79.164.171.32 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Mitre ATT&CK IDs: T1110 - Brute Force, T1498 - Network Denial of Service
  • Tags: Cyclops, DDOS, Gamardeon, HermeticWiper, IsaacWiper, KillNet, PartyTicket, WhisperGate, attack ddos, botnet, ddos, list ips, russia, russian, ukraine, vnc
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: stopforumspam_365d

  • Country: Russian Federation
  • Network: AS8615 central telegraph public joint-stock company
  • Noticed: 50 times
  • Protcols Attacked: SSH
  • Countries Attacked: Russian Federation

Map

Whois Information

  • inetnum: 79.164.160.0 - 79.164.175.255
  • netname: Neo-CNT
  • descr: BRAS E-320-27 DHCP-pool 3
  • descr: Russian Central Telegraph, Moscow
  • country: RU
  • admin-c: VYK9-RIPE
  • admin-c: AAP43-RIPE
  • tech-c: VYK9-RIPE
  • status: ASSIGNED PA
  • mnt-by: CNT-MNT
  • created: 2008-04-14T10:59:30Z
  • last-modified: 2008-04-14T10:59:30Z
  • person: Alexey A Petrov
  • address: 7, Tverskaya st.,
  • address: Central Telegraph, Moscow,
  • address: 125375, Russia
  • phone: +7 495 504 3825
  • nic-hdl: AAP43-RIPE
  • mnt-by: CNT-MNT
  • created: 2004-06-17T13:15:46Z
  • last-modified: 2017-08-25T12:15:16Z
  • person: Victor Y. Kovalenko
  • address: Central Telegraph
  • address: 7, Tverskaya st.
  • address: 103375, Moscow, Russia
  • phone: +7 495 504 4414
  • nic-hdl: VYK9-RIPE
  • mnt-by: CNT-MNT
  • created: 1970-01-01T00:00:00Z
  • last-modified: 2013-10-22T07:57:07Z
  • route: 79.164.0.0/16
  • descr: CNT-network BLOCK
  • origin: AS8615
  • mnt-by: CNT-MNT
  • created: 2013-12-17T07:03:34Z
  • last-modified: 2013-12-17T07:03:34Z

Links to attack logs

roxy-ip-list-2023-05-03 roxy-ip-list-2023-05-05