438 CVE-2021-44224 CVE-2021-44790 CVE-2022-22719 CVE-2022-22720 CVE-2022-22721 CVE-2022-23943 CVE-2022-26377 CVE-2022-28330 CVE-2022-28614 CVE-2022-28615 CVE-2022-29404 CVE-2022-30556 CVE-2022-31813 CVE-2022-36760 CVE-2022-37436 CVE-2023-25690 CVE-2023-31122 CVE-2023-38709 CVE-2023-45802 CVE-2024-24795 CVE-2024-27316 CVE-2024-38472 CVE-2024-38473 CVE-2024-38474 CVE-2024-38475 CVE-2024-38476 CVE-2024-38477 CVE-2024-39573 CVE-2024-40898 CVE-2024-42516 CVE-2024-43204 CVE-2024-43394 CVE-2024-47252 CVE-2025-49812 CVE-2025-53020
Map
Whois Information
- NetRange: 64.98.0.0 - 64.99.255.255
- CIDR: 64.98.0.0/15
- NetName: TUCOWS-BLK2
- NetHandle: NET-64-98-0-0-1
- Parent: NET64 (NET-64-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: Tucows.com Co. (TUCOW)
- RegDate: 2000-05-18
- Updated: 2022-02-11
- Comment: Geofeed https://geoip.tingfiber.net/tf-geofeed.csv
- Ref: https://rdap.arin.net/registry/ip/64.98.0.0
- OrgName: Tucows.com Co.
- OrgId: TUCOW
- Address: 96 Mowat Avenue
- City: Toronto
- StateProv: ON
- PostalCode: M6K-3M1
- Country: CA
- RegDate: 2006-02-07
- Updated: 2025-10-14
- Ref: https://rdap.arin.net/registry/entity/TUCOW
- OrgTechHandle: LEVYR7-ARIN
- OrgTechName: Levy, Reg
- OrgTechPhone: +1-323-880-0831
- OrgTechEmail: rlevy@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/LEVYR7-ARIN
- OrgTechHandle: ZAMBR10-ARIN
- OrgTechName: Zambrano, Manuel
- OrgTechPhone: +1-949-706-2300
- OrgTechEmail: mzambrano@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/ZAMBR10-ARIN
- OrgTechHandle: OPERA26-ARIN
- OrgTechName: Operations Team
- OrgTechPhone: +1-416-531-5584
- OrgTechEmail: dnstech@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/OPERA26-ARIN
- OrgTechHandle: FJO19-ARIN
- OrgTechName: Obispo, Francisco Jose
- OrgTechPhone: +1-949-706-2300
- OrgTechEmail: francisco@unr.com
- OrgTechRef: https://rdap.arin.net/registry/entity/FJO19-ARIN
- OrgTechHandle: DIACO-ARIN
- OrgTechName: Diaconita, Dragos
- OrgTechPhone: +1-416-535-0123
- OrgTechEmail: ddiaconita@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/DIACO-ARIN
- OrgTechHandle: HALAS9-ARIN
- OrgTechName: Halassy-Creamer, Joshua
- OrgTechPhone: +1-416-535-0123
- OrgTechEmail: jhalassycreamer@tucowsinc.com
- OrgTechRef: https://rdap.arin.net/registry/entity/HALAS9-ARIN
- OrgTechHandle: NOC2038-ARIN
- OrgTechName: Network Operations Center
- OrgTechPhone: +1-416-535-0123
- OrgTechEmail: arin-maint@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC2038-ARIN
- OrgNOCHandle: NOC12422-ARIN
- OrgNOCName: Network Operations Center
- OrgNOCPhone: +1-416-531-5584
- OrgNOCEmail: arin-noc@tucows.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC12422-ARIN
- OrgTechHandle: LEEKE55-ARIN
- OrgTechName: Lee, Kevin
- OrgTechPhone: +1-416-535-0123
- OrgTechEmail: klee@tucows.com
- OrgTechRef: https://rdap.arin.net/registry/entity/LEEKE55-ARIN
- OrgAbuseHandle: AST147-ARIN
- OrgAbuseName: Abuse Security Team
- OrgAbusePhone: +1-416-531-5584
- OrgAbuseEmail: arin-abuse@tucows.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AST147-ARIN
- RAbuseHandle: AST147-ARIN
- RAbuseName: Abuse Security Team
- RAbusePhone: +1-416-531-5584
- RAbuseEmail: arin-abuse@tucows.com
- RAbuseRef: https://rdap.arin.net/registry/entity/AST147-ARIN
- RTechHandle: OPERA26-ARIN
- RTechName: Operations Team
- RTechPhone: +1-416-531-5584
- RTechEmail: dnstech@tucows.com
- RTechRef: https://rdap.arin.net/registry/entity/OPERA26-ARIN
- RNOCHandle: NOC12422-ARIN
- RNOCName: Network Operations Center
- RNOCPhone: +1-416-531-5584
- RNOCEmail: arin-noc@tucows.com
- RNOCRef: https://rdap.arin.net/registry/entity/NOC12422-ARIN
- RTechHandle: DIACO-ARIN
- RTechName: Diaconita, Dragos
- RTechPhone: +1-416-535-0123
- RTechEmail: ddiaconita@tucows.com
- RTechRef: https://rdap.arin.net/registry/entity/DIACO-ARIN