cyber_threat_intelligence/actors/Responder/README.md
2023-08-01 08:06:09 +02:00

668 lines
38 KiB
Markdown

# Responder - Cyber Threat Intelligence
These _indicators_ were reported, collected, and generated during the [VulDB CTI analysis](https://vuldb.com/?kb.cti) of the actor known as [Responder](https://vuldb.com/?actor.responder). The _activity monitoring_ correlates data from social media, forums, chat rooms, and darknet markets. It helps to determine associated actors, specific activities, expected intentions, emerging research, and ongoing attacks. Our unique _predictive model_ uses _big data_ to forecast activities and their characteristics.
_Live data_ and more _analysis capabilities_ are available at [https://vuldb.com/?actor.responder](https://vuldb.com/?actor.responder)
## Countries
These _countries_ are directly (e.g. origin of attacks) or indirectly (e.g. access by proxy) associated with Responder:
* [RU](https://vuldb.com/?country.ru)
* [US](https://vuldb.com/?country.us)
* [FR](https://vuldb.com/?country.fr)
* ...
There are 10 more country items available. Please use our online service to access the data.
## IOC - Indicator of Compromise
These _indicators of compromise_ (IOC) indicate associated network resources which are known to be part of research and attack activities of Responder.
ID | IP address | Hostname | Campaign | Confidence
-- | ---------- | -------- | -------- | ----------
1 | [3.10.155.160](https://vuldb.com/?ip.3.10.155.160) | ec2-3-10-155-160.eu-west-2.compute.amazonaws.com | - | Medium
2 | [3.12.70.77](https://vuldb.com/?ip.3.12.70.77) | ec2-3-12-70-77.us-east-2.compute.amazonaws.com | - | Medium
3 | [3.12.70.100](https://vuldb.com/?ip.3.12.70.100) | ec2-3-12-70-100.us-east-2.compute.amazonaws.com | - | Medium
4 | [3.12.113.100](https://vuldb.com/?ip.3.12.113.100) | ec2-3-12-113-100.us-east-2.compute.amazonaws.com | - | Medium
5 | [3.13.105.185](https://vuldb.com/?ip.3.13.105.185) | ec2-3-13-105-185.us-east-2.compute.amazonaws.com | - | Medium
6 | [3.13.133.182](https://vuldb.com/?ip.3.13.133.182) | ec2-3-13-133-182.us-east-2.compute.amazonaws.com | - | Medium
7 | [3.13.245.246](https://vuldb.com/?ip.3.13.245.246) | ec2-3-13-245-246.us-east-2.compute.amazonaws.com | - | Medium
8 | [3.14.171.147](https://vuldb.com/?ip.3.14.171.147) | ec2-3-14-171-147.us-east-2.compute.amazonaws.com | - | Medium
9 | [3.15.47.174](https://vuldb.com/?ip.3.15.47.174) | ec2-3-15-47-174.us-east-2.compute.amazonaws.com | - | Medium
10 | [3.16.18.205](https://vuldb.com/?ip.3.16.18.205) | ec2-3-16-18-205.us-east-2.compute.amazonaws.com | - | Medium
11 | [3.18.216.192](https://vuldb.com/?ip.3.18.216.192) | ec2-3-18-216-192.us-east-2.compute.amazonaws.com | - | Medium
12 | [3.19.132.170](https://vuldb.com/?ip.3.19.132.170) | ec2-3-19-132-170.us-east-2.compute.amazonaws.com | - | Medium
13 | [3.20.75.110](https://vuldb.com/?ip.3.20.75.110) | ec2-3-20-75-110.us-east-2.compute.amazonaws.com | - | Medium
14 | [3.20.119.106](https://vuldb.com/?ip.3.20.119.106) | ec2-3-20-119-106.us-east-2.compute.amazonaws.com | - | Medium
15 | [3.20.119.241](https://vuldb.com/?ip.3.20.119.241) | ec2-3-20-119-241.us-east-2.compute.amazonaws.com | - | Medium
16 | [3.20.179.134](https://vuldb.com/?ip.3.20.179.134) | ec2-3-20-179-134.us-east-2.compute.amazonaws.com | - | Medium
17 | [3.21.148.106](https://vuldb.com/?ip.3.21.148.106) | ec2-3-21-148-106.us-east-2.compute.amazonaws.com | - | Medium
18 | [3.21.214.24](https://vuldb.com/?ip.3.21.214.24) | ec2-3-21-214-24.us-east-2.compute.amazonaws.com | - | Medium
19 | [3.22.49.14](https://vuldb.com/?ip.3.22.49.14) | ec2-3-22-49-14.us-east-2.compute.amazonaws.com | - | Medium
20 | [3.22.216.255](https://vuldb.com/?ip.3.22.216.255) | ec2-3-22-216-255.us-east-2.compute.amazonaws.com | - | Medium
21 | [3.65.94.188](https://vuldb.com/?ip.3.65.94.188) | ec2-3-65-94-188.eu-central-1.compute.amazonaws.com | - | Medium
22 | [3.101.47.74](https://vuldb.com/?ip.3.101.47.74) | ec2-3-101-47-74.us-west-1.compute.amazonaws.com | - | Medium
23 | [3.121.141.12](https://vuldb.com/?ip.3.121.141.12) | ec2-3-121-141-12.eu-central-1.compute.amazonaws.com | - | Medium
24 | [3.128.165.237](https://vuldb.com/?ip.3.128.165.237) | ec2-3-128-165-237.us-east-2.compute.amazonaws.com | - | Medium
25 | [3.128.194.55](https://vuldb.com/?ip.3.128.194.55) | ec2-3-128-194-55.us-east-2.compute.amazonaws.com | - | Medium
26 | [3.128.252.159](https://vuldb.com/?ip.3.128.252.159) | ec2-3-128-252-159.us-east-2.compute.amazonaws.com | - | Medium
27 | [3.129.81.0](https://vuldb.com/?ip.3.129.81.0) | ec2-3-129-81-0.us-east-2.compute.amazonaws.com | - | Medium
28 | [3.129.141.104](https://vuldb.com/?ip.3.129.141.104) | ec2-3-129-141-104.us-east-2.compute.amazonaws.com | - | Medium
29 | [3.129.240.162](https://vuldb.com/?ip.3.129.240.162) | ec2-3-129-240-162.us-east-2.compute.amazonaws.com | - | Medium
30 | [3.130.196.221](https://vuldb.com/?ip.3.130.196.221) | ec2-3-130-196-221.us-east-2.compute.amazonaws.com | - | Medium
31 | [3.131.44.28](https://vuldb.com/?ip.3.131.44.28) | ec2-3-131-44-28.us-east-2.compute.amazonaws.com | - | Medium
32 | [3.131.218.223](https://vuldb.com/?ip.3.131.218.223) | ec2-3-131-218-223.us-east-2.compute.amazonaws.com | - | Medium
33 | [3.131.227.105](https://vuldb.com/?ip.3.131.227.105) | ec2-3-131-227-105.us-east-2.compute.amazonaws.com | - | Medium
34 | [3.131.231.5](https://vuldb.com/?ip.3.131.231.5) | ec2-3-131-231-5.us-east-2.compute.amazonaws.com | - | Medium
35 | [3.132.29.83](https://vuldb.com/?ip.3.132.29.83) | ec2-3-132-29-83.us-east-2.compute.amazonaws.com | - | Medium
36 | [3.132.94.5](https://vuldb.com/?ip.3.132.94.5) | ec2-3-132-94-5.us-east-2.compute.amazonaws.com | - | Medium
37 | [3.132.230.8](https://vuldb.com/?ip.3.132.230.8) | ec2-3-132-230-8.us-east-2.compute.amazonaws.com | - | Medium
38 | [3.132.237.169](https://vuldb.com/?ip.3.132.237.169) | ec2-3-132-237-169.us-east-2.compute.amazonaws.com | - | Medium
39 | [3.133.158.78](https://vuldb.com/?ip.3.133.158.78) | ec2-3-133-158-78.us-east-2.compute.amazonaws.com | - | Medium
40 | [3.134.130.179](https://vuldb.com/?ip.3.134.130.179) | ec2-3-134-130-179.us-east-2.compute.amazonaws.com | - | Medium
41 | [3.134.198.51](https://vuldb.com/?ip.3.134.198.51) | ec2-3-134-198-51.us-east-2.compute.amazonaws.com | - | Medium
42 | [3.135.83.21](https://vuldb.com/?ip.3.135.83.21) | ec2-3-135-83-21.us-east-2.compute.amazonaws.com | - | Medium
43 | [3.137.67.123](https://vuldb.com/?ip.3.137.67.123) | ec2-3-137-67-123.us-east-2.compute.amazonaws.com | - | Medium
44 | [3.137.106.230](https://vuldb.com/?ip.3.137.106.230) | ec2-3-137-106-230.us-east-2.compute.amazonaws.com | - | Medium
45 | [3.138.120.116](https://vuldb.com/?ip.3.138.120.116) | ec2-3-138-120-116.us-east-2.compute.amazonaws.com | - | Medium
46 | [3.138.212.37](https://vuldb.com/?ip.3.138.212.37) | ec2-3-138-212-37.us-east-2.compute.amazonaws.com | - | Medium
47 | [3.139.196.148](https://vuldb.com/?ip.3.139.196.148) | ec2-3-139-196-148.us-east-2.compute.amazonaws.com | - | Medium
48 | [3.139.254.8](https://vuldb.com/?ip.3.139.254.8) | ec2-3-139-254-8.us-east-2.compute.amazonaws.com | - | Medium
49 | [3.140.57.4](https://vuldb.com/?ip.3.140.57.4) | ec2-3-140-57-4.us-east-2.compute.amazonaws.com | - | Medium
50 | [3.140.83.98](https://vuldb.com/?ip.3.140.83.98) | ec2-3-140-83-98.us-east-2.compute.amazonaws.com | - | Medium
51 | [3.140.197.153](https://vuldb.com/?ip.3.140.197.153) | ec2-3-140-197-153.us-east-2.compute.amazonaws.com | - | Medium
52 | [3.141.110.210](https://vuldb.com/?ip.3.141.110.210) | ec2-3-141-110-210.us-east-2.compute.amazonaws.com | - | Medium
53 | [3.142.101.254](https://vuldb.com/?ip.3.142.101.254) | ec2-3-142-101-254.us-east-2.compute.amazonaws.com | - | Medium
54 | [3.143.46.79](https://vuldb.com/?ip.3.143.46.79) | ec2-3-143-46-79.us-east-2.compute.amazonaws.com | - | Medium
55 | [3.143.53.4](https://vuldb.com/?ip.3.143.53.4) | ec2-3-143-53-4.us-east-2.compute.amazonaws.com | - | Medium
56 | [3.143.166.127](https://vuldb.com/?ip.3.143.166.127) | ec2-3-143-166-127.us-east-2.compute.amazonaws.com | - | Medium
57 | [3.144.4.92](https://vuldb.com/?ip.3.144.4.92) | ec2-3-144-4-92.us-east-2.compute.amazonaws.com | - | Medium
58 | [3.218.78.81](https://vuldb.com/?ip.3.218.78.81) | ec2-3-218-78-81.compute-1.amazonaws.com | - | Medium
59 | [3.249.18.59](https://vuldb.com/?ip.3.249.18.59) | ec2-3-249-18-59.eu-west-1.compute.amazonaws.com | - | Medium
60 | [3.249.44.94](https://vuldb.com/?ip.3.249.44.94) | ec2-3-249-44-94.eu-west-1.compute.amazonaws.com | - | Medium
61 | [3.249.151.135](https://vuldb.com/?ip.3.249.151.135) | ec2-3-249-151-135.eu-west-1.compute.amazonaws.com | - | Medium
62 | [3.249.161.113](https://vuldb.com/?ip.3.249.161.113) | ec2-3-249-161-113.eu-west-1.compute.amazonaws.com | - | Medium
63 | [3.249.212.201](https://vuldb.com/?ip.3.249.212.201) | ec2-3-249-212-201.eu-west-1.compute.amazonaws.com | - | Medium
64 | [3.250.59.127](https://vuldb.com/?ip.3.250.59.127) | ec2-3-250-59-127.eu-west-1.compute.amazonaws.com | - | Medium
65 | [3.250.73.156](https://vuldb.com/?ip.3.250.73.156) | ec2-3-250-73-156.eu-west-1.compute.amazonaws.com | - | Medium
66 | [3.252.219.5](https://vuldb.com/?ip.3.252.219.5) | ec2-3-252-219-5.eu-west-1.compute.amazonaws.com | - | Medium
67 | [3.253.101.91](https://vuldb.com/?ip.3.253.101.91) | ec2-3-253-101-91.eu-west-1.compute.amazonaws.com | - | Medium
68 | [3.253.111.92](https://vuldb.com/?ip.3.253.111.92) | ec2-3-253-111-92.eu-west-1.compute.amazonaws.com | - | Medium
69 | [3.253.165.48](https://vuldb.com/?ip.3.253.165.48) | ec2-3-253-165-48.eu-west-1.compute.amazonaws.com | - | Medium
70 | [4.236.181.211](https://vuldb.com/?ip.4.236.181.211) | - | - | High
71 | [5.45.118.168](https://vuldb.com/?ip.5.45.118.168) | testsuite | - | High
72 | [5.78.75.82](https://vuldb.com/?ip.5.78.75.82) | static.82.75.78.5.clients.your-server.de | - | High
73 | [8.219.195.188](https://vuldb.com/?ip.8.219.195.188) | - | - | High
74 | [12.181.65.210](https://vuldb.com/?ip.12.181.65.210) | - | - | High
75 | [12.181.120.250](https://vuldb.com/?ip.12.181.120.250) | - | - | High
76 | [13.37.231.184](https://vuldb.com/?ip.13.37.231.184) | ec2-13-37-231-184.eu-west-3.compute.amazonaws.com | - | Medium
77 | [13.50.105.97](https://vuldb.com/?ip.13.50.105.97) | ec2-13-50-105-97.eu-north-1.compute.amazonaws.com | - | Medium
78 | [13.58.85.225](https://vuldb.com/?ip.13.58.85.225) | ec2-13-58-85-225.us-east-2.compute.amazonaws.com | - | Medium
79 | [13.59.76.247](https://vuldb.com/?ip.13.59.76.247) | ec2-13-59-76-247.us-east-2.compute.amazonaws.com | - | Medium
80 | [13.59.98.191](https://vuldb.com/?ip.13.59.98.191) | ec2-13-59-98-191.us-east-2.compute.amazonaws.com | - | Medium
81 | [13.59.198.138](https://vuldb.com/?ip.13.59.198.138) | ec2-13-59-198-138.us-east-2.compute.amazonaws.com | - | Medium
82 | [13.59.226.24](https://vuldb.com/?ip.13.59.226.24) | ec2-13-59-226-24.us-east-2.compute.amazonaws.com | - | Medium
83 | [13.87.92.152](https://vuldb.com/?ip.13.87.92.152) | - | - | High
84 | [13.211.145.235](https://vuldb.com/?ip.13.211.145.235) | ec2-13-211-145-235.ap-southeast-2.compute.amazonaws.com | - | Medium
85 | [15.184.211.28](https://vuldb.com/?ip.15.184.211.28) | ec2-15-184-211-28.me-south-1.compute.amazonaws.com | - | Medium
86 | [15.222.6.75](https://vuldb.com/?ip.15.222.6.75) | ec2-15-222-6-75.ca-central-1.compute.amazonaws.com | - | Medium
87 | [18.116.0.119](https://vuldb.com/?ip.18.116.0.119) | ec2-18-116-0-119.us-east-2.compute.amazonaws.com | - | Medium
88 | [18.117.104.228](https://vuldb.com/?ip.18.117.104.228) | ec2-18-117-104-228.us-east-2.compute.amazonaws.com | - | Medium
89 | [18.117.230.23](https://vuldb.com/?ip.18.117.230.23) | ec2-18-117-230-23.us-east-2.compute.amazonaws.com | - | Medium
90 | [18.118.134.58](https://vuldb.com/?ip.18.118.134.58) | ec2-18-118-134-58.us-east-2.compute.amazonaws.com | - | Medium
91 | [18.118.140.42](https://vuldb.com/?ip.18.118.140.42) | ec2-18-118-140-42.us-east-2.compute.amazonaws.com | - | Medium
92 | [18.119.78.203](https://vuldb.com/?ip.18.119.78.203) | ec2-18-119-78-203.us-east-2.compute.amazonaws.com | - | Medium
93 | [18.119.148.147](https://vuldb.com/?ip.18.119.148.147) | ec2-18-119-148-147.us-east-2.compute.amazonaws.com | - | Medium
94 | [18.133.125.105](https://vuldb.com/?ip.18.133.125.105) | ec2-18-133-125-105.eu-west-2.compute.amazonaws.com | - | Medium
95 | [18.143.148.26](https://vuldb.com/?ip.18.143.148.26) | ec2-18-143-148-26.ap-southeast-1.compute.amazonaws.com | - | Medium
96 | [18.188.0.172](https://vuldb.com/?ip.18.188.0.172) | ec2-18-188-0-172.us-east-2.compute.amazonaws.com | - | Medium
97 | [18.188.83.124](https://vuldb.com/?ip.18.188.83.124) | ec2-18-188-83-124.us-east-2.compute.amazonaws.com | - | Medium
98 | [18.188.231.17](https://vuldb.com/?ip.18.188.231.17) | ec2-18-188-231-17.us-east-2.compute.amazonaws.com | - | Medium
99 | [18.189.1.24](https://vuldb.com/?ip.18.189.1.24) | ec2-18-189-1-24.us-east-2.compute.amazonaws.com | - | Medium
100 | ... | ... | ... | ...
There are 395 more IOC items available. Please use our online service to access the data.
## TTP - Tactics, Techniques, Procedures
_Tactics, techniques, and procedures_ (TTP) summarize the suspected MITRE ATT&CK techniques used by _Responder_. This data is unique as it uses our predictive model for actor profiling.
ID | Technique | Weakness | Description | Confidence
-- | --------- | -------- | ----------- | ----------
1 | T1006 | CWE-21, CWE-22 | Pathname Traversal | High
2 | T1055 | CWE-74 | Injection | High
3 | T1059 | CWE-94 | Cross Site Scripting | High
4 | T1059.007 | CWE-79, CWE-80 | Cross Site Scripting | High
5 | ... | ... | ... | ...
There are 14 more TTP items available. Please use our online service to access the data.
## IOA - Indicator of Attack
These _indicators of attack_ (IOA) list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration by Responder. This data is unique as it uses our predictive model for actor profiling.
ID | Type | Indicator | Confidence
-- | ---- | --------- | ----------
1 | File | `%PROGRAMFILES%\1E\Client\Tachyon.Performance.Metrics.exe` | High
2 | File | `/ECT_Provider/` | High
3 | File | `/forum/away.php` | High
4 | File | `/login/index.php` | High
5 | File | `/vendor/htmlawed/htmlawed/htmLawedTest.php` | High
6 | File | `/wp-content/plugins/updraftplus/admin.php` | High
7 | File | `adclick.php` | Medium
8 | File | `add_comment.php` | High
9 | ... | ... | ...
There are 63 more IOA items available (file, library, argument, input value, pattern, network port). Please use our online service to access the data.
## References
The following list contains _external sources_ which discuss the actor and the associated activities:
* https://search.censys.io/hosts/3.10.155.160
* https://search.censys.io/hosts/3.12.70.77
* https://search.censys.io/hosts/3.12.70.100
* https://search.censys.io/hosts/3.12.113.100
* https://search.censys.io/hosts/3.13.105.185
* https://search.censys.io/hosts/3.13.133.182
* https://search.censys.io/hosts/3.13.245.246
* https://search.censys.io/hosts/3.14.171.147
* https://search.censys.io/hosts/3.15.47.174
* https://search.censys.io/hosts/3.16.18.205
* https://search.censys.io/hosts/3.18.216.192
* https://search.censys.io/hosts/3.19.132.170
* https://search.censys.io/hosts/3.20.75.110
* https://search.censys.io/hosts/3.20.119.106
* https://search.censys.io/hosts/3.20.119.241
* https://search.censys.io/hosts/3.20.179.134
* https://search.censys.io/hosts/3.21.148.106
* https://search.censys.io/hosts/3.21.214.24
* https://search.censys.io/hosts/3.22.49.14
* https://search.censys.io/hosts/3.22.216.255
* https://search.censys.io/hosts/3.65.94.188
* https://search.censys.io/hosts/3.101.47.74
* https://search.censys.io/hosts/3.121.141.12
* https://search.censys.io/hosts/3.128.165.237
* https://search.censys.io/hosts/3.128.194.55
* https://search.censys.io/hosts/3.128.252.159
* https://search.censys.io/hosts/3.129.81.0
* https://search.censys.io/hosts/3.129.141.104
* https://search.censys.io/hosts/3.129.240.162
* https://search.censys.io/hosts/3.130.196.221
* https://search.censys.io/hosts/3.131.44.28
* https://search.censys.io/hosts/3.131.218.223
* https://search.censys.io/hosts/3.131.227.105
* https://search.censys.io/hosts/3.131.231.5
* https://search.censys.io/hosts/3.132.29.83
* https://search.censys.io/hosts/3.132.94.5
* https://search.censys.io/hosts/3.132.230.8
* https://search.censys.io/hosts/3.132.237.169
* https://search.censys.io/hosts/3.133.158.78
* https://search.censys.io/hosts/3.134.130.179
* https://search.censys.io/hosts/3.134.198.51
* https://search.censys.io/hosts/3.135.83.21
* https://search.censys.io/hosts/3.137.67.123
* https://search.censys.io/hosts/3.137.106.230
* https://search.censys.io/hosts/3.138.120.116
* https://search.censys.io/hosts/3.138.212.37
* https://search.censys.io/hosts/3.139.196.148
* https://search.censys.io/hosts/3.139.254.8
* https://search.censys.io/hosts/3.140.57.4
* https://search.censys.io/hosts/3.140.83.98
* https://search.censys.io/hosts/3.140.197.153
* https://search.censys.io/hosts/3.141.110.210
* https://search.censys.io/hosts/3.142.101.254
* https://search.censys.io/hosts/3.143.46.79
* https://search.censys.io/hosts/3.143.53.4
* https://search.censys.io/hosts/3.143.166.127
* https://search.censys.io/hosts/3.144.4.92
* https://search.censys.io/hosts/3.218.78.81
* https://search.censys.io/hosts/3.249.18.59
* https://search.censys.io/hosts/3.249.44.94
* https://search.censys.io/hosts/3.249.151.135
* https://search.censys.io/hosts/3.249.161.113
* https://search.censys.io/hosts/3.249.212.201
* https://search.censys.io/hosts/3.250.59.127
* https://search.censys.io/hosts/3.250.73.156
* https://search.censys.io/hosts/3.252.219.5
* https://search.censys.io/hosts/3.253.101.91
* https://search.censys.io/hosts/3.253.111.92
* https://search.censys.io/hosts/3.253.165.48
* https://search.censys.io/hosts/4.236.181.211
* https://search.censys.io/hosts/5.45.118.168
* https://search.censys.io/hosts/5.78.75.82
* https://search.censys.io/hosts/8.219.195.188
* https://search.censys.io/hosts/12.181.65.210
* https://search.censys.io/hosts/12.181.120.250
* https://search.censys.io/hosts/13.37.231.184
* https://search.censys.io/hosts/13.50.105.97
* https://search.censys.io/hosts/13.58.85.225
* https://search.censys.io/hosts/13.59.76.247
* https://search.censys.io/hosts/13.59.98.191
* https://search.censys.io/hosts/13.59.198.138
* https://search.censys.io/hosts/13.59.226.24
* https://search.censys.io/hosts/13.87.92.152
* https://search.censys.io/hosts/13.211.145.235
* https://search.censys.io/hosts/15.184.211.28
* https://search.censys.io/hosts/15.222.6.75
* https://search.censys.io/hosts/18.116.0.119
* https://search.censys.io/hosts/18.117.104.228
* https://search.censys.io/hosts/18.117.230.23
* https://search.censys.io/hosts/18.118.134.58
* https://search.censys.io/hosts/18.118.140.42
* https://search.censys.io/hosts/18.119.78.203
* https://search.censys.io/hosts/18.119.148.147
* https://search.censys.io/hosts/18.133.125.105
* https://search.censys.io/hosts/18.143.148.26
* https://search.censys.io/hosts/18.188.0.172
* https://search.censys.io/hosts/18.188.83.124
* https://search.censys.io/hosts/18.188.231.17
* https://search.censys.io/hosts/18.189.1.24
* https://search.censys.io/hosts/18.189.124.58
* https://search.censys.io/hosts/18.189.207.77
* https://search.censys.io/hosts/18.190.16.172
* https://search.censys.io/hosts/18.190.55.0
* https://search.censys.io/hosts/18.190.70.155
* https://search.censys.io/hosts/18.190.105.56
* https://search.censys.io/hosts/18.190.119.137
* https://search.censys.io/hosts/18.191.16.224
* https://search.censys.io/hosts/18.191.220.246
* https://search.censys.io/hosts/18.196.231.230
* https://search.censys.io/hosts/18.202.28.86
* https://search.censys.io/hosts/18.204.142.71
* https://search.censys.io/hosts/18.204.143.31
* https://search.censys.io/hosts/18.208.213.147
* https://search.censys.io/hosts/18.217.73.143
* https://search.censys.io/hosts/18.217.220.11
* https://search.censys.io/hosts/18.218.44.20
* https://search.censys.io/hosts/18.219.194.184
* https://search.censys.io/hosts/18.220.53.56
* https://search.censys.io/hosts/18.221.8.108
* https://search.censys.io/hosts/18.221.8.178
* https://search.censys.io/hosts/18.221.36.131
* https://search.censys.io/hosts/18.221.160.80
* https://search.censys.io/hosts/18.222.81.233
* https://search.censys.io/hosts/18.222.116.178
* https://search.censys.io/hosts/18.222.127.73
* https://search.censys.io/hosts/18.223.65.54
* https://search.censys.io/hosts/18.223.139.17
* https://search.censys.io/hosts/18.236.83.77
* https://search.censys.io/hosts/20.13.154.2
* https://search.censys.io/hosts/20.14.18.67
* https://search.censys.io/hosts/20.49.161.22
* https://search.censys.io/hosts/20.49.161.31
* https://search.censys.io/hosts/20.51.172.81
* https://search.censys.io/hosts/20.66.12.220
* https://search.censys.io/hosts/20.74.179.106
* https://search.censys.io/hosts/20.89.239.154
* https://search.censys.io/hosts/20.92.142.158
* https://search.censys.io/hosts/20.114.233.45
* https://search.censys.io/hosts/20.123.192.253
* https://search.censys.io/hosts/20.199.126.16
* https://search.censys.io/hosts/20.203.214.18
* https://search.censys.io/hosts/20.204.3.168
* https://search.censys.io/hosts/20.221.250.187
* https://search.censys.io/hosts/20.223.231.108
* https://search.censys.io/hosts/20.225.61.98
* https://search.censys.io/hosts/20.232.138.101
* https://search.censys.io/hosts/20.242.52.93
* https://search.censys.io/hosts/23.239.17.231
* https://search.censys.io/hosts/24.112.21.157
* https://search.censys.io/hosts/34.31.119.155
* https://search.censys.io/hosts/34.88.222.181
* https://search.censys.io/hosts/34.89.32.20
* https://search.censys.io/hosts/34.107.117.33
* https://search.censys.io/hosts/34.125.68.109
* https://search.censys.io/hosts/34.132.176.70
* https://search.censys.io/hosts/34.170.8.133
* https://search.censys.io/hosts/34.201.16.153
* https://search.censys.io/hosts/34.204.1.224
* https://search.censys.io/hosts/34.240.177.115
* https://search.censys.io/hosts/34.241.117.155
* https://search.censys.io/hosts/34.242.230.191
* https://search.censys.io/hosts/34.244.155.135
* https://search.censys.io/hosts/34.245.228.37
* https://search.censys.io/hosts/34.247.174.193
* https://search.censys.io/hosts/34.247.178.39
* https://search.censys.io/hosts/34.247.180.46
* https://search.censys.io/hosts/34.252.16.250
* https://search.censys.io/hosts/34.252.59.180
* https://search.censys.io/hosts/34.254.63.103
* https://search.censys.io/hosts/34.254.99.129
* https://search.censys.io/hosts/35.171.153.152
* https://search.censys.io/hosts/35.179.16.154
* https://search.censys.io/hosts/35.180.123.217
* https://search.censys.io/hosts/35.180.238.137
* https://search.censys.io/hosts/35.183.112.212
* https://search.censys.io/hosts/35.192.152.195
* https://search.censys.io/hosts/35.207.206.133
* https://search.censys.io/hosts/35.242.163.216
* https://search.censys.io/hosts/35.246.23.156
* https://search.censys.io/hosts/35.246.116.51
* https://search.censys.io/hosts/37.139.20.46
* https://search.censys.io/hosts/38.32.80.165
* https://search.censys.io/hosts/38.64.65.8
* https://search.censys.io/hosts/38.107.146.136
* https://search.censys.io/hosts/38.123.247.211
* https://search.censys.io/hosts/40.118.62.149
* https://search.censys.io/hosts/43.159.46.228
* https://search.censys.io/hosts/44.202.111.183
* https://search.censys.io/hosts/44.203.207.207
* https://search.censys.io/hosts/44.204.136.58
* https://search.censys.io/hosts/44.206.141.197
* https://search.censys.io/hosts/45.33.39.117
* https://search.censys.io/hosts/45.33.66.128
* https://search.censys.io/hosts/45.33.73.196
* https://search.censys.io/hosts/45.33.105.239
* https://search.censys.io/hosts/45.56.66.73
* https://search.censys.io/hosts/45.56.121.8
* https://search.censys.io/hosts/45.77.63.93
* https://search.censys.io/hosts/45.79.46.240
* https://search.censys.io/hosts/45.95.202.23
* https://search.censys.io/hosts/45.135.135.132
* https://search.censys.io/hosts/45.137.117.144
* https://search.censys.io/hosts/45.138.74.77
* https://search.censys.io/hosts/45.152.66.95
* https://search.censys.io/hosts/46.44.62.227
* https://search.censys.io/hosts/46.101.85.199
* https://search.censys.io/hosts/46.101.201.97
* https://search.censys.io/hosts/46.137.38.121
* https://search.censys.io/hosts/46.161.52.181
* https://search.censys.io/hosts/50.207.70.160
* https://search.censys.io/hosts/50.220.18.251
* https://search.censys.io/hosts/51.38.185.204
* https://search.censys.io/hosts/51.83.249.137
* https://search.censys.io/hosts/51.91.102.222
* https://search.censys.io/hosts/51.91.255.96
* https://search.censys.io/hosts/51.104.206.207
* https://search.censys.io/hosts/51.136.18.109
* https://search.censys.io/hosts/51.250.15.242
* https://search.censys.io/hosts/51.255.5.104
* https://search.censys.io/hosts/52.3.246.29
* https://search.censys.io/hosts/52.9.8.91
* https://search.censys.io/hosts/52.14.45.109
* https://search.censys.io/hosts/52.14.219.131
* https://search.censys.io/hosts/52.14.231.198
* https://search.censys.io/hosts/52.22.139.253
* https://search.censys.io/hosts/52.54.249.74
* https://search.censys.io/hosts/52.58.17.125
* https://search.censys.io/hosts/52.143.142.21
* https://search.censys.io/hosts/52.148.136.164
* https://search.censys.io/hosts/52.156.24.108
* https://search.censys.io/hosts/52.176.39.204
* https://search.censys.io/hosts/52.210.38.225
* https://search.censys.io/hosts/52.214.15.177
* https://search.censys.io/hosts/52.233.69.141
* https://search.censys.io/hosts/52.237.219.78
* https://search.censys.io/hosts/54.74.80.81
* https://search.censys.io/hosts/54.74.103.235
* https://search.censys.io/hosts/54.74.113.22
* https://search.censys.io/hosts/54.74.116.114
* https://search.censys.io/hosts/54.78.36.15
* https://search.censys.io/hosts/54.84.64.28
* https://search.censys.io/hosts/54.163.53.159
* https://search.censys.io/hosts/54.163.149.166
* https://search.censys.io/hosts/54.194.26.52
* https://search.censys.io/hosts/54.194.154.122
* https://search.censys.io/hosts/54.194.243.187
* https://search.censys.io/hosts/54.205.140.17
* https://search.censys.io/hosts/54.216.35.66
* https://search.censys.io/hosts/54.216.99.131
* https://search.censys.io/hosts/54.221.74.208
* https://search.censys.io/hosts/54.228.112.215
* https://search.censys.io/hosts/54.229.180.175
* https://search.censys.io/hosts/62.10.74.27
* https://search.censys.io/hosts/62.10.74.218
* https://search.censys.io/hosts/62.182.159.155
* https://search.censys.io/hosts/63.32.112.45
* https://search.censys.io/hosts/63.33.70.163
* https://search.censys.io/hosts/63.35.181.86
* https://search.censys.io/hosts/63.35.187.119
* https://search.censys.io/hosts/63.250.41.138
* https://search.censys.io/hosts/64.73.162.11
* https://search.censys.io/hosts/64.226.68.20
* https://search.censys.io/hosts/64.226.100.189
* https://search.censys.io/hosts/64.226.126.5
* https://search.censys.io/hosts/64.227.34.214
* https://search.censys.io/hosts/64.227.37.134
* https://search.censys.io/hosts/64.227.99.90
* https://search.censys.io/hosts/65.108.196.151
* https://search.censys.io/hosts/65.109.9.51
* https://search.censys.io/hosts/66.109.142.164
* https://search.censys.io/hosts/66.225.35.229
* https://search.censys.io/hosts/67.204.14.215
* https://search.censys.io/hosts/68.183.52.177
* https://search.censys.io/hosts/69.61.107.214
* https://search.censys.io/hosts/77.87.189.34
* https://search.censys.io/hosts/78.47.126.26
* https://search.censys.io/hosts/78.57.231.58
* https://search.censys.io/hosts/78.128.99.215
* https://search.censys.io/hosts/79.137.199.98
* https://search.censys.io/hosts/80.85.155.43
* https://search.censys.io/hosts/80.85.156.184
* https://search.censys.io/hosts/81.29.134.165
* https://search.censys.io/hosts/82.65.153.201
* https://search.censys.io/hosts/82.203.66.252
* https://search.censys.io/hosts/84.222.45.254
* https://search.censys.io/hosts/86.3.50.68
* https://search.censys.io/hosts/86.105.227.103
* https://search.censys.io/hosts/88.119.171.155
* https://search.censys.io/hosts/88.218.194.37
* https://search.censys.io/hosts/89.17.153.8
* https://search.censys.io/hosts/89.29.128.9
* https://search.censys.io/hosts/91.107.237.229
* https://search.censys.io/hosts/91.134.141.245
* https://search.censys.io/hosts/91.198.77.129
* https://search.censys.io/hosts/91.245.253.74
* https://search.censys.io/hosts/92.204.160.126
* https://search.censys.io/hosts/92.222.82.133
* https://search.censys.io/hosts/94.34.22.106
* https://search.censys.io/hosts/94.34.35.44
* https://search.censys.io/hosts/94.34.39.95
* https://search.censys.io/hosts/94.34.46.13
* https://search.censys.io/hosts/94.34.69.41
* https://search.censys.io/hosts/94.34.135.188
* https://search.censys.io/hosts/94.34.138.108
* https://search.censys.io/hosts/94.34.157.201
* https://search.censys.io/hosts/94.34.158.234
* https://search.censys.io/hosts/94.103.81.107
* https://search.censys.io/hosts/94.131.12.133
* https://search.censys.io/hosts/94.177.123.109
* https://search.censys.io/hosts/95.214.55.202
* https://search.censys.io/hosts/98.70.2.57
* https://search.censys.io/hosts/98.117.29.23
* https://search.censys.io/hosts/102.67.140.187
* https://search.censys.io/hosts/103.56.55.109
* https://search.censys.io/hosts/103.179.98.83
* https://search.censys.io/hosts/104.131.3.28
* https://search.censys.io/hosts/104.194.222.50
* https://search.censys.io/hosts/104.225.129.100
* https://search.censys.io/hosts/104.237.11.5
* https://search.censys.io/hosts/104.238.60.31
* https://search.censys.io/hosts/104.238.190.138
* https://search.censys.io/hosts/107.148.131.107
* https://search.censys.io/hosts/107.175.172.171
* https://search.censys.io/hosts/109.120.182.2
* https://search.censys.io/hosts/109.248.6.221
* https://search.censys.io/hosts/109.248.6.246
* https://search.censys.io/hosts/109.250.180.168
* https://search.censys.io/hosts/109.250.181.60
* https://search.censys.io/hosts/120.138.18.160
* https://search.censys.io/hosts/120.138.26.178
* https://search.censys.io/hosts/128.106.194.222
* https://search.censys.io/hosts/128.199.35.229
* https://search.censys.io/hosts/128.199.149.75
* https://search.censys.io/hosts/129.21.35.238
* https://search.censys.io/hosts/130.61.236.166
* https://search.censys.io/hosts/131.246.5.26
* https://search.censys.io/hosts/134.122.68.71
* https://search.censys.io/hosts/134.122.91.68
* https://search.censys.io/hosts/134.209.28.104
* https://search.censys.io/hosts/134.209.83.148
* https://search.censys.io/hosts/134.209.175.249
* https://search.censys.io/hosts/134.210.3.102
* https://search.censys.io/hosts/135.125.190.193
* https://search.censys.io/hosts/135.125.236.143
* https://search.censys.io/hosts/137.184.24.157
* https://search.censys.io/hosts/137.184.40.73
* https://search.censys.io/hosts/137.184.91.206
* https://search.censys.io/hosts/138.68.114.167
* https://search.censys.io/hosts/138.68.172.182
* https://search.censys.io/hosts/138.197.2.107
* https://search.censys.io/hosts/138.197.40.125
* https://search.censys.io/hosts/138.197.171.97
* https://search.censys.io/hosts/138.197.186.95
* https://search.censys.io/hosts/139.59.169.53
* https://search.censys.io/hosts/139.162.138.252
* https://search.censys.io/hosts/139.162.185.21
* https://search.censys.io/hosts/139.177.189.73
* https://search.censys.io/hosts/139.177.193.144
* https://search.censys.io/hosts/140.99.170.9
* https://search.censys.io/hosts/142.93.242.149
* https://search.censys.io/hosts/143.110.238.47
* https://search.censys.io/hosts/143.198.0.217
* https://search.censys.io/hosts/143.198.11.108
* https://search.censys.io/hosts/143.198.62.76
* https://search.censys.io/hosts/143.198.105.12
* https://search.censys.io/hosts/144.91.86.133
* https://search.censys.io/hosts/144.126.152.51
* https://search.censys.io/hosts/146.70.35.153
* https://search.censys.io/hosts/146.70.106.86
* https://search.censys.io/hosts/146.71.79.148
* https://search.censys.io/hosts/146.190.177.246
* https://search.censys.io/hosts/146.190.223.51
* https://search.censys.io/hosts/147.182.152.233
* https://search.censys.io/hosts/149.28.176.160
* https://search.censys.io/hosts/149.102.158.245
* https://search.censys.io/hosts/154.53.37.105
* https://search.censys.io/hosts/157.230.122.150
* https://search.censys.io/hosts/157.230.217.169
* https://search.censys.io/hosts/157.245.113.142
* https://search.censys.io/hosts/157.245.118.196
* https://search.censys.io/hosts/159.65.86.149
* https://search.censys.io/hosts/159.65.130.138
* https://search.censys.io/hosts/159.65.188.55
* https://search.censys.io/hosts/159.65.193.223
* https://search.censys.io/hosts/159.89.136.178
* https://search.censys.io/hosts/159.203.143.27
* https://search.censys.io/hosts/159.223.76.66
* https://search.censys.io/hosts/161.35.110.235
* https://search.censys.io/hosts/161.35.122.12
* https://search.censys.io/hosts/162.55.182.201
* https://search.censys.io/hosts/163.172.232.20
* https://search.censys.io/hosts/163.172.234.8
* https://search.censys.io/hosts/165.22.36.210
* https://search.censys.io/hosts/165.22.40.22
* https://search.censys.io/hosts/165.22.47.224
* https://search.censys.io/hosts/165.22.57.138
* https://search.censys.io/hosts/165.22.79.82
* https://search.censys.io/hosts/165.227.96.221
* https://search.censys.io/hosts/165.227.112.99
* https://search.censys.io/hosts/165.227.191.106
* https://search.censys.io/hosts/165.227.216.142
* https://search.censys.io/hosts/165.232.154.39
* https://search.censys.io/hosts/167.71.27.110
* https://search.censys.io/hosts/167.71.164.74
* https://search.censys.io/hosts/167.71.168.208
* https://search.censys.io/hosts/167.71.252.5
* https://search.censys.io/hosts/167.99.113.2
* https://search.censys.io/hosts/167.99.124.140
* https://search.censys.io/hosts/167.99.191.228
* https://search.censys.io/hosts/167.114.115.246
* https://search.censys.io/hosts/167.172.26.52
* https://search.censys.io/hosts/167.172.44.218
* https://search.censys.io/hosts/168.75.77.20
* https://search.censys.io/hosts/168.235.67.214
* https://search.censys.io/hosts/170.64.152.14
* https://search.censys.io/hosts/170.64.168.1
* https://search.censys.io/hosts/170.64.168.228
* https://search.censys.io/hosts/172.86.70.31
* https://search.censys.io/hosts/172.86.76.246
* https://search.censys.io/hosts/172.96.137.14
* https://search.censys.io/hosts/172.96.137.139
* https://search.censys.io/hosts/172.96.137.149
* https://search.censys.io/hosts/172.104.149.134
* https://search.censys.io/hosts/172.104.239.242
* https://search.censys.io/hosts/172.105.122.176
* https://search.censys.io/hosts/172.190.188.163
* https://search.censys.io/hosts/173.82.120.231
* https://search.censys.io/hosts/174.138.56.197
* https://search.censys.io/hosts/174.138.72.74
* https://search.censys.io/hosts/174.138.88.77
* https://search.censys.io/hosts/176.97.73.54
* https://search.censys.io/hosts/176.124.198.40
* https://search.censys.io/hosts/178.62.3.164
* https://search.censys.io/hosts/178.79.164.166
* https://search.censys.io/hosts/178.128.207.34
* https://search.censys.io/hosts/185.62.58.178
* https://search.censys.io/hosts/185.163.48.111
* https://search.censys.io/hosts/185.193.125.146
* https://search.censys.io/hosts/185.200.221.16
* https://search.censys.io/hosts/185.224.129.221
* https://search.censys.io/hosts/185.225.70.149
* https://search.censys.io/hosts/185.227.82.72
* https://search.censys.io/hosts/188.124.41.34
* https://search.censys.io/hosts/188.166.11.107
* https://search.censys.io/hosts/188.166.41.114
* https://search.censys.io/hosts/189.38.106.100
* https://search.censys.io/hosts/190.12.102.167
* https://search.censys.io/hosts/192.52.167.199
* https://search.censys.io/hosts/192.241.193.93
* https://search.censys.io/hosts/193.36.15.249
* https://search.censys.io/hosts/193.42.39.50
* https://search.censys.io/hosts/193.42.39.254
* https://search.censys.io/hosts/193.46.199.253
* https://search.censys.io/hosts/193.105.134.244
* https://search.censys.io/hosts/193.108.4.76
* https://search.censys.io/hosts/193.142.30.29
* https://search.censys.io/hosts/193.149.185.71
* https://search.censys.io/hosts/193.233.133.63
* https://search.censys.io/hosts/194.37.97.138
* https://search.censys.io/hosts/194.67.103.231
* https://search.censys.io/hosts/194.87.236.17
* https://search.censys.io/hosts/194.113.72.148
* https://search.censys.io/hosts/194.113.74.9
* https://search.censys.io/hosts/195.2.67.79
* https://search.censys.io/hosts/196.219.55.74
* https://search.censys.io/hosts/198.98.53.100
* https://search.censys.io/hosts/198.199.108.132
* https://search.censys.io/hosts/198.211.103.135
* https://search.censys.io/hosts/199.44.220.88
* https://search.censys.io/hosts/200.40.79.11
* https://search.censys.io/hosts/201.174.115.4
* https://search.censys.io/hosts/203.41.157.231
* https://search.censys.io/hosts/206.188.197.123
* https://search.censys.io/hosts/206.189.95.62
* https://search.censys.io/hosts/206.189.96.108
* https://search.censys.io/hosts/207.106.237.59
* https://search.censys.io/hosts/207.244.237.10
* https://search.censys.io/hosts/207.246.106.194
* https://search.censys.io/hosts/209.38.206.59
* https://search.censys.io/hosts/209.38.212.41
* https://search.censys.io/hosts/209.38.225.79
* https://search.censys.io/hosts/209.97.156.169
* https://search.censys.io/hosts/209.114.125.120
* https://search.censys.io/hosts/209.222.17.15
* https://search.censys.io/hosts/213.32.72.95
* https://search.censys.io/hosts/213.227.155.89
* https://search.censys.io/hosts/213.227.155.115
* https://search.censys.io/hosts/213.232.235.37
* https://search.censys.io/hosts/216.66.50.242
* https://search.censys.io/hosts/216.120.203.74
* https://search.censys.io/hosts/216.238.108.203
* https://search.censys.io/hosts/216.238.111.216
* https://search.censys.io/hosts/217.69.9.193
* https://search.censys.io/hosts/217.182.253.107
## Literature
The following _articles_ explain our unique predictive cyber threat intelligence:
* [VulDB Cyber Threat Intelligence Documentation](https://vuldb.com/?kb.cti)
* [Cyber Threat Intelligence - Early Anticipation of Attacks](https://www.scip.ch/en/?labs.20201022)
## License
(c) [1997-2023](https://vuldb.com/?kb.changelog) by [vuldb.com](https://vuldb.com/?kb.about). All data on this page is shared under the license [CC BY-NC-SA 4.0](https://creativecommons.org/licenses/by-nc-sa/4.0/). Questions? Check the [FAQ](https://vuldb.com/?kb.faq), read the [documentation](https://vuldb.com/?kb) or [contact us](https://vuldb.com/?contact)!