80.82.77.221 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 80.82.77.221 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Country: Netherlands
  • Network:
  • Noticed: 29 times
  • Protocols Attacked: SSH
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: media.waxtube.com

Malware Detected on Host

Count: 20 aee7374d4b90a4ffc78d867dc7bcdaf6f8ea94c6e4552ea27e57c756bea1f068 e3c58c4d65650f902e45ee604dba853fdd4b3dea2ac75130e290844d3e2c7603 a1b2f18b48cbae1df244f074c9a7f1ccfd369aeb981c6a4964b36d5d9e0c487c 57e066f210a5d85717e132895bb1361c5ca30a3af0a069232a0868a7ad0a32ab fe2e5df2fae90fb90b56e4ea268e8ca68f46dc3365c22b840d865193a48be189 624f129189a05897c176e9feb519521c1b6ef528b0b52e1a7a3290e5a2313a6b c0ef5107e48c98d7f750fa374af4589554b7633f829e49060054cb05f2951f9b 16ee9713b3d2f00d3929a09f7c8cb47244ebf865c39fa06fa844ee58804257ca 55d2201a2f244c7f3dc5dee763fcb6703bf2537ba4f5eded329ca68f86ad7255 89c2e0b53ce66175e92209b96193b85031bb94bd2365b7b4465d6b1ca3667876

Map

Links to attack logs

nmap-scanning-list-2020-11-29 nmap-scanning-hosts-2020-10-05 nmap-scanning-hosts-2020-09-24 nmap-scanning-list-2021-01-02 ****** nmap-scanning-list-2020-12-20 mssql-bruteforce-ip-list-2020-12-15 nmap-scanning-list-2020-12-15 mssql-bruteforce-ip-list-2020-12-16 nmap-scanning-hosts-2020-10-09 ****** ******

Share on: