85.192.41.225 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 37/100

Host and Network Information

  • Tags: Brute-Force, Bruteforce, SSH, digital ocean, scanners, ssh, vultr
  • View other sources: Spamhaus VirusTotal

  • Country: Russian Federation
  • Network: AS12695 llc digital network
  • Noticed: 5 times
  • Protcols Attacked: ssh
  • Countries Attacked: France, Germany
  • Passive DNS Results: freemonoid.ru

Open Ports Detected

100 1012 102 1025 1026 1028 104 10443 10554 106 1063 1080 1099 11 110 111 1110 11112 11210 11211 113 1153 1167 119 1200 12000 121 1234 13 1344 1366 139 1400 14147 14265 143 1494 15 1521 154 1599 1604 16992 17 1723 179 18081 1820 18245 1830 1883 1911 195 1950 1951 1981 20 20000 2003 2006 2008 2020 20256 2030 2048 2050 2051 2055 2059 2061 2064 2066 2067 2068 2070 2077 2081 2083 2086 2087 21 2100 21025 211 2122 21379 2154 22 2201 2202 221 2211 222 2220 2221 2222 22222 2233 2259 2266 2345 2352 2375 2376 2379 2382 2404 2455 25 25001 2506 2548 2549 2550 2554 2555 2556 2559 2560 2561 2562 2563 2566 2568 2569 2570 26 2601 2626 263 264 2650 27015 27017 2709 2761 2762 28015 2806 2985 3001 3050 3053 3058 3060 3063 3066 3067 3068 3069 3071 3074 3076 3077 3078 3081 3082 3087 3089 3091 3093 3096 3098 3099 3101 3103 3104 3106 3108 3109 3110 3112 3114 3115 3116 3117 3121 3129 3221 3260 3268 32764 3306 33060 3307 3310 3337 3352 3388 3389 3400 3401 3402 3403 3406 3407 3408 3409 35000 3503 3523 3542 3549 3551 3552 3554 3557 3558 3560 3561 3568 3569 3689 3690 37 37215 37777 3780 3792 3793 3794 38 3838 389 3951 4000 4001 4002 4010 4022 4040 4042 4043 4063 4064 4100 4118 4157 41800 4242 4243 4282 43 4321 4369 44158 444 4444 447 44818 449 450 4500 4506 4523 4545 465 4700 4747 4782 4786 4840 4899 491 4911 4949 50000 5002 5003 5004 5006 5007 50070 5009 5010 502 5025 503 5050 5070 5080 51 51235 515 5190 5201 53 5321 5400 541 54138 5432 5446 548 5494 5500 55000 554 5542 5555 55553 55554 5560 5567 5591 5594 5595 5597 5600 5601 5603 5604 5605 5607 5608 5801 5822 5853 5858 587 5906 5908 5909 593 5984 5985 6000 6001 6005 6007 6008 6010 6080 6102 61613 61616 62078 6262 6308 6352 6379 6443 6503 6510 6511 6512 6543 6550 6588 6602 6603 6633 6650 6662 6666 6667 6697 675 6887 6955 6998 7000 7003 7004 7005 7010 7433 7443 7445 7465 7493 7510 7535 7547 7634 7654 7676 771 772 7776 7778 7788 789 79 7998 80 800 8001 8003 8005 8009 801 8013 8015 8016 8019 8024 8025 8027 8033 8035 8036 8039 8046 8047 8048 8049 805 8050 8051 8052 8056 8057 8058 8071 8072 8082 8084 8086 8087 8091 8095 8096 8098 8102 8103 8104 8105 8110 8111 8112 8123 8139 8181 8182 8184 8200 8222 8236 8237 8243 8248 8249 8251 8252 8291 830 8333 8334 8404 8405 8408 8409 8412 8413 8414 8418 8419 8420 8421 8423 8424 8425 8428 8429 8430 8432 8442 85 8545 8554 8575 8585 8586 86 8649 87 8700 8728 8733 8766 8779 8789 8801 8802 8807 8811 8818 8819 8820 8821 8823 8824 8825 8826 8827 8831 8832 8838 8839 8840 8841 8843 8844 8847 8848 8853 8858 8859 8861 8867 8869 8871 8873 8875 8876 8877 8878 8879 888 8885 8888 8890 8891 89 8935 8969 8993 8999 9000 9003 9005 9006 9010 9011 9013 9014 902 9020 9022 9025 9026 9027 9028 9030 9033 9035 9036 9037 9038 9039 9040 9041 9042 9044 9047 9048 9050 9082 9084 9088 9089 9090 9091 9092 9094 9095 9097 9098 9099 91 9100 9107 9109 9111 9151 9160 9199 9202 9203 9208 9210 9213 9214 9218 9219 9220 9221 9251 9301 9306 9308 9311 9418 943 9445 9500 9530 9600 9690 9761 9765 9861 9876 9898 99 992 993 9943 995 9981 9988 9990 9992 9997 9998 9999

Map

Whois Information

  • inetnum: 85.192.40.0 - 85.192.41.255
  • netname: NL-AEZA-NETWORK
  • descr: AEZA GROUP Ltd
  • geofeed: https://aeza.net/static/ipv4_f.csv
  • geoloc: 52.3559446 4.9531184
  • country: NL
  • admin-c: AN32681-RIPE
  • tech-c: AN32681-RIPE
  • status: ASSIGNED PA
  • mnt-by: DN-MNT
  • mnt-routes: aeza-mnt
  • mnt-domains: aeza-mnt
  • org: ORG-AGL38-RIPE
  • created: 2006-04-04T18:49:22Z
  • last-modified: 2023-02-27T08:07:26Z
  • organisation: ORG-AGL38-RIPE
  • org-name: AEZA GROUP LLC
  • org-type: OTHER
  • address: 350001, Krasnodar, st. im. Mayakovskogo, b. 160, office 2.4
  • abuse-c: AA38875-RIPE
  • mnt-ref: aeza-mnt
  • mnt-ref: DN-MNT
  • mnt-ref: VF1-MNT
  • mnt-ref: DATAMAX-M
  • mnt-by: aeza-mnt
  • created: 2021-11-23T13:59:30Z
  • last-modified: 2023-01-06T12:18:43Z
  • role: Aeza Network
  • address: 350001, Krasnodar, st. im. Mayakovskogo, b. 160, office 2.4
  • nic-hdl: AN32681-RIPE
  • mnt-by: aeza-mnt
  • created: 2021-10-13T17:49:21Z
  • last-modified: 2022-08-02T11:43:36Z
  • route: 85.192.40.0/23
  • origin: AS210644
  • mnt-by: DN-MNT
  • mnt-by: aeza-mnt
  • mnt-by: AEZA-NETWORK-MNT
  • created: 2022-11-23T04:52:45Z
  • last-modified: 2022-11-23T04:54:16Z

Links to attack logs

vultrparis-ssh-bruteforce-ip-list-2023-04-13 dofrank-ssh-bruteforce-ip-list-2023-04-13