81.177.139.41 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 81.177.139.41 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 50/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: cleanmx_viruses, hphosts_emd, hphosts_fsa

Malware Detected on Host

Count: 892 9baab69ddbddd48f4019951cd4162eed2f3204a9167ce607e5730feac5fd6db4 f9176b2e1acc13912290f84533a6074bb7e9863c642179e133c960684b5bcf07 e4491ac4d4392e6484a3c62f415ba6923ad6c1ea27fe3867d44e9714878d80a8 2e240f5b7cfb8a24f5a8f4b7d153f1ff350bb4ae1898945cf482a801200624ec 9656acf2b5ec4c5baf7053a6d337992dbf0b6c85b99de7312d5d1d9697690230 97e99a3191a1ecb5a63688b1c64ef61e8adb46922a702c095d063d383abd65d9 6de2af58178c92362a6bf6dc89bbbaac0d5859eeeb648404bcd4928227302dcb d619200b364344dc9b63b1ec74fe3c305e5d5b63911075d2712044daf37153e6 6453c86977946b0024b29723f69fcc735a1a3fe2f5782c166597372e22d542d3 d0ef5a6f44113acdfc7ce85223d5964d905d16cb70654829dd07970b41a4282b

Open Ports Detected

21 22 2222 443 80

CVEs Detected

CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408

Map

Whois Information

  • inetnum: 81.177.139.0 - 81.177.139.255
  • netname: AVGURO-NET
  • descr: Avguro Technologies Ltd. Hosting service provider
  • descr: Moscow, Russia
  • country: RU
  • admin-c: SU407-RIPE
  • tech-c: SU407-RIPE
  • abuse-c: ATA95-RIPE
  • status: ASSIGNED PA
  • mnt-by: AS8342-MNT
  • created: 2010-05-04T13:54:02Z
  • last-modified: 2019-01-30T08:42:03Z
  • person: Sergey Ulyashin
  • address: Avguro Technologies Ltd.
  • address: 18, 912, Yunnatov str.
  • address: 127083, Moscow, Russia
  • phone: +74952293031
  • fax-no: +74952293031
  • nic-hdl: SU407-RIPE
  • created: 2007-08-07T13:30:58Z
  • last-modified: 2020-06-04T12:20:02Z
  • mnt-by: AS8342-MNT
  • route: 81.177.128.0/19
  • descr: RTCOMM-RU
  • origin: AS8342
  • mnt-by: AS8342-MNT
  • created: 2015-03-05T10:00:46Z
  • last-modified: 2015-03-05T10:00:46Z
Share on: