69.16.223.254 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 69.16.223.254 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 7/100

Host and Network Information

  • Country: United States
  • Network: AS32244 liquid web l.l.c
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: ns2.axesnet.com dns2.grape.ca ns2.system9.com ns2.evokewebhosting.com enterprise-ns2.eclair.net hns2.beyondhosting.net ns4.retropacific.com.au ns2.iqcomputing.com ns3.iqcomputing.com ns2.pfpsites.com dns2.adaptive.net ns.bwwhosting.net ns2.evokewebs.com cs2.nubit.cloud ns2.widebluesound.com dns2.evise.net ns2.iqcomputing.net ns3.iqcomputing.net ns2.bytesizemarketing.com ns3.webservicesinc.net ns2.wiredtree.com dns2.10dollar.ca AUTH04.CS.NET ns2.serverbody.com ns2.liquidbubblehosting.co.uk NS2.IHWY.NET NS122.20GIGS.COM DNS2.NETRACOM.NET DNS2.REGISTER.CA dns2.gotowebsmith.com NS2.37SOLUTIONS.COM ns4.microbit.com ns4.abugaber.com NS2.CYBERSPYDER.NET NS4.E2EDGE.IN NS2.WEBSERVICESINC.NET ns3.liquidweb.com ns1.sourcedns.com.tebinet.com ns1.reliablehosters.com ns1.liquidweb.com ns1.sourcedns.com

Malware Detected on Host

Count: 2 9235583481d06530ef1ce04fa4f9a3bf3b6735dcdef0486cf6181c7868c9c249 3778d66acf31948117a05cd1f8c6d8c6c0659a6b8e631dda8ea0c54e55b8c94b

Open Ports Detected

53

Map

Whois Information

  • NetRange: 69.16.192.0 - 69.16.255.255
  • CIDR: 69.16.192.0/18
  • NetName: LIQUIDWEB
  • NetHandle: NET-69-16-192-0-1
  • Parent: NET69 (NET-69-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS32244
  • Organization: Liquid Web, L.L.C (LQWB)
  • RegDate: 2005-05-26
  • Updated: 2016-12-19
  • Ref: https://rdap.arin.net/registry/ip/69.16.192.0
  • OrgName: Liquid Web, L.L.C
  • OrgId: LQWB
  • Address: 4210 Creyts Rd.
  • City: Lansing
  • StateProv: MI
  • PostalCode: 48917
  • Country: US
  • RegDate: 2001-07-20
  • Updated: 2020-04-29
  • Ref: https://rdap.arin.net/registry/entity/LQWB
  • OrgTechHandle: IPADM47-ARIN
  • OrgTechName: IP Administrator
  • OrgTechPhone: +1-800-580-4985
  • OrgTechEmail: ipadmin@liquidweb.com
  • OrgTechRef: https://rdap.arin.net/registry/entity/IPADM47-ARIN
  • OrgAbuseHandle: ABUSE551-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-800-580-4985
  • OrgAbuseEmail: abuse@liquidweb.com
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE551-ARIN
  • network:Class-Name:network
  • network:ID:NETBLK-LIQUIDWEB.69.16.222.0/23
  • network:Auth-Area:69.16.192.0/18
  • network:Network-Name:LIQUIDWEB-69.16.222.0
  • network:IP-Network:69.16.222.0/23
  • network:IP-Network-Block:69.16.222.0-69.16.223.255
  • network:Organization;I:LIQUIDWEB
  • network:Org-Name:Liquid Web Inc
  • network:Street-Address:4210 Creyts Rd.
  • network:City:Lansing
  • network:State:MI
  • network:Postal-Code:48917
  • network:Country-Code:US
  • network:Tech-Contact;I:support@liquidweb.com
  • network:Created:20240729
  • network:Updated:20240729
  • network:Class-Name:network
  • network:ID:NETBLK-SOURCEDNS.69.16.192.0/18
  • network:Auth-Area:69.16.192.0/18
  • network:Network-Name:SOURCEDNS-69.16.192.0
  • network:IP-Network:69.16.192.0/18
  • network:IP-Network-Block:69.16.192.0 - 69.16.255.255
  • network:Organization;I:SOURCEDNS
  • network:Org-Name:SourceDNS
  • network:Street-Address:4210 Creyts Rd.
  • network:City:Lansing
  • network:State:MI
  • network:Postal-Code:48917
  • network:Country-Code:US
  • network:Created:20040212
  • network:Updated:20060327

Links to attack logs

****** ****** ******

Share on: