78.142.18.107 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 50/100

Host and Network Information

  • Tags: C&C, UK Based, ip monitor, nmap, port-scan
  • View other sources: Spamhaus VirusTotal

  • Country: Bulgaria
  • Network: AS208046 maximilian kutzner
  • Noticed: 15 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia
  • Passive DNS Results: 78-142-18-107.cprapid.com www.78-142-18-107.cprapid.com www.namawah.tk www.inforestdaty.ml www.naqayqraso.tk www.kasptre.ga www.pojiomkjyt.ml inforestdaty.ml www.psasakwa.gq kasptre.ga naqayqraso.tk psasakwa.gq pojiomkjyt.ml namawah.tk techtop2.co.uk netmums.site

Malware Detected on Host

Count: 3 cac0211958a234cf3f4c8482189a6d34ca32e7516f2e9ad9296e6e1e74ab78e4 419291c47703d8103e50d1e53599c43bef6153a31e17ccce2ecd2e565d307d93 419291c47703d8103e50d1e53599c43bef6153a31e17ccce2ecd2e565d307d93

Open Ports Detected

80 8000

CVEs Detected

CVE-2006-20001 CVE-2022-36760 CVE-2022-37436 CVE-2023-25690 CVE-2023-27522

Map

Whois Information

  • inetnum: 78.142.18.0 - 78.142.18.255
  • mnt-domains: dagroup
  • netname: ColocationX
  • descr: ColocationX
  • country: NL
  • org: ORG-CL709-RIPE
  • admin-c: CLN38-RIPE
  • tech-c: CLN38-RIPE
  • mnt-domains: COLOX-MNT
  • mnt-routes: dagroup
  • mnt-routes: COLOX-MNT
  • status: ASSIGNED PA
  • mnt-by: dagroup
  • created: 2015-06-29T14:11:33Z
  • last-modified: 2022-11-15T10:10:31Z
  • organisation: ORG-CL709-RIPE
  • org-name: ColocationX Ltd.
  • country: GB
  • org-type: OTHER
  • address: Kingsfordweg 151, 1043GR Amsterdam
  • abuse-c: CLN38-RIPE
  • mnt-ref: dagroup
  • mnt-ref: AZERONLINE-MNT
  • mnt-ref: ADAMBB-MNT
  • mnt-ref: RELCOMGROUP-EXT-MNT
  • mnt-ref: PINGIPMAINTAINER
  • mnt-ref: COLOX-MNT
  • mnt-by: COLOX-MNT
  • created: 2022-11-09T11:43:31Z
  • last-modified: 2022-12-01T17:09:22Z
  • role: ColocationX Ltd. 24x7 NOC
  • address: Kingsfordweg 151, 1043 GR Amsterdam, Netherlands
  • abuse-mailbox: [email protected]
  • nic-hdl: CLN38-RIPE
  • mnt-by: COLOX-MNT
  • created: 2022-11-09T11:39:38Z
  • last-modified: 2022-11-09T11:43:26Z
  • route: 78.142.18.0/24
  • origin: AS208046
  • mnt-by: dagroup
  • created: 2020-01-30T15:45:28Z
  • last-modified: 2020-01-30T15:45:28Z

Links to attack logs

nmap-scanning-list-2022-02-09