94.249.154.85 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 34/100

Host and Network Information

  • Tags: Nextray, cyber security, ioc, malicious, phishing
  • View other sources: Spamhaus VirusTotal

  • Country: France
  • Network: AS12586 ghostnet gmbh
  • Noticed: 2 times
  • Protcols Attacked: spam
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Malware Detected on Host

Count: 3 5977942959e680319e1edbab30e082e7c77a9a1b9fb69f88d3248c5d58f36ba0 5977942959e680319e1edbab30e082e7c77a9a1b9fb69f88d3248c5d58f36ba0 66dba9dc2990f523036c60ffe773e77614b021a29fa6decec17beb96f960e22c

Open Ports Detected

8811

Map

Whois Information

  • inetnum: 94.249.154.0 - 94.249.154.255
  • netname: DE-GHOSTNET-FRA01-CUST-SERVER-UNITED-11
  • descr: www.Server-United.de
  • descr: Assigned 20091228
  • country: DE
  • admin-c: GN-RIPE
  • tech-c: GN-RIPE
  • status: ASSIGNED PA
  • mnt-by: GHOSTNET-MNT
  • mnt-lower: GHOSTNET-MNT
  • mnt-routes: GHOSTNET-MNT
  • created: 2012-04-30T00:32:20Z
  • last-modified: 2012-04-30T00:32:20Z
  • role: GHOSTnet GmbH
  • admin-c: GNSG-RIPE
  • tech-c: GNSG-RIPE
  • address: Am Dachsbau 17
  • address: 65812 Bad Soden a. Ts.
  • address: Deutschland
  • phone: +49 6172 185025
  • fax-no: +49 6172 185029
  • nic-hdl: GN-RIPE
  • abuse-mailbox: [email protected]
  • mnt-by: GHOSTNET-MNT
  • created: 2003-04-17T02:22:16Z
  • last-modified: 2017-11-10T09:36:32Z
  • route: 94.249.154.0/24
  • descr: GHOSTnet GmbH IP Space
  • origin: AS12586
  • mnt-by: GHOSTNET-MNT
  • created: 2013-10-24T00:24:13Z
  • last-modified: 2013-10-24T00:24:13Z

Links to attack logs

forum-spam-ip-list-2023-04-04