91.194.91.202 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 91.194.91.202 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • Tags: tsec

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_emd, hphosts_fsa, hphosts_psh, taichung

Malware Detected on Host

Count: 15 bfe156903cf4e1802b02efbabd0e74a305b0e46b0818981ade9ee092dcf137b6 c9d9905a183a3cd19f9adf19a8dfdb902a58fae5a6a82cb1e0cf4a4816dff1b9 4be88c79d7a53d846a30b98e591cd4a9155368a01e9e27b9998ea2dc418f89c4 d074dbad7448c21078583df04ff69aaf65778eaed8551f0f84be4a365c6849b8 16d16df34e432c5efb0dd12c6f56c2b33498014d37ca04370462d9349ea98284 64e9fe6565cbf2347074f73723541f166a8f048564ab7cff655159e760ed475b 1b3567ab645f074735ebfbd27845fecd1645ed3363236d92f3136f8438ac54ea 3b979a2c9e06e9edb51aaf9d362b7b1c06b26181ddb0ea15a44f9f20d08e2ac4 b4fa9b7b96176c586634c7b58161214316966e9fb61a6df74d28fd458433bed7 86181c4245bd88e69fe30eea05b68b89221b9727ef3fe7c302acfb3c5a11960f

Open Ports Detected

110 143 2082 2083 2086 2087 2095 21 443 465 587 80 993 995

Map

Whois Information

  • inetnum: 91.194.91.0 - 91.194.91.255
  • netname: CONTABO
  • descr: Contabo GmbH
  • country: DE
  • org: ORG-GG22-RIPE
  • admin-c: MH7476-RIPE
  • tech-c: MH7476-RIPE
  • status: ASSIGNED PA
  • mnt-by: MNT-CONTABO
  • created: 2014-08-20T11:39:02Z
  • last-modified: 2014-08-20T11:39:02Z
  • organisation: ORG-GG22-RIPE
  • org-name: Contabo GmbH
  • country: DE
  • org-type: LIR
  • address: Aschauer Strasse 32a
  • address: 81549
  • address: Munchen
  • address: GERMANY
  • phone: +498921268372
  • fax-no: +498921665862
  • abuse-c: MH12453-RIPE
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: MNT-CONTABO
  • mnt-ref: MNT-OCIRIS
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: MNT-CONTABO
  • created: 2009-12-09T13:41:08Z
  • last-modified: 2021-09-14T10:49:04Z
  • person: Wilhelm Zwalina
  • address: Contabo GmbH
  • address: Aschauer Str. 32a
  • address: 81549 Muenchen
  • phone: +49 89 21268372
  • fax-no: +49 89 21665862
  • nic-hdl: MH7476-RIPE
  • mnt-by: MNT-CONTABO
  • mnt-by: MNT-GIGA-HOSTING
  • created: 2010-01-04T10:41:37Z
  • last-modified: 2020-04-24T16:09:30Z
  • route: 91.194.90.0/23
  • descr: CONTABO
  • origin: AS51167
  • mnt-by: MNT-CONTABO
  • created: 2010-06-21T10:39:15Z
  • last-modified: 2012-12-26T07:13:31Z

Links to attack logs

anonymous-proxy-ip-list-2023-09-07 anonymous-proxy-ip-list-2023-09-09

Share on: