Publicité (Header Leaderboard)

Rapport IP : 45.80.158.38

Généré le 26/12/2025 10:46
← Retour
NEXUS AI THREAT REPORT
ELEVATED RISK
ANALYSIS INITIATED FOR TARGET: 45.80.158.38.
[STATUS]: TARGET FLAGGED. CONFIDENCE SCORE: 40%.
[INTEL]: Correlated incident reports (2) suggest malicious activity.
[VECTOR]: Potential involvement in automated scanning or brute-force operations.
[VERDICT]: IMMEDIATE MITIGATION/BLOCKING PROTOCOLS RECOMMENDED.
Route: Client → ISP → ASN → Target
Dark Web Leak Radar
Standby

Search for leaks associated with this IP in BreachCompilation, DeepMix, etc.

Stealth Proxy Hunter
Analyze VPN, TOR, and Anonymous Proxy signatures.
Botnet C2 Hunter
AWAITING TARGET ACQUISITION...

Map neighboring IP addresses and identify potential subnet associations.

Vulnerability Lab

Analyze detected services to identify known CVEs.

Identity & Summary
Organization / ISP
1337 Services GmbH
IP Range (CIDR)
45.80.158.0/24
Abuse Contact
Key Dates
Created: 2022-12-21T11:24:42Z
Updated: 2025-04-23T17:54:21Z
Whois Data / Technical Raw Output
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See https://docs.db.ripe.net/terms-conditions.html

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '45.80.158.0 - 45.80.158.255'

% Abuse contact for '45.80.158.0 - 45.80.158.255' is '[email protected]'

inetnum: 45.80.158.0 - 45.80.158.255
netname: LEET-45-80-158-0
country: PL
geofeed: https://rdp.sh/geofeed
org: ORG-SG426-RIPE
admin-c: SGAH9-RIPE
tech-c: SGAH9-RIPE
status: ASSIGNED PA
mnt-by: PREFIXBROKER-MNT
created: 2022-12-21T11:24:42Z
last-modified: 2025-04-23T17:54:21Z
source: RIPE

organisation: ORG-SG426-RIPE
org-name: 1337 Services GmbH
org-type: OTHER
address: Ludwig-Erhard-Str. 18
address: DE-20459 Hamburg
address: Germany
abuse-c: SGAH9-RIPE
mnt-ref: PREFIXBROKER-MNT
mnt-by: PREFIXBROKER-MNT
created: 2022-12-21T11:24:42Z
last-modified: 2022-12-21T11:24:42Z
source: RIPE # Filtered

role: 1337 Services GmbH abuse handling
address: Ludwig-Erhard-Str. 18
address: DE-20459 Hamburg
address: Germany
nic-hdl: SGAH9-RIPE
mnt-by: PREFIXBROKER-MNT
created: 2022-12-21T11:24:42Z
last-modified: 2022-12-21T11:24:42Z
source: RIPE # Filtered
abuse-mailbox: [email protected]

% Information related to '45.80.158.0/24AS201814'

route: 45.80.158.0/24
origin: AS201814
mnt-by: PREFIXBROKER-MNT
created: 2023-02-01T07:56:20Z
last-modified: 2023-02-01T07:56:20Z
source: RIPE

% Information related to '45.80.158.0/24AS210558'

route: 45.80.158.0/24
origin: AS210558
mnt-by: PREFIXBROKER-MNT
created: 2023-02-01T07:56:20Z
last-modified: 2023-02-01T07:56:20Z
source: RIPE

% This query was served by the RIPE Database Query Service version 1.120 (SHETLAND)


Dictionary
ASN

Autonomous System Number (ASN) defines a group of IP networks run by one operator.

Handle

A unique identifier assigned by registrars (RIPE, ARIN) to organizations or contacts.

Associated Domains / Passive DNS
Geolocation & Network
🌍

Loading...

-

ISP Provider
...
Organization
...
ASN
...
Timezone
...
Interactive Map
Risk Index SUSPICIOUS
40%

Malicious Activity Probability

Reports
2
Reporters
1
Report this IP
Analyzing web server...
Latency (Live)
Standby Avg: - ms
Port Scanner

Check common open ports on this host.

AI Analysis & Summary

The IP address 45.80.158.38 is located in PL and is assigned to the Internet Service Provider 1337 Services GmbH. It is part of the network range 45.80.158.0 - 45.80.158.255. This IP has been reported 2 times in our threat database, indicating potential malicious activity. Common activity associated with this network includes brute-force attempts and automated scanning. You can perform a full Port Scan or Whois Lookup to get more details.

IP Abuse Reports for 45.80.158.38:

This IP address has been reported a total of 2 times from 1 distinct sources. 45.80.158.38 was first reported on December 8th 2025, and the most recent report was December 8th 2025.

Reporter Date (UTC) Comment Categories
✔ Log-Hunter 2025-12-08 03:26:16
()
Path: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.ph... | Suspicious UA 'python-requests/2.32.5' probing non-existent paths Bot Scanner SSH
✔ Log-Hunter 2025-12-08 03:26:15
()
Path: /.env... | Detected '/.env' in request URI Sensitive File Scan SSH
ads_placeholder
Historique
No recent search.

Cybersecurity Knowledge Base

Understanding the threats detected by our systems.

SSH Brute Force

An automated attack where a script attempts to guess the password of a Secure Shell (SSH) server by trying thousands of combinations. This is a common method used by botnets to gain unauthorized access to servers.

Port Scanning

The practice of sending packets to specific ports on a host to identify open services. While used by administrators for auditing, it is often the first step in an attack to find vulnerabilities.

Botnet Activity

A network of compromised computers (bots) controlled by a third party. They are often used to coordinate DDoS attacks, send spam, or perform distributed brute-force attacks.

Cyber Security Academy

Learn how to protect your digital identity.

Basics
What is an IP Address?

Understanding the fundamental building block of the internet. Learn how IP addresses work and why every device needs one.

Read Article
Privacy
Protect Your Privacy

Practical steps to secure your connection, use VPNs effectively, and prevent data leaks while browsing.

Read Article