94.50.162.191 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

External Blacklists

  • Check against blacklist: Spamhaus VirusTotal Listed on spamrats.net

    Host and Network Information

  • Country: Russian Federation
  • Network: AS12389 Rostelecom

  • Noticed: 5 times

  • Protcols Attacked: mssql

Malware Detected on Host

Count: 1 38e023a8e2b1d120a587da62676e2b2e7a9d8f8dfc3e60d1b5f5197fc9ed69a3

Open Ports Detected

1723 3389 5985

Map

Whois Information

  • inetnum: 94.50.160.0 - 94.50.175.255
  • netname: USI_ADSL_USERS
  • descr: Dynamic distribution IP’s for broadband services
  • descr: OJSC RosteleÓom, regional branch “Urals”
  • country: RU
  • admin-c: UPAS1-RIPE
  • tech-c: UPAS1-RIPE
  • status: ASSIGNED PA
  • mnt-by: MFIST-MNT
  • created: 2009-01-14T07:23:59Z
  • last-modified: 2012-03-06T13:48:31Z
  • source: RIPE
  • role: Uralsvyazinform Perm Administration Staff
  • address: 11, Moskovskaya str.
  • address: Yekaterinburg, 620014
  • address: Russian Federation
  • admin-c: SK2534-RIPE
  • admin-c: DK2192-RIPE
  • admin-c: SK3575-RIPE
  • admin-c: TA2344-RIPE
  • tech-c: DK2192-RIPE
  • tech-c: SK3575-RIPE
  • tech-c: TA2344-RIPE
  • nic-hdl: UPAS1-RIPE
  • mnt-by: MFIST-MNT
  • created: 2007-09-18T08:50:24Z
  • last-modified: 2019-02-14T06:36:03Z
  • route: 94.50.160.0/20
  • descr: Rostelecom networks
  • origin: AS12389
  • mnt-by: ROSTELECOM-MNT
  • created: 2018-10-31T11:47:24Z
  • last-modified: 2018-10-31T11:47:24Z

Links to attack logs

awsau-mssql-bruteforce-ip-list-2020-08-23