HideMyAss.com

Thursday, 18 July 2013

[Fail2Ban] SSH: banned 62.75.236.14

Hi,

The IP 62.75.236.14 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 62.75.236.14:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '62.75.236.0 - 62.75.236.63'

% Abuse contact for '62.75.236.0 - 62.75.236.63' is 'abuse@plusserver.de'

inetnum: 62.75.236.0 - 62.75.236.63
descr: BSB-SERVICE Dedicated Server Hosting
netname: BSB-SERVICE-1
country: DE
org: ORG-BSBS1-RIPE
admin-c: NPA10-RIPE
tech-c: NPA10-RIPE
remarks: rev-srv: ptr1.intergenia.de
remarks: rev-srv: ptr2.intergenia.de
status: ASSIGNED PA
remarks: Abuse-Contact: abuse@ip-pool.com
mnt-by: BSB-SERVICE-MNT
source: RIPE # Filtered

organisation: ORG-BSBS1-RIPE
org-name: B S B - Service GmbH
org-type: OTHER
descr: Internet-Hoster
remarks: BSB Service GmbH is part of intergenia AG
address: Daimlerstr.9-11
address: 50354 Huerth
address: Germany
phone: +49 2233 612-0
fax-no: +49 2233 612-144
admin-c: NPA10-RIPE
tech-c: NPA10-RIPE
mnt-ref: INTERGENIA-MNT
mnt-by: INTERGENIA-MNT
source: RIPE # Filtered

role: NMC PlusServer AG
address: PlusServer AG
address: Daimlerstr. 9-11
address: 50354 Huerth
phone: +49 1801 119991
fax-no: +49 2233 612-53500
abuse-mailbox: abuse@plusserver.de
remarks:
remarks: ********************************************************
remarks: * PLEASE READ CAREFULLY: *
remarks: * and choose the right addresses for contacting our *
remarks: * staff. *
remarks: * This will fasten up processing your request ! *
remarks: ********************************************************
remarks: * ABUSE-Complaints are only handled at: *
remarks: * ABUSE@plusserver.de *
remarks: ********************************************************
remarks: * Auskunftsersuchen gemaess TKG werden nur unter *
remarks: * Fax: +49 2233 612 5150 *
remarks: * bearbeitet! *
remarks: ********************************************************
remarks: * Informational Contact: info@plusserver.de *
remarks: * or http://www.plusserver.de *
remarks: ********************************************************
remarks:
remarks: ********************************************************
remarks: * If you have a routing-related request you *
remarks: * may contact us at : *
remarks: * Fax: +49 2233 612 53500 *
remarks: * Phone: +49 2233 612 3500 *
remarks: * *
remarks: ********************************************************
remarks:
admin-c: JBPS-RIPE
tech-c: CDPS-RIPE
tech-c: ADPS-RIPE
tech-c: MOPS1337-RIPE
nic-hdl: NPA10-RIPE
mnt-by: INTERGENIA-MNT
source: RIPE # Filtered

% Information related to '62.75.128.0/17AS8972'

route: 62.75.128.0/17
descr: Plusserver AG
origin: AS8972
mnt-by: INTERGENIA-MNT
mnt-lower: INTERGENIA-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.66.3 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 219.148.120.238

Hi,

The IP 219.148.120.238 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 219.148.120.238:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net node-7]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 219.148.0.0 - 219.148.159.255
netname: CHINANET-HE
descr: CHINANET hebei province network
descr: China Telecom
descr: No.31,jingrong street
descr: Beijing 100032
country: CN
admin-c: CH93-AP
tech-c: BR3-AP
status: ALLOCATED NON-PORTABLE
changed: ipadmin@north.cn.net 20060526
mnt-by: MAINT-CHINANET
mnt-lower: MAINT-CHINANET-HE
mnt-routes: MAINT-CHINANET-HE
source: APNIC

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

person: Bin Ren
nic-hdl: BR3-AP
e-mail: hostmaster@hbtele.com
address: NO.69 KunLun avenue, Shijiazhuang 050000 China
phone: +86-311-85211771
fax-no: +86-311-85202145
country: CN
changed: renbin@hbtele.com 20060606
mnt-by: MAINT-CHINANET-HE
source: APNIC

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 122.49.119.206

Hi,

The IP 122.49.119.206 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 122.49.119.206:

[Querying whois.apnic.net]
[Redirected to whois.nic.or.kr]
[Querying whois.nic.or.kr]
[whois.nic.or.kr]
query: 122.49.119.206

# KOREAN(UTF8)

조회하ì&lsqauo;  IPv4주소ëŠ" 한국인터넷진흥원으로부터 아래의 관리대행자에게 í• ë&lsqauo;¹ë˜ì—ˆìœ¼ë©°, í• ë&lsqauo;¹ ì •ë³´ëŠ" ë&lsqauo;¤ìŒê³¼ 같습ë&lsqauo;ˆë&lsqauo;¤.

[ 네트워크 í• ë&lsqauo;¹ ì •ë³´ ]
IPv4주소 : 122.49.112.0 - 122.49.119.255 (/21)
서비스명 : PIRANHA
기관명 : í"¼ëž€í•˜ì&lsqauo;œìŠ¤í…œì¦ˆ
기관고유번호 : ORG840185
주소 : 인천 연수구 송도동 송도미래로 30 스마트밸리 지ì&lsqauo;ì‚°ì—…센터 C-2513
우편번호 : 406-840
í• ë&lsqauo;¹ì¼ìž : 20060605

[ IPv4주소 책임자 정보 ]
이름 : 홍소연
ì „í™"번호 : +82-2-1644-7568
전자우편 : noc@piranha.co.kr

[ IPv4주소 ë&lsqauo;´ë&lsqauo;¹ìž ì •ë³´ ]
이름 : 홍소연
ì „í™"번호 : +82-2-1644-7568
전자우편 : noc@piranha.co.kr

[ 스팸 해킹 ë&lsqauo;´ë&lsqauo;¹ìž ì •ë³´ ]
이름 : 홍소연
ì „í™"번호 : +82-2-1644-7568
전자우편 : noc@piranha.co.kr

--------------------------------------------------------------------------------

조회하ì&lsqauo;  IPv4주소ëŠ" 위의 관리대행자로부터 아래의 사용자에게 í• ë&lsqauo;¹ë˜ì—ˆìœ¼ë©°, í• ë&lsqauo;¹ ì •ë³´ëŠ" ë&lsqauo;¤ìŒê³¼ 같습ë&lsqauo;ˆë&lsqauo;¤.

[ 네트워크 í• ë&lsqauo;¹ ì •ë³´ ]
IPv4주소 : 122.49.112.0 - 122.49.119.255 (/21)
네트워크 이름 : PIRANHA-II
기관명 : í"¼ëž€í•˜ì&lsqauo;œìŠ¤í…œì¦ˆ
기관고유번호 : ORG791975
주소 : 인천 남구 주안동
우편번호 : 402-200
í• ë&lsqauo;¹ë‚´ì—­ ë"±ë¡ì¼ : 20060623
공개여부 : N

[ 네트워크 ë&lsqauo;´ë&lsqauo;¹ìž ì •ë³´ ]
기관명 : í"¼ëž€í•˜ì&lsqauo;œìŠ¤í…œì¦ˆ
주소 : 인천 남구 주안동
우편번호 : 402-200
전자우편 : hsw@piranha.co.kr


# ENGLISH

KRNIC is not an ISP but a National Internet Registry similar to APNIC.

[ Network Information ]
IPv4 Address : 122.49.112.0 - 122.49.119.255 (/21)
Service Name : PIRANHA
Organization Name : Piranha Systems
Organization ID : ORG840185
Address : Songdomirae-ro 30, Song-Do Smart Valley C-2513, Songdo-dong Yeonsu-gu Incheon
Zip Code : 406-840
Registration Date : 20060605

[ Admin Contact Information ]
Name : So Yeon Hong
Phone : +82-2-1644-7568
E-Mail : noc@piranha.co.kr

[ Tech Contact Information ]
Name : So Yeon Hong
Phone : +82-2-1644-7568
E-Mail : noc@piranha.co.kr

[ Network Abuse Contact Information ]
Name : So Yeon Hong
Phone : +82-2-1644-7568
E-Mail : noc@piranha.co.kr

--------------------------------------------------------------------------------

More specific assignment information is as follows.

[ Network Information ]
IPv4 Address : 122.49.112.0 - 122.49.119.255 (/21)
Network Name : PIRANHA-II
Organization Name : PIRANHA
Organization ID : ORG791975
Address : Juan-dong Nam-gu INCHEON
Zip Code : 402-200
Registration Date : 20060623
Publishes : N

[ Technical Contact Information ]
Organization Name : PIRANHA
Address : Juan-dong Nam-gu INCHEON
Zip Code : 402-200
E-Mail : hsw@piranha.co.kr


상기 ì •ë³´ëŠ" UTF-8 인ì½"ë"©ë˜ì–´ 서비스되고 있습ë&lsqauo;ˆë&lsqauo;¤.
EUC-KR 인ì½"ë"© 서비스ëŠ" oldwhois.kisa.or.kr에서 서비스 되고 있습ë&lsqauo;ˆë&lsqauo;¤.
The above information is encoded with UTF-8
EUC-KR encoding WHOIS is being serviced in this URL:oldwhois.kisa.or.kr

- KISA/KRNIC Whois Service -

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 199.195.212.145

Hi,

The IP 199.195.212.145 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 199.195.212.145:

[Querying whois.arin.net]
[whois.arin.net]

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#


#
# Query terms are ambiguous. The query is assumed to be:
# "n 199.195.212.145"
#
# Use "?" to get help.
#

#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=199.195.212.145?showDetails=true&showARIN=false&ext=netref2
#

NetRange: 199.195.212.0 - 199.195.215.255
CIDR: 199.195.212.0/22
OriginAS: AS26272
NetName: FUC-US-1001
NetHandle: NET-199-195-212-0-1
Parent: NET-199-0-0-0-0
NetType: Direct Allocation
RegDate: 2012-06-04
Updated: 2012-06-04
Ref: http://whois.arin.net/rest/net/NET-199-195-212-0-1

OrgName: FortaTrust USA Corporation
OrgId: FUC-9
Address: 3701 NW 82 Ave.
City: Doral
StateProv: FL
PostalCode: 33166
Country: US
RegDate: 2012-03-08
Updated: 2012-06-05
Ref: http://whois.arin.net/rest/org/FUC-9

OrgTechHandle: IPADM602-ARIN
OrgTechName: IP Admin
OrgTechPhone: +1-954-369-0574
OrgTechEmail: ipadmin@fortatrust.com
OrgTechRef: http://whois.arin.net/rest/poc/IPADM602-ARIN

OrgAbuseHandle: IPADM602-ARIN
OrgAbuseName: IP Admin
OrgAbusePhone: +1-954-369-0574
OrgAbuseEmail: ipadmin@fortatrust.com
OrgAbuseRef: http://whois.arin.net/rest/poc/IPADM602-ARIN

OrgNOCHandle: IPADM602-ARIN
OrgNOCName: IP Admin
OrgNOCPhone: +1-954-369-0574
OrgNOCEmail: ipadmin@fortatrust.com
OrgNOCRef: http://whois.arin.net/rest/poc/IPADM602-ARIN


#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 194.149.136.62

Hi,

The IP 194.149.136.62 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 194.149.136.62:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '194.149.136.0 - 194.149.137.255'

% Abuse contact for '194.149.136.0 - 194.149.137.255' is 'ukc@ukim.edu.mk'

inetnum: 194.149.136.0 - 194.149.137.255
netname: UKIM-FINKI-NET
descr: FACULTY OF COMPUTER SCIENCE AND ENGINEERING
country: MK
admin-c: VA834-RIPE
tech-c: KK2728-RIPE
status: ASSIGNED PA
mnt-by: UKIM-MNT
source: RIPE # Filtered

person: Kiril Kkiroski
address: Prirodno matematicki fakultet
address: Institut za informatika
address: Gazi Baba b.b.
address: 1000 Skopje, MACEDONIA
phone: +389 2 3 249 761
nic-hdl: KK2728-RIPE
mnt-by: UKIM-MNT
source: RIPE # Filtered

person: Vangel Ajanovski
address: Prirodno matematicki fakultet
address: Institut za informatika
address: Gazi Baba b.b.
address: 1000 Skopje, MACEDONIA
phone: +389 2 3 162 078
nic-hdl: VA834-RIPE
mnt-by: UKIM-MNT
source: RIPE # Filtered

% Information related to '194.149.128.0/19AS5379'

route: 194.149.128.0/19
descr: UKiM-IPv4
origin: AS5379
mnt-by: UKIM-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.66.3 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 202.70.136.74

Hi,

The IP 202.70.136.74 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 202.70.136.74:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net node-2]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 202.70.136.0 - 202.70.136.255
netname: DEPKES-ID
descr: Departemen Kesehatan
descr: Government / Direct Member IDNIC
descr: Jl. HR Rasuna Said BLK X5 Kav 4-9
descr: Kuningan Timur
descr: Jakarta
country: ID
admin-c: WT175-AP
tech-c: WT175-AP
remarks: Send Spam & Abuse Reports to: wasisto@telkom.co.id
mnt-by: MNT-APJII-ID
mnt-routes: MAINT-ID-DEPKES
status: ASSIGNED PORTABLE
changed: hm-changed@apnic.net 20100219
source: APNIC

person: Wasisto Tririno R
nic-hdl: WT175-AP
e-mail: wasisto@telkom.co.id
address: Menara Multimedia lt. 4
address: Jl Kebon Sirih No. 12
address: DKI Jakarta
phone: +62-21-70255504
fax-no: +62-21-3864004
country: ID
changed: hostmaster@idnic.net 20100212
mnt-by: MAINT-NEW
source: APNIC

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 219.148.120.238

Hi,

The IP 219.148.120.238 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 219.148.120.238:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net node-3]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 219.148.0.0 - 219.148.159.255
netname: CHINANET-HE
descr: CHINANET hebei province network
descr: China Telecom
descr: No.31,jingrong street
descr: Beijing 100032
country: CN
admin-c: CH93-AP
tech-c: BR3-AP
status: ALLOCATED NON-PORTABLE
changed: ipadmin@north.cn.net 20060526
mnt-by: MAINT-CHINANET
mnt-lower: MAINT-CHINANET-HE
mnt-routes: MAINT-CHINANET-HE
source: APNIC

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

person: Bin Ren
nic-hdl: BR3-AP
e-mail: hostmaster@hbtele.com
address: NO.69 KunLun avenue, Shijiazhuang 050000 China
phone: +86-311-85211771
fax-no: +86-311-85202145
country: CN
changed: renbin@hbtele.com 20060606
mnt-by: MAINT-CHINANET-HE
source: APNIC

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 115.168.43.158

Hi,

The IP 115.168.43.158 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 115.168.43.158:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net node-4]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 115.168.0.0 - 115.171.255.255
netname: CHINANET-CDMA
descr: CHINANET CDMA NETWORK
descr: China Telecom
descr: No.31,jingrong street
descr: Beijing 100032
country: CN
admin-c: CH93-AP
tech-c: CA67-AP
remarks: service provider
status: ALLOCATED PORTABLE
mnt-by: APNIC-HM
mnt-lower: MAINT-CHINANET
mnt-routes: MAINT-CHINANET
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
changed: hm-changed@apnic.net 20080825
source: APNIC

route: 115.168.0.0/14
descr: CHINANET CDMA NETWORK
origin: AS4809
mnt-by: MAINT-CHINANET
changed: chenyiq@gsta.com 20121212
source: APNIC

role: CHINANETFJ IP ADMIN
address: 7,East Street,Fuzhou,Fujian,PRC
country: CN
phone: +86-591-83309761
fax-no: +86-591-83371954
e-mail: fjnic@fjdcb.fz.fj.cn
remarks: send spam reports and abuse reports
remarks: to abuse@fjdcb.fz.fj.cn
remarks: Please include detailed information and
remarks: times in UTC
admin-c: FH71-AP
tech-c: FH71-AP
nic-hdl: CA67-AP
remarks: www.fjtelecom.com
notify: fjnic@fjdcb.fz.fj.cn
mnt-by: MAINT-CHINANET-FJ
changed: fjnic@fjdcb.fz.fj.cn 20100108
source: APNIC
changed: hm-changed@apnic.net 20111114

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

Regards,

Fail2Ban