89.39.104.79 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 89.39.104.79 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 15/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: Netherlands
- Network:
- Noticed: 1 times
- Protocols Attacked: Anonymous Proxy
- Passive DNS Results: lpm-dedic-1.sx-servers.net www.kcinghost.vip kcinghost.vip www.89-39-104-79.cprapid.com 89-39-104-79.cprapid.com webm.video kinopub.info armarium.org www.megasharastatus.com megasharastatus.com
Open Ports Detected
10002 10021 10035 10036 10040 10048 10050 10533 11000 11084 11101 11182 11184 11371 11920 12123 12134 12135 12149 12161 12162 12175 12214 12220 12222 12225 12246 12256 12257 12261 12268 12271 12275 12289 12306 12311 12313 12315 12320 12330 12345 12355 12360 12367 12381 12390 12391 12392 12395 12405 12415 12418 12432 12437 12441 12478 12482 12492 12496 12515 12527 12535 12536 12574 12583 12586 13228 14101 14265 14900 15040 15503 16031 16032 16036 16038 16042 16043 16046 16049 16056 16060 16068 161 16100 16402 17082 18001 18005 18040 18051 18058 18070 18078 18079 18087 18089 18245 22 81 82 9100
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2021-3618 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-44487 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2024-6387 CVE-2025-23419 CVE-2025-26465 CVE-2025-32728
Map
Whois Information
- inetnum: 89.39.104.0 - 89.39.104.255
- netname: WORLDSTREAM
- country: NL
- admin-c: WS1670-RIPE
- tech-c: WS1670-RIPE
- status: ASSIGNED PA
- mnt-by: MNT-WORLDSTREAM
- mnt-domains: MNT-WORLDSTREAM
- mnt-routes: MNT-WORLDSTREAM
- created: 2018-12-18T10:26:17Z
- last-modified: 2018-12-18T10:26:17Z
- role: WORLDSTREAM DBM
- address: Industriestraat 24
- address: 2671CT NAALDWIJK
- address: The Netherlands
- phone: +31174712117
- abuse-mailbox: abuse@worldstream.nl
- admin-c: DV1495-RIPE
- tech-c: DV1495-RIPE
- nic-hdl: WS1670-RIPE
- mnt-by: MNT-WORLDSTREAM
- created: 2008-05-15T09:52:38Z
- last-modified: 2013-08-20T11:17:59Z
- route: 89.39.104.0/24
- origin: AS49981
- mnt-by: MNT-WORLDSTREAM
- created: 2022-11-18T15:16:34Z
- last-modified: 2022-11-18T15:16:34Z
Links to attack logs
anonymous-proxy-ip-list-2026-02-05
Share on: