89.252.185.4 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 89.252.185.4 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 30/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: bitcoin_blockchain_info_1d, bitcoin_blockchain_info_30d, bitcoin_blockchain_info_7d

Malware Detected on Host

Count: 11 546c75c8e6e76674e54473a912eef58f77aad6b3e2795f2c6245b68db7e9d7f7 311087018e295cb1994211b5f6c89bb23a9093fa707c54950ddad3a6642cbd2e c6fbe55fcd720902fd2f0ca65376cf735e646fc1773df202f4621544018ca93b c5c80f36ab6d28c5f0c48a9464dcdcd39018c5ad9fc7b75bec2fe7a1c2f33a12 fd21ea0fe3b13bc6f4173e46304760631907bc61ce3250844f001c60c1011c05 baffdcc6884399cb3c2461ea909c54b851bbc90873d55f854d4fd9fb7c0d8eeb e2cde65a273338bcfa096c76573bb244a640dfc03e12804b20196c9acd961207 03aae1c328228354d8c6ed69822077b86a482a3760140060d62aee2835c90d69 5def7a7db217982b6afc126c09b58d79345b8a5cb376d1b910b9bc10c16cfe55 4f82ebfdc83bd67bbf82d4572736f6ca7329b55d623dfe0edcfbc17cf341aed4

Open Ports Detected

110 21 22 25 443 53 80 8443 8880 993 995

CVEs Detected

CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408

Map

Whois Information

  • inetnum: 89.252.185.0 - 89.252.185.255
  • netname: TR-GZLHSTNG-20150630
  • descr: GNET Internet Telekomunikasyon A.S.
  • country: TR
  • admin-c: CN4646-RIPE
  • tech-c: CN4646-RIPE
  • status: ASSIGNED PA
  • mnt-by: mnt-tr-gnetinternet-1
  • created: 2017-06-20T06:57:42Z
  • last-modified: 2022-08-22T11:55:16Z
  • person: Cihan Nimsi
  • address: Icerenkoy Mh. Icerenkoy Mh. Bahcelerarasi Sk. No 43 Mete Plaza Kat 22 Atasehir
  • address: 34752
  • address: Istanbul
  • address: TURKEY
  • phone: +908508850558
  • nic-hdl: CN4646-RIPE
  • mnt-by: mnt-tr-gnetinternet-1
  • created: 2019-05-30T12:13:45Z
  • last-modified: 2022-08-22T11:38:25Z
  • route: 89.252.185.0/24
  • origin: AS42846
  • mnt-by: mnt-tr-gnetinternet-1
  • created: 2023-07-27T12:09:03Z
  • last-modified: 2023-07-27T12:09:03Z
Share on: