HideMyAss.com

Wednesday, 25 September 2013

[Fail2Ban] SSH: banned 195.14.104.8

Hi,

The IP 195.14.104.8 has just been banned by Fail2Ban after
6 attempts against SSH.


Here are more information about 195.14.104.8:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '195.14.104.0 - 195.14.105.255'

inetnum: 195.14.104.0 - 195.14.105.255
netname: HORT-NET
descr: Hosting and Colocation Services
country: RU
org: ORG-HORT1-RIPE
admin-c: DH2916-RIPE
tech-c: DH2916-RIPE
status: ASSIGNED PI
mnt-by: RIPE-NCC-END-MNT
mnt-by: HORT-MNT
mnt-lower: RIPE-NCC-END-MNT
mnt-routes: HORT-MNT
mnt-routes: TEL-NET-MNT
mnt-domains: HORT-MNT
source: RIPE # Filtered
remarks: +----------------------------------------------------------------+
remarks: ! Operation time: !
remarks: ! NOC: 5x8 (09:00-18:00) MSK !
remarks: ! customers support: 24x7 !
remarks: +----------------------------------------------------------------+
remarks: ! Contacts: !
remarks: ! noc@htc-s.ru - for routing and peering questions !
remarks: ! abuse@htc-s.ru - for SPAM and abuse security issues !
remarks: ! sales@htc-s.ru - for sales questions !
remarks: ! http://www.htc-s.ru - official site.... !
remarks: +----------------------------------------------------------------+

organisation: ORG-HORT1-RIPE
org-name: LTD "HORTTEL"
org-type: OTHER
address: 109652, Russia, Moscow, Dekabrystov str. 10, k. 1, 4
phone: +7 499 506 9689
abuse-mailbox: abuse@htc-s.ru
mnt-ref: HORT-MNT
mnt-by: HORT-MNT
source: RIPE # Filtered

person: Dmitriy V. Hort
address: 109652, Russia, Moscow, Lugovoy str. 4
phone: +7 499 506 9689
phone: +7 915 000 7402
nic-hdl: DH2916-RIPE
mnt-by: HORT-MNT
source: RIPE # Filtered

% Information related to '195.14.104.0/23as56504'

route: 195.14.104.0/23
descr: HORTTEL
origin: as56504
mnt-by: hort-mnt
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.69 (WHOIS2)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 101.78.191.242

Hi,

The IP 101.78.191.242 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 101.78.191.242:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '101.78.128.0 - 101.78.255.255'

inetnum: 101.78.128.0 - 101.78.255.255
netname: NEWTT-AS-AP
descr: Wharf T&T Limited
descr: 11/F, Telecom Tower,
descr: Wharf T&T Square, 123 Hoi Bun Road
descr: Kwun Tong, Kowloon
country: HK
admin-c: EN62-AP
tech-c: BW128-AP
mnt-by: APNIC-HM
mnt-lower: MAINT-HK-NEWTT
mnt-routes: MAINT-HK-NEWTT
mnt-irt: IRT-NEWTT-HK
status: ALLOCATED PORTABLE
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
changed: hm-changed@apnic.net 20111116
source: APNIC

irt: IRT-NEWTT-HK
address: Unit 825-876, 8/F, KITEC, 1 Trademart Drive, Kowloon Bay, Hong Kong
e-mail: abuse@wharftt.com
abuse-mailbox: abuse@wharftt.com
admin-c: EN62-AP
tech-c: BW128-AP
auth: # Filtered
mnt-by: MAINT-HK-BENSONWONG
changed: abuse@wharftt.com 20101111
source: APNIC

person: Benson Wong
nic-hdl: BW128-AP
e-mail: abuse@wharftt.com
address: 5/F, Harbour City, Kowloon,
address: Hong Kong
phone: +852-21122651
fax-no: +852-21127883
country: HK
changed: bensonwong@wharftt.com 20070420
mnt-by: MAINT-HK-NEWTT
source: APNIC

person: Eric Ng
nic-hdl: EN62-AP
remarks: please report spam or abuse to abuse@wharftt.com
e-mail: abuse@wharftt.com
e-mail: ericng@wharftt.com
address: 11/F Telecom Tower, Wharf T&T Square
address: 123 Hoi Bun Road, Kwun Tong,'
phone: +852-2112-2653
fax-no: +852-2112-7883
country: HK
changed: ericng@wharftt.com 20070716
mnt-by: MAINT-NEW
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 82.142.159.68

Hi,

The IP 82.142.159.68 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 82.142.159.68:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '82.142.128.0 - 82.142.191.255'

% Abuse contact for '82.142.128.0 - 82.142.191.255' is 'abuse@b2b.beeline.ru'

inetnum: 82.142.128.0 - 82.142.191.255
netname: RU-SOVINTEL-20030909
descr: OJSC "Vimpelcom"
country: RU
org: ORG-ES15-RIPE
admin-c: SVNT2-RIPE
tech-c: SVNT1-RIPE
status: ALLOCATED PA
mnt-by: RIPE-NCC-HM-MNT
mnt-lower: SOVINTEL-MNT
mnt-lower: TEL-MNT
mnt-routes: SOVINTEL-MNT
source: RIPE # Filtered

organisation: ORG-ES15-RIPE
org-name: OJSC "Vimpelcom"
org-type: LIR
address: OJSC "Vimpelcom" (former CJSC "EDN Sovintel")
address: Dmitry Menzulskiy
address: 1 Kozhevnichesky proezd
address: 115114
address: Moscow
address: RUSSIAN FEDERATION
phone: +7 495 7871000
fax-no: +7 495 7871990
admin-c: SVNT2-RIPE
admin-c: SVNT1-RIPE
admin-c: AS2451-RIPE
admin-c: IAI1-RIPE
admin-c: RJ631-RIPE
admin-c: AK644-RIPE
admin-c: BEE15-RIPE
admin-c: JM12519-ripe
mnt-ref: SOVINTEL-MNT
mnt-ref: RIPE-NCC-HM-MNT
mnt-by: RIPE-NCC-HM-MNT
abuse-c: SVNT2-RIPE
source: RIPE # Filtered

role: Sovintel NOC
remarks: now OJSC Vimpelcom - formely Sovam Teleport/Teleross
remarks: aka Sovintel - Golden Telecom
address: Krasnokazarmennaya, 12
address: Moscow, Russia
mnt-by: SOVINTEL-MNT
org: ORG-ES15-RIPE
fax-no: +7 495 7871010
phone: +7 495 7871000
abuse-mailbox: abuse@b2b.beeline.ru
admin-c: IAI1-RIPE
admin-c: AS2451-RIPE
tech-c: MAK18-RIPE
tech-c: AS2451-RIPE
tech-c: rj631-ripe
nic-hdl: SVNT1-RIPE
source: RIPE # Filtered

role: Sovintel Abuse Department
remarks: now Vimpelcom Business Abuse Department
address: 111250 Russia Moscow, Krasnokazarmennaya, 12
org: ORG-ES15-RIPE
fax-no: +7 495 7254300
phone: +7 495 7871000
nic-hdl: SVNT2-RIPE
admin-c: SVNT1-RIPE
tech-c: SVNT1-RIPE
mnt-by: SOVINTEL-MNT
source: RIPE # Filtered
abuse-mailbox: abuse@b2b.beeline.ru

% Information related to '82.142.128.0/18AS8350'

route: 82.142.128.0/18
descr: COMBELNET
origin: AS8350
mnt-by: COMBELLGA-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.69 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 195.14.104.8

Hi,

The IP 195.14.104.8 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 195.14.104.8:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '195.14.104.0 - 195.14.105.255'

inetnum: 195.14.104.0 - 195.14.105.255
netname: HORT-NET
descr: Hosting and Colocation Services
country: RU
org: ORG-HORT1-RIPE
admin-c: DH2916-RIPE
tech-c: DH2916-RIPE
status: ASSIGNED PI
mnt-by: RIPE-NCC-END-MNT
mnt-by: HORT-MNT
mnt-lower: RIPE-NCC-END-MNT
mnt-routes: HORT-MNT
mnt-routes: TEL-NET-MNT
mnt-domains: HORT-MNT
source: RIPE # Filtered
remarks: +----------------------------------------------------------------+
remarks: ! Operation time: !
remarks: ! NOC: 5x8 (09:00-18:00) MSK !
remarks: ! customers support: 24x7 !
remarks: +----------------------------------------------------------------+
remarks: ! Contacts: !
remarks: ! noc@htc-s.ru - for routing and peering questions !
remarks: ! abuse@htc-s.ru - for SPAM and abuse security issues !
remarks: ! sales@htc-s.ru - for sales questions !
remarks: ! http://www.htc-s.ru - official site.... !
remarks: +----------------------------------------------------------------+

organisation: ORG-HORT1-RIPE
org-name: LTD "HORTTEL"
org-type: OTHER
address: 109652, Russia, Moscow, Dekabrystov str. 10, k. 1, 4
phone: +7 499 506 9689
abuse-mailbox: abuse@htc-s.ru
mnt-ref: HORT-MNT
mnt-by: HORT-MNT
source: RIPE # Filtered

person: Dmitriy V. Hort
address: 109652, Russia, Moscow, Lugovoy str. 4
phone: +7 499 506 9689
phone: +7 915 000 7402
nic-hdl: DH2916-RIPE
mnt-by: HORT-MNT
source: RIPE # Filtered

% Information related to '195.14.104.0/23as56504'

route: 195.14.104.0/23
descr: HORTTEL
origin: as56504
mnt-by: hort-mnt
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.69 (WHOIS3)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 173.242.122.34

Hi,

The IP 173.242.122.34 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 173.242.122.34:

[Querying whois.arin.net]
[whois.arin.net]

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#


#
# Query terms are ambiguous. The query is assumed to be:
# "n 173.242.122.34"
#
# Use "?" to get help.
#

#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=173.242.122.34?showDetails=true&showARIN=false&ext=netref2
#

NetRange: 173.242.112.0 - 173.242.127.255
CIDR: 173.242.112.0/20
OriginAS: AS46664
NetName: VOLUMEDRIVE
NetHandle: NET-173-242-112-0-1
Parent: NET-173-0-0-0-0
NetType: Direct Allocation
Comment: http://www.volumedrive.com
RegDate: 2010-05-06
Updated: 2012-03-02
Ref: http://whois.arin.net/rest/net/NET-173-242-112-0-1

OrgName: VolumeDrive
OrgId: VOLUM-2
Address: 1143 Northern Blvd
City: Clarks Summit
StateProv: PA
PostalCode: 18411
Country: US
RegDate: 2008-08-26
Updated: 2011-09-24
Ref: http://whois.arin.net/rest/org/VOLUM-2

OrgTechHandle: VOLUM1-ARIN
OrgTechName: VolumeDrive POC
OrgTechPhone: +1-862-266-1083
OrgTechEmail: info@volumedrive.com
OrgTechRef: http://whois.arin.net/rest/poc/VOLUM1-ARIN

OrgAbuseHandle: VOLUM1-ARIN
OrgAbuseName: VolumeDrive POC
OrgAbusePhone: +1-862-266-1083
OrgAbuseEmail: info@volumedrive.com
OrgAbuseRef: http://whois.arin.net/rest/poc/VOLUM1-ARIN

RTechHandle: VOLUM1-ARIN
RTechName: VolumeDrive POC
RTechPhone: +1-862-266-1083
RTechEmail: info@volumedrive.com
RTechRef: http://whois.arin.net/rest/poc/VOLUM1-ARIN

RAbuseHandle: VOLUM-ARIN
RAbuseName: VolumeDrive
RAbusePhone: +1-862-266-1083
RAbuseEmail: info@volumedrive.com
RAbuseRef: http://whois.arin.net/rest/poc/VOLUM-ARIN

RNOCHandle: VOLUM-ARIN
RNOCName: VolumeDrive
RNOCPhone: +1-862-266-1083
RNOCEmail: info@volumedrive.com
RNOCRef: http://whois.arin.net/rest/poc/VOLUM-ARIN


#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 213.244.81.220

Hi,

The IP 213.244.81.220 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 213.244.81.220:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '213.244.64.0 - 213.244.127.255'

inetnum: 213.244.64.0 - 213.244.127.255
descr: Palestine Telecommunications Company (PALTEL)
org: ORG-PTC2-RIPE
netname: PS-PALTEL-20010418
country: PS
admin-c: RA2887-RIPE
tech-c: RA2887-RIPE
status: ALLOCATED PA
mnt-by: RIPE-NCC-HM-MNT
mnt-lower: PALTEL-MNTNER
mnt-routes: PALTEL-MNTNER
remarks: Abuse complaints to be sent to abuse@paltel.net
source: RIPE # Filtered

organisation: ORG-PTC2-RIPE
org-name: Palestine Telecommunications Company (PALTEL)
org-type: LIR
address: Palestine Telecommunications (PALTEL) Khaled Sayeh Rafeedya St. 1570 Nablus PALESTINIAN TERRITORY, OCCUPIED
phone: +970 9 2376 225
fax-no: +970 9 2376 227
mnt-ref: PALTEL-MNTNER
mnt-ref: RIPE-NCC-HM-MNT
mnt-by: RIPE-NCC-HM-MNT
admin-c: WH185-RIPE
admin-c: RZ2064-RIPE
admin-c: RA2887-RIPE
admin-c: KA1290-RIPE
source: RIPE # Filtered

person: Ripe Admin-PALTEL
address: PALTEL HDQ
address: Rafeedya St.
address: P.O.Box 1570, Nablus,
address: Palestine.
phone: + 970 9 2376225
fax-no: + 970 9 2376227
nic-hdl: RA2887-RIPE
mnt-by: PALTEL-MNTNER
source: RIPE # Filtered

% Information related to '213.244.80.0/22AS12975'

route: 213.244.80.0/22
descr: PALTEL (Palestine Telecommunications Co.).
origin: AS12975
mnt-by: PALTEL-MNTNER
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.69 (WHOIS2)

Regards,

Fail2Ban