91.189.114.18 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 91.189.114.18 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 40/100
Host and Network Information
-
Tags: activity, april, attacks, blacklist host, coinminer, cvss, cvss base, date, exploit, fusion software, hashes domains, hong kong, india, ip address, ip country, latest spambot, launch, lockbit, malware url, microsoft, name submit, patch, privateloader, quakbot, quasarrat, redline, rhadamanthys, rtm locker, russia, sfxn99 quakbot, sha1 file, smokeloader, stealer, ta551, tags, thailand, united kingdom, visit, vmware, windows, workstation
-
View other sources: Spamhaus VirusTotal
-
Contained within other IP sets: hphosts_emd
- Country: Russia
- Network: AS48287 jsc ru-center
- Noticed: 1 times
- Protcols Attacked: SSH
- Passive DNS Results: advertika.pro mtlsnb.market velegna.ru capitol-nashville.com a11y.center severlira.com biblioteka-casino.store nikaprodesign.store halterbag.com lebedi.store system-architect.pro www.cheglobe.ru cheglobe.ru nadezhda.center prmeh.team powershift.center max-containers.com grainova.com starlight-os.pro intis.group www.asdfg.nichost.ru emns.pro infoviola.online newcollectioners.art xn–d1aifjbgocik2j.xn–p1ai yogakolomna.ru www.yogakolomna.ru www.xn--d1aifjbgocik2j.xn–p1ai besedki.pro itprofi.org cozyma.online papins.online xn–80aeffopfnf8l.xn–p1ai payq27.store ezzo.pro creativeselfwriting.com ems-sklad.com xn–80ajjmrh.com tspersonal.ru mtime.world 7-300.com 12gor.online crossmarty.shop kudadi.shop ndeg.pro direx.group www.ttplanet.ru ttplanet.ru 3dnova.top pvxscience.com rightsystems.pro propolitiku.ru www.propolitiku.ru vzmt.tech jung-ai.com robloxisunbreakableru.ru www.robloxisunbreakableru.ru grippex.net specinvestment.pro interpreter-russia.com yagodavoda.com merus.tech hotel-solnechny.store lesresort.club solosolution.store www.17-33.com www.olgabespalova.com meshalka.pro www.rusener.com travel-world.online barmin.info c4c.pro highjump.pro remont-shlangov.ru neirolis-engineering.com dotu.info xn—-7sbahco2bdg2av4b2a7f4bg.xn–p1acf sonicvave.pro sonicwave.asia dotu.online ohranatruda.shop bodysolidrussia.com innopoly.tech drink-best-water.com semin.tech creative-box.ru paya35.store dasmile.online www.speedway-press.ru sleptsovo.ru sallystudio.online 17-33.com vk17at.online euhealth24.com voblya.com port-savelovsk.pro olgabespalova.com zafferano-derbent.online gen-idea.online xn–80aaivvdt.net seaf.team velikiy.store velikiy.online pharmacyhelp.info fashioneducation.ru trassir.store vavada-vavada.online www.autowebasto.ru payf50.shop technotecs.pro utkadizing.online annapuz.com powerofknowledge.space kissandcry.shop xn–80aafmoni2biho.xn–p1ai terracapitalista.com aviteksural.ru krisdego.com linger.photo yourcoolsticker.com payf37.shop tannti.com ebsensor.info vikkimiva.art sota-corp.com xn–80ajiiamdffbvre.xn–p1acf mikashev.com cart-power.cloud machiavelli.store bakschool.org.ru artwinetrip.com tenpincam.shop wbgl.online efgrebtsova.space targetagro.shop larshery.com alex-m.shop www.xn--80atlgb.xn–p1ai xn–c1aepqklh.xn–p1ai xn–80atlgb.xn–p1ai www.xn--c1aepqklh.xn–p1ai payf07.shop kom-on.info sigma-it.pro 2cb.club phauro.com www.courseiv.ru baidar.pro httpseuraros.com www.fusiler.ru fusiler.ru jazzkids.space semantical.space javal-trade.com installer-m.ru magid.study brandsdepo.shop spectralcube.com www.hladkom.ru faceexchange.net skydrop.market aimmngt.online todesproduction.com tactical-gears.shop mw-projects.shop www.acort.ru www.soder-russia.com jeepwrangler.club artposad.com abazhurov.net sinamatrix.group ice-tex.ru y19.pro drsretail.com lavor.space payd04.shop seeyouatsea.online tara.expert shkolamirt.online ural.expert dellartepiano.club taktikagroup.com evrazsteeleng.com soder-russia.com krymskcollege.ru www.krymskcollege.ru xn–90abhds0adsn.xn–80asehdb www.xn--90abhds0adsn.xn–80asehdb vios.studio ohmystuff.store oxwl.ru www.oxwl.ru www.celikpak.ru celikpak.ru www.kirill.store kirill.store tashaenergopraktik.website www.xn----8sbhgbfndjidm7aebzr5h4a.xn–p1ai xn—-8sbhgbfndjidm7aebzr5h4a.xn–p1ai xn–80achddrlnp5c.xn–80adxhks www.xn--80achddrlnp5c.xn–80adxhks www.phenomenails.ru phenomenails.ru lcsc.pro andreytitoff.com novikova.website www.novikova.website nsaurora.pro puschkinas.pro zeder.pro glavgkh.online www.medeeptation.com medeeptation.com justracingparts.com smartone.group alvatto.com snowderevnya.ru www.snowderevnya.ru skat-energis.ru www.skat-energis.ru xn–e1aklcl.shop razum.live xn–j1andu.xn–p1acf ituslugispb.com mechty.shop bessonova.pro teko-slot.ru www.teko-slot.ru xn–c1ajzeak.xn–p1acf isource.trading www.beesamber.com beesamber.com www.roupe-park.ru roupe-park.ru butovets.website slumdog.website house-of-marley.com www.akademy89.ru akademy89.ru xenzov.ru www.xenzov.ru www.alexanderkan.com danchikdesign.website flane.pro kett-up.ru www.kett-up.ru www.devaloka.space devaloka.space beautifulstory.online startpark.online nitro.army iryazanceva.ru www.iryazanceva.ru annamassag.online www.seconddyxanie.ru seconddyxanie.ru nordberg-official.ru www.nordberg-official.ru madison.show www.abbaconsgroup.com abbaconsgroup.com www.act-leasing.ru symposium.travel symposium.center golfsniper.bet siammanufacturing.com xn—-7sbpkdaqjklvnajx.xn–p1ai www.xn----7sbpkdaqjklvnajx.xn–p1ai fresh-cake.shop xn—-7sbabansuwrhb9ajncig6vka.xn–80asehdb allinall.pro xn–d1aifbcbdq0c9e.xn–80asehdb paya04.website romiko.store doolls.website www.ux-method.ru ux-method.ru www.xn--d1aoi9c.xn–p1ai xn–d1aoi9c.xn–p1ai dverenina.com plazbi.online www.3830805.ru 3830805.ru stalcomplect.ru xn–d1aiggj.club irevantv.com formika-expo.com itsferamsk.ru www.itsferamsk.ru design-odd.ru www.design-odd.ru www.cargo-used.ru cargo-used.ru corrosionprotection.ru www.corrosionprotection.ru www.xn--80apgmbdfl.xn–p1ai xn–80apgmbdfl.xn–p1ai apart-nevskiy112.ru www.apart-nevskiy112.ru thaiautorent.com vocado.tech lacabanagroup.com lemurrr-fest.ru www.lemurrr-fest.ru nazarby.info loyalty-ai.com iitministries.com eccomfreelance.com setups.wiki psncorp.store getupgrade.online list.expert lantsevco.com xn—34–83dz0aongmcb2amnf3c2dzc.xn–p1ai www.xn---34--83dz0aongmcb2amnf3c2dzc.xn–p1ai trustcorp.tech www.terradrones.online terradrones.online www.loftinn.ru loftinn.ru xn—78-5cdak1d7assj0j.xn–p1acf step.studio xn–80a0aefbk9d3b.group www.legal-way.ru www.tularegion.tech tularegion.tech happybirds.ru car-molecules.ru vforme.shop hozintorg.com kinestetica.com yadoc.store bioterm.shop td-cis.com nordsearoute.com dushanadache.ru www.dushanadache.ru denant-tur.ru www.denant-tur.ru xn–80aealbndcaa0cbdk8bhrw7c9e.xn–p1ai www.xn--80aealbndcaa0cbdk8bhrw7c9e.xn–p1ai www.rb-bt.ru rb-bt.ru www.boys-and-girls.ru boys-and-girls.ru www.plaza26-10.com plaza26-10.com dekoris.homes psyfactum.com bessonovconsulting.pro start-capital.online www.loukianov.ru loukianov.ru chipsnab.com sachkova.net reportagerussia.com www.xn--80aaagbgde4cm3adb6c.xn–p1ai xn–80aaagbgde4cm3adb6c.xn–p1ai eventzz.events prokvant.com paya18.press www.kvgid.ru kvgid.ru www.smalt.group smalt.group boombastic.pro www.sumake-russia.ru sumake-russia.ru oggioro.pro www.oggioro.pro gusakova.pro xn–80ag3atfk.xn–80adxhks www.xn--80ag3atfk.xn–80adxhks eco-bober.ru b-badger.ru www.b-badger.ru ilada-a.ru www.ilada-a.ru promedica.pro www.promedica.pro www.chanta.store chanta.store convector.pro a158.online www.xn----etbaigy8k.xn–p1ai xn—-etbaigy8k.xn–p1ai www.parus.com.ru parus.com.ru www.algo-m.ru algo-m.ru shulapov.pro www.xn--80aqicclqdx.xn–p1ai xn–80aqicclqdx.xn–p1ai yuriyzirko.com stroyonline.pro www.stroyonline.pro marsproject.online www.genplan-expert.ru genplan-expert.ru lifanov.moscow www.lifanov.moscow yatut.market fatumwineclub.com www.news-story.ru news-story.ru www.amurkiddies.ru amurkiddies.ru dementevadance.ru www.dementevadance.ru www.azkabantattoo.ru azkabantattoo.ru moscowcity.tours www.helpybot.ru xn—–8kcbuaadys6afirgkcftk6q.xn–p1acf gluon-ai.com unilight.pro www.unilight.pro mon-terra.ru www.mon-terra.ru xn–80aeyeblel7ab3c.xn–p1ai www.xn--80aeyeblel7ab3c.xn–p1ai irika.top future-wireless.online all-inclusive.life ivajolog.com svarogstudios.com optimum-it-llc.com www.pristroyka.com www.kompressorkom.ru www.sambapos.ru sambapos.ru kamin.top payq37.tech rustaxi.pro grapey.com tanecbusin.ru www.tanecbusin.ru payq29.tech wooddrugs.store itsmymail.pro www.stillo-shop.ru stillo-shop.ru xn–80adjurfhd.tech smartpolymer.pro www.zub-man.ru zub-man.ru sz-v12.com www.kinoteatrdoc.ru hover.dance www.hover.dance gihor.online www.avokar.ru avokar.ru digital-ai.ru www.digital-ai.ru tfc-machinery.su www.tfc-machinery.su realplaygirls.net testo-pro.ru vezdehod.rest on-lin-auto.ru www.on-lin-auto.ru spartak.team quasargames.net dol-vostok.com xn–80aaxgc2d3a.xn–p1ai www.xn--80aaxgc2d3a.xn–p1ai vteme.online www.sgfr.ru sgfr.ru rustop.su www.rustop.su 0nt.xyz ibcm.biz utmproxy.ru www.utmproxy.ru www.c-care.ru c-care.ru www.chefhoreca.ru chefhoreca.ru telegraf.pro avtodrive.online www.cosmodom.pro cosmodom.pro aiwa-eletre.ru www.aiwa-eletre.ru www.segesta.tech net-spectator.ru www.net-spectator.ru www.legenda-camp.ru legenda-camp.ru atlas-sudak.online xn–80aaezhmlvv.xn–p1ai www.xn--80aaezhmlvv.xn–p1ai www.absplaw.com www.chipokq.ru chipokq.ru www.chipokqas.ru chipokqas.ru www.morozqw.ru
Open Ports Detected
CVEs Detected
CVE-2015-9253 CVE-2017-7272 CVE-2017-7963 CVE-2017-9120 CVE-2018-19395 CVE-2018-19396 CVE-2019-9020 CVE-2019-9021 CVE-2019-9022 CVE-2019-9023 CVE-2019-9024 CVE-2019-9637 CVE-2019-9638 CVE-2019-9639 CVE-2019-9641 CVE-2019-9675 CVE-2022-31628 CVE-2022-31629
Map
Whois Information
- inetnum: 91.189.112.0 - 91.189.119.255
- netname: HCRU-NET
- country: RU
- org: ORG-JR15-RIPE
- admin-c: RN331-RIPE
- tech-c: RN331-RIPE
- status: ASSIGNED PI
- mnt-by: RIPE-NCC-END-MNT
- mnt-by: RUNIC-MNT
- mnt-routes: RUNIC-MNT
- mnt-domains: RUNIC-MNT
- created: 2007-02-15T11:36:39Z
- last-modified: 2020-05-20T09:03:56Z
- organisation: ORG-JR15-RIPE
- org-name: JSC “RU-CENTER”
- country: RU
- org-type: LIR
- address: 2/1, 3d Khoroshevskaya str.
- address: 123308
- address: Moscow
- address: RUSSIAN FEDERATION
- phone: +74959944601
- fax-no: +74957370602
- mnt-ref: RUNIC-MNT
- mnt-ref: RIPE-NCC-HM-MNT
- mnt-by: RIPE-NCC-HM-MNT
- mnt-by: RUNIC-MNT
- abuse-c: RUAH-RIPE
- admin-c: RN331-RIPE
- tech-c: RN331-RIPE
- created: 2009-09-08T09:31:45Z
- last-modified: 2021-10-25T10:08:01Z
- role: RU-NIC NOC
- address: JSC “RU-CENTER”
- address: 123308, Moscow, Russian Federation
- address: 3 Khoroshevskaya, 2-1
- phone: +7 495 737 0601
- abuse-mailbox: abuse@nic.ru
- admin-c: NIKS-RIPE
- tech-c: NIKS-RIPE
- tech-c: SMS-RIPE
- nic-hdl: RN331-RIPE
- mnt-by: RUNIC-MNT
- created: 2009-07-13T13:17:56Z
- last-modified: 2020-12-21T05:55:45Z
- route: 91.189.114.0/23
- descr: RU-NIC-HOSTING
- origin: AS48287
- mnt-by: RUNIC-MNT
- created: 2019-01-24T10:11:02Z
- last-modified: 2019-11-14T09:31:45Z