95.216.72.139 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 95.216.72.139 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Likely Malicious Host 🟠 57/100

Host and Network Information

  • Mitre ATT&CK IDs: T1498 - Network Denial of Service, T1499.002 - Service Exhaustion Flood, T1499 - Endpoint Denial of Service

  • Tags: cc.py, DDoS, HEAD Floods, Killnet, proxy, T1498, T1499

  • JARM: 2ad2ad16d2ad2ad22c42d42d0000006f254909a73bf62f6b28507e9fb451b5

  • View other sources: Spamhaus VirusTotal

  • Country: Finland
  • Network:
  • Noticed: 6 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: www.namayenarjes.com namayenarjes.com www.ikapadana.com miladcan.ir parsacoin.com ikapadana.com pseco.ir www.pseco.ir touremajazi.com www.ptsilo.ir crm.webbit.ir www.hasibsoft.com rasm.pellekan.net panel.arghavansport.ir arainstrument.com prosignal.ir emc-co.ir hasibsoft.com kamceram.com samisati.com www.yashgintrout.ir excelite.ir m-hassanzadeh.ir 2dcadmodels.com nabproject.ir aradgroup.ir arghavansport.ir abadgaran-e-shargh.com xn–ngbs7df32asi.com theswedishdesign.com www.asawood.ir www.choobparsian.ir www.aysanclothing.ir www.shopaysan.ir shopaysan.ir mrtoos.com azartashtoos.com my.haamin.ir my.alborzdev.com autoleasegroup.co.uk darksun.ir www.darksun.ir emambaqer.com ingersollrand-centac.com noorfilm.co drabbasian.com www.kamtiles.com www.baskankilitllc.com aysanclothing.ir ptsilo.ir euro-cert.uk choobparsian.ir asawood.ir 7asiyab.com kamtiles.com www.barbari.org noorfilm.com bynet.ir shaparak.shapark-ir-tack.tk asancode.com alborzdev.ir nooyatech.com ns2.gheymatchi.com ns1.gheymatchi.com gheymatchi.com insta.taknev.ir cloud.pinbook.ir ns1.pinbook.ir ns2.pinbook.ir pinbook.ir oexpress.ir sadafplast.com kamgroupltd.com baskankilitllc.com ns2.alborzdev.com ns1.alborzdev.com alborzdev.com mstoos.com aradgroup.org rqs-certification.com agostaco.com ptsilo.com parsturksilo.com ghanadkar.ir my.nezafatzade.ir capital-iran.com asantoor.com westirin.ir my.samane360.ir msn.webbit.ir my.webbit.ir test.redan.ir yashgintrout.com yashgintrout.ir zimakala.com blog.redan.ir auth.redan.ir chalidarreh.com sanatit.com nezafatzade.ir samane360.ir sheretanz.com redan.ir royalatr.com simusicart.com datiswindow.com tooskar.ir ns2.tavanabarnameh.com ns1.tavanabarnameh.com tavanabarnameh.com god-capital.com ns1.novintoosco.com ns2.novintoosco.com novintoosco.ir novintoosco.com webbit.ir cart.khorasannotary.ir www.cart.khorasannotary.ir ziaalhagh.com ziaalhagh.ir shahrepak.com avestalaw.com ns2.menqar.com ns1.menqar.com menqar.com ns1.helencarpet.com ns2.helencarpet.com helencarpet.com pdf-paper.com ns1.anabonco.com ns2.anabonco.com ns2.mostafashakeri.com ns1.mostafashakeri.com mostafashakeri.com rahinopooyan.ir ns2.bardiasys.ir ns1.bardiasys.ir ns1.artmashhad.ir ns2.artmashhad.ir artmashhad.ir ns2.barbari.org ns1.barbari.org ns1.arameshsoft.ir ns2.arameshsoft.ir varzad.com ns2.ejtemaem2.ir ns1.ejtemaem2.ir ejtemaem2.ir anahita2.mrsservers.com ns1.zia24.com ns2.zia24.com mi24.ir behzadcarpet.ir digidanesh.org sepidar.net babole.ir asadoor.com brandgallery.ir aroosi.brandgallery.ir mahvelat.net ticket-software.ir api.wmis.ir getyourloan.com.au anahita2.mashhadhost.com sandogh-ka.ir 24booking.ir cleverbot.ir archnezam.com greenappco.ir bardiasys.ir arameshsoft.ir zia24.com choobrang.com choobrang.ir behzadcarpet.com demo.ticket-software.ir ghasedapp.ir barbari.org partohesab.ir getyourloan.net.au pegahprint.com anabonco.com danielpsn.com payadecors.ir macnous.com macnous.ir

Malware Detected on Host

Count: 2 bbe8b1cd0ad9e94447df3bf24b51ab96f1a9238f03844ab976fdbd2492389bb6 3110c27c347d6e17ed978bcb21ae839a18a050afc640e9b0e752114ee9a95a18

Open Ports Detected

443 80 8000

CVEs Detected

CVE-2007-3205 CVE-2007-4723 CVE-2009-0796 CVE-2009-1390 CVE-2009-2299 CVE-2009-3765 CVE-2009-3766 CVE-2009-3767 CVE-2011-1176 CVE-2011-2688 CVE-2012-3526 CVE-2012-4001 CVE-2012-4360 CVE-2013-0941 CVE-2013-0942 CVE-2013-2220 CVE-2013-2765 CVE-2013-4365 CVE-2019-0190 CVE-2023-0464 CVE-2023-0465 CVE-2023-0466 CVE-2023-2650 CVE-2023-31122 CVE-2023-3247 CVE-2023-3817 CVE-2023-3823 CVE-2023-3824 CVE-2023-38709 CVE-2023-43622 CVE-2023-45802 CVE-2023-4807 CVE-2023-5678 CVE-2024-0727 CVE-2024-11233 CVE-2024-11234 CVE-2024-11236 CVE-2024-1874 CVE-2024-2408 CVE-2024-24795 CVE-2024-27316 CVE-2024-3096 CVE-2024-3566 CVE-2024-36387 CVE-2024-38472 CVE-2024-38473 CVE-2024-38474 CVE-2024-38475 CVE-2024-38476 CVE-2024-38477 CVE-2024-39573 CVE-2024-40898 CVE-2024-42516 CVE-2024-43204 CVE-2024-43394 CVE-2024-4577 CVE-2024-47252 CVE-2024-5458 CVE-2024-5585 CVE-2024-8925 CVE-2024-8926 CVE-2024-8927 CVE-2024-8929 CVE-2024-8932 CVE-2024-9026 CVE-2025-1217 CVE-2025-1219 CVE-2025-1220 CVE-2025-1734 CVE-2025-1735 CVE-2025-1736 CVE-2025-1861 CVE-2025-23048 CVE-2025-49630 CVE-2025-49812 CVE-2025-53020 CVE-2025-6491

Map

Whois Information

  • inetnum: 95.216.0.0 - 95.217.255.255
  • netname: DE-HETZNER-20090224
  • country: FI
  • org: ORG-HOA1-RIPE
  • admin-c: HOAC1-RIPE
  • tech-c: HOAC1-RIPE
  • status: ALLOCATED PA
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: HOS-GUN
  • mnt-lower: HOS-GUN
  • mnt-domains: HOS-GUN
  • mnt-routes: HOS-GUN
  • created: 2009-02-24T07:39:38Z
  • last-modified: 2017-11-02T11:54:31Z
  • organisation: ORG-HOA1-RIPE
  • org-name: Hetzner Online GmbH
  • country: DE
  • org-type: LIR
  • address: Industriestrasse 25
  • address: D-91710
  • address: Gunzenhausen
  • address: GERMANY
  • phone: +49 9831 5050
  • fax-no: +49 9831 5053
  • admin-c: MF1400-RIPE
  • admin-c: GM834-RIPE
  • admin-c: HOAC1-RIPE
  • admin-c: MH375-RIPE
  • admin-c: SK2374-RIPE
  • admin-c: SK8441-RIPE
  • abuse-c: HOAC1-RIPE
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: HOS-GUN
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: HOS-GUN
  • created: 2004-04-17T11:07:58Z
  • last-modified: 2022-11-22T18:32:44Z
  • role: Hetzner Online GmbH - Contact Role
  • address: Hetzner Online GmbH
  • address: Industriestrasse 25
  • address: D-91710 Gunzenhausen
  • address: Germany
  • phone: +49 9831 505-0
  • fax-no: +49 9831 505-3
  • abuse-mailbox: abuse@hetzner.com
  • org: ORG-HOA1-RIPE
  • admin-c: MH375-RIPE
  • tech-c: GM834-RIPE
  • tech-c: SK2374-RIPE
  • tech-c: MF1400-RIPE
  • tech-c: SK8441-RIPE
  • tech-c: DD15478-RIPE
  • nic-hdl: HOAC1-RIPE
  • mnt-by: HOS-GUN
  • created: 2004-08-12T09:40:20Z
  • last-modified: 2022-11-22T18:33:55Z
  • route: 95.216.0.0/16
  • org: ORG-HOA1-RIPE
  • descr: HETZNER-DC
  • origin: AS24940
  • mnt-by: HOS-GUN
  • created: 2017-08-12T12:01:36Z
  • last-modified: 2018-01-10T08:47:33Z
  • organisation: ORG-HOA1-RIPE
  • org-name: Hetzner Online GmbH
  • country: DE
  • org-type: LIR
  • address: Industriestrasse 25
  • address: D-91710
  • address: Gunzenhausen
  • address: GERMANY
  • phone: +49 9831 5050
  • fax-no: +49 9831 5053
  • admin-c: MF1400-RIPE
  • admin-c: GM834-RIPE
  • admin-c: HOAC1-RIPE
  • admin-c: MH375-RIPE
  • admin-c: SK2374-RIPE
  • admin-c: SK8441-RIPE
  • abuse-c: HOAC1-RIPE
  • mnt-ref: RIPE-NCC-HM-MNT
  • mnt-ref: HOS-GUN
  • mnt-by: RIPE-NCC-HM-MNT
  • mnt-by: HOS-GUN
  • created: 2004-04-17T11:07:58Z
  • last-modified: 2022-11-22T18:32:44Z

Links to attack logs

anonymous-proxy-ip-list-2023-09-07 anonymous-proxy-ip-list-2023-12-14 anonymous-proxy-ip-list-2023-12-29 anonymous-proxy-ip-list-2024-01-25 anonymous-proxy-ip-list-2024-02-05 anonymous-proxy-ip-list-2024-02-12 anonymous-proxy-ip-list-2024-02-21 anonymous-proxy-ip-list-2024-03-06 anonymous-proxy-ip-list-2024-04-20 anonymous-proxy-ip-list-2023-07-15 anonymous-proxy-ip-list-2023-08-05 anonymous-proxy-ip-list-2023-09-25 anonymous-proxy-ip-list-2023-12-15 anonymous-proxy-ip-list-2023-12-16 anonymous-proxy-ip-list-2024-01-03 anonymous-proxy-ip-list-2024-01-13 anonymous-proxy-ip-list-2024-01-15 anonymous-proxy-ip-list-2024-03-04 anonymous-proxy-ip-list-2024-04-05 anonymous-proxy-ip-list-2024-04-22 anonymous-proxy-ip-list-2024-02-08 anonymous-proxy-ip-list-2024-03-14 anonymous-proxy-ip-list-2023-06-28 anonymous-proxy-ip-list-2023-07-28 anonymous-proxy-ip-list-2023-08-22 anonymous-proxy-ip-list-2023-08-30 anonymous-proxy-ip-list-2023-12-10 anonymous-proxy-ip-list-2024-02-03 anonymous-proxy-ip-list-2024-02-22 anonymous-proxy-ip-list-2024-03-20 anonymous-proxy-ip-list-2023-06-29 anonymous-proxy-ip-list-2023-07-18 anonymous-proxy-ip-list-2023-07-19 anonymous-proxy-ip-list-2023-08-03 anonymous-proxy-ip-list-2023-08-23 anonymous-proxy-ip-list-2023-08-25 anonymous-proxy-ip-list-2024-01-12 anonymous-proxy-ip-list-2024-01-31 anonymous-proxy-ip-list-2024-02-10 anonymous-proxy-ip-list-2024-03-12 anonymous-proxy-ip-list-2024-03-24 anonymous-proxy-ip-list-2024-04-10 ****** anonymous-proxy-ip-list-2023-08-07 anonymous-proxy-ip-list-2023-09-12 anonymous-proxy-ip-list-2024-02-07 anonymous-proxy-ip-list-2024-02-23 anonymous-proxy-ip-list-2024-03-03 anonymous-proxy-ip-list-2024-03-11 anonymous-proxy-ip-list-2024-03-13 anonymous-proxy-ip-list-2024-03-21 anonymous-proxy-ip-list-2024-04-04 anonymous-proxy-ip-list-2023-08-01 anonymous-proxy-ip-list-2023-09-24 anonymous-proxy-ip-list-2023-12-24 anonymous-proxy-ip-list-2024-01-19 anonymous-proxy-ip-list-2024-02-02 anonymous-proxy-ip-list-2024-03-08 anonymous-proxy-ip-list-2024-03-23 anonymous-proxy-ip-list-2024-03-29 anonymous-proxy-ip-list-2024-04-08 anonymous-proxy-ip-list-2024-11-13 anonymous-proxy-ip-list-2023-07-26 anonymous-proxy-ip-list-2023-07-27 anonymous-proxy-ip-list-2023-08-12 anonymous-proxy-ip-list-2023-08-24 anonymous-proxy-ip-list-2023-09-01 anonymous-proxy-ip-list-2023-12-21 anonymous-proxy-ip-list-2024-03-27 anonymous-proxy-ip-list-2023-08-11 anonymous-proxy-ip-list-2024-01-20 anonymous-proxy-ip-list-2023-08-08 anonymous-proxy-ip-list-2023-08-16 anonymous-proxy-ip-list-2023-08-21 anonymous-proxy-ip-list-2023-09-04 anonymous-proxy-ip-list-2023-12-22 anonymous-proxy-ip-list-2023-12-30 anonymous-proxy-ip-list-2024-01-16 anonymous-proxy-ip-list-2024-02-13 anonymous-proxy-ip-list-2024-03-16 anonymous-proxy-ip-list-2024-04-18 anonymous-proxy-ip-list-2023-07-10 anonymous-proxy-ip-list-2023-12-27 anonymous-proxy-ip-list-2024-02-16 anonymous-proxy-ip-list-2024-02-17 anonymous-proxy-ip-list-2024-03-28 anonymous-proxy-ip-list-2024-04-17 anonymous-proxy-ip-list-2024-04-21 anonymous-proxy-ip-list-2023-08-17 anonymous-proxy-ip-list-2023-09-15 anonymous-proxy-ip-list-2023-09-27 anonymous-proxy-ip-list-2024-01-02 anonymous-proxy-ip-list-2024-02-09 anonymous-proxy-ip-list-2024-02-27 anonymous-proxy-ip-list-2024-03-09 anonymous-proxy-ip-list-2024-04-02 anonymous-proxy-ip-list-2023-08-02 anonymous-proxy-ip-list-2024-01-08 anonymous-proxy-ip-list-2024-01-17 anonymous-proxy-ip-list-2024-02-18 anonymous-proxy-ip-list-2024-02-19 anonymous-proxy-ip-list-2024-03-26 anonymous-proxy-ip-list-2024-04-12 anonymous-proxy-ip-list-2023-06-30 anonymous-proxy-ip-list-2023-07-16 anonymous-proxy-ip-list-2023-08-04 anonymous-proxy-ip-list-2023-09-22 anonymous-proxy-ip-list-2023-12-25 anonymous-proxy-ip-list-2024-02-14 anonymous-proxy-ip-list-2024-03-18 anonymous-proxy-ip-list-2024-04-09 anonymous-proxy-ip-list-2024-04-16 anonymous-proxy-ip-list-2023-07-31 anonymous-proxy-ip-list-2023-08-19 anonymous-proxy-ip-list-2023-12-26 anonymous-proxy-ip-list-2024-01-29 anonymous-proxy-ip-list-2024-02-06 anonymous-proxy-ip-list-2024-02-11 anonymous-proxy-ip-list-2024-02-26 anonymous-proxy-ip-list-2024-03-15 anonymous-proxy-ip-list-2024-04-03 anonymous-proxy-ip-list-2024-04-07 anonymous-proxy-ip-list-2024-04-13 anonymous-proxy-ip-list-2023-07-08 anonymous-proxy-ip-list-2023-07-09 anonymous-proxy-ip-list-2023-08-14 anonymous-proxy-ip-list-2023-09-10 anonymous-proxy-ip-list-2023-12-19 anonymous-proxy-ip-list-2024-01-30 anonymous-proxy-ip-list-2024-02-04 anonymous-proxy-ip-list-2024-02-20 anonymous-proxy-ip-list-2024-06-07 anonymous-proxy-ip-list-2023-08-20 anonymous-proxy-ip-list-2023-08-31 anonymous-proxy-ip-list-2023-12-12 anonymous-proxy-ip-list-2023-12-17 anonymous-proxy-ip-list-2023-12-20 anonymous-proxy-ip-list-2023-12-28 anonymous-proxy-ip-list-2024-02-01 anonymous-proxy-ip-list-2024-02-29 anonymous-proxy-ip-list-2024-03-02 anonymous-proxy-ip-list-2024-03-31 anonymous-proxy-ip-list-2024-04-23 ****** anonymous-proxy-ip-list-2023-06-22 anonymous-proxy-ip-list-2023-07-02 anonymous-proxy-ip-list-2023-07-03 anonymous-proxy-ip-list-2023-07-30 anonymous-proxy-ip-list-2023-09-26 anonymous-proxy-ip-list-2024-01-10 anonymous-proxy-ip-list-2024-01-14 anonymous-proxy-ip-list-2024-04-14 anonymous-proxy-ip-list-2023-07-13 anonymous-proxy-ip-list-2023-12-18 anonymous-proxy-ip-list-2024-01-18 anonymous-proxy-ip-list-2024-01-24 anonymous-proxy-ip-list-2024-03-22 anonymous-proxy-ip-list-2023-12-11 anonymous-proxy-ip-list-2024-01-09 anonymous-proxy-ip-list-2024-01-11 anonymous-proxy-ip-list-2024-03-05 anonymous-proxy-ip-list-2024-03-17 anonymous-proxy-ip-list-2024-03-19 anonymous-proxy-ip-list-2024-03-25 anonymous-proxy-ip-list-2024-03-30 anonymous-proxy-ip-list-2024-04-01 anonymous-proxy-ip-list-2024-04-11 ****** anonymous-proxy-ip-list-2023-07-14 anonymous-proxy-ip-list-2023-07-21 anonymous-proxy-ip-list-2023-08-27 anonymous-proxy-ip-list-2023-09-09 anonymous-proxy-ip-list-2023-09-29 anonymous-proxy-ip-list-2023-12-23 anonymous-proxy-ip-list-2024-02-15 anonymous-proxy-ip-list-2024-02-25 anonymous-proxy-ip-list-2024-02-28 anonymous-proxy-ip-list-2024-03-07 anonymous-proxy-ip-list-2024-04-06 anonymous-proxy-ip-list-2023-12-31 anonymous-proxy-ip-list-2024-01-01 anonymous-proxy-ip-list-2024-02-24

Share on: