91.195.240.89 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 91.195.240.89 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Tags: tsec

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: hphosts_emd

Malware Detected on Host

Count: 82 8ae8c6052d4892913d581edab52b5d999b9f4416c5d76addf6c204b928df2b54 e467111192c6d4dab26f2eeb90c4d241e00b6e6d94049f438a0b6c1d9bc224ed a6b34c9621128b3a1987323fdef2a31ab36c4dbe0a1358d61b0b66f42855b8ab cba53554eefba55123ff3233d93e84919b14c5d1017e9f6d81e7d373035a04b6 bb1b34ec135e52b8f222cf9601b0fc7c25183a47ec6ed9d07accb5c68b62da47 782ceb56e49ad597a383c5644c71478e67cb0e107c70356de8cc60d9ff13d3c1 3542d9ed5c28298aa1a0e2e34c778d4f99af9ca857ecbf37251c2875f5594740 bb95ca1b151a22150b871b78df02f0df8bf50f18596f6e76c119cc81e78ba24e c59e98aa01014e1268469dd8db4db15bcfabc82da8270925546ca8b0e168dafa 725cf18b4ee7b0d682074fc41575876989fce2239eba5959f2929e59a141abae

Open Ports Detected

80

Map

Whois Information

  • inetnum: 91.195.240.0 - 91.195.241.255
  • netname: SEDO-NET
  • descr: Sedo Domain Parking
  • descr: Im Mediapark 6b
  • descr: 50670 Koeln
  • country: DE
  • org: ORG-SA551-RIPE
  • admin-c: OD12023-RIPE
  • admin-c: IXCW-RIPE
  • tech-c: IXCW-RIPE
  • status: ASSIGNED PI
  • mnt-by: RIPE-NCC-END-MNT
  • mnt-by: IX1-MNT
  • mnt-routes: IX1-MNT
  • mnt-domains: IX1-MNT
  • created: 2007-10-25T09:36:24Z
  • last-modified: 2023-01-24T09:53:13Z
  • sponsoring-org: ORG-IG16-RIPE
  • organisation: ORG-SA551-RIPE
  • org-name: SEDO GmbH
  • country: DE
  • org-type: OTHER
  • address: Sedo GmbH
  • address: Im Mediapark 6
  • address: 50670 Koeln
  • abuse-c: IX26-RIPE
  • mnt-ref: IX1-MNT
  • mnt-by: IX1-MNT
  • created: 2007-10-08T16:10:11Z
  • last-modified: 2022-12-01T16:46:16Z
  • role: InterNetX Network Crew
  • address: InterNetX GmbH
  • address: Johanna-Dachs-Str. 55
  • address: D-93055 Regensburg
  • nic-hdl: IXCW-RIPE
  • phone: +49 941 59559 0
  • fax-no: +49 941 59579 051
  • abuse-mailbox: abuse@internetx.com
  • admin-c: MS4404-RIPE
  • admin-c: CS5299-RIPE
  • tech-c: MS4404-RIPE
  • tech-c: CS5299-RIPE
  • mnt-by: IX1-MNT
  • created: 2006-12-06T15:39:30Z
  • last-modified: 2018-02-14T09:53:42Z
  • person: Ochotzki Dirk
  • address: SEDO GmbH
  • address: Im Mediapark 6
  • address: 50670 Koeln
  • address: Deutschland
  • phone: +49 221 340 30-0
  • fax-no: +49 221 340 30 5280
  • nic-hdl: OD12023-RIPE
  • mnt-by: IX1-MNT
  • created: 2023-01-24T09:49:27Z
  • last-modified: 2023-01-24T09:49:27Z
  • route: 91.195.240.0/23
  • descr: SEDO-NET-PI
  • origin: AS47846
  • mnt-by: IX1-MNT
  • created: 2019-01-29T12:43:05Z
  • last-modified: 2020-05-19T12:52:52Z
Share on: