197.251.240.108 Fraud Risk

Very high Risk
← Lowest Risk
Highest Risk →
0
Fraud Score: 100
100
We consider ​web traffic​ from IP address ​197.251.240.108​ to present a potentially very high fraud risk. This IP address is operated by whose web traffic we ​consider to present a potentially ​high​ fraud risk, and is owned by ​Vodafone Ghana​ whose web traffic we​ consider to present a potentially ​very high​ fraud risk. In each of these cases, non-web traffic may present a different risk or no risk at all. According to our most recent port scan, the IP address points to a server running the SSH server OpenSSH 8.2p1 Ubuntu 4ubuntu0.3 (Ubuntu Linux; protocol 2.0) on port 22. Scamalytics see medium levels of web traffic from this IP address across our global network, ​almost all of which we suspect to be potentially fraudulent. Considering only the web traffic where we have visibility, we apply a risk score of 100​/100 to 197.251.240.108​, which reflects the proportion of this traffic which we suspect to be potentially fraudulent. If you see web traffic from this IP address there is potentially a very high risk that it is criminals engaged in fraudulent activity. Other types of traffic may present a different risk or no risk.
IP Fraud Risk API
{
  "ip":"197.251.240.108",
  "score":"100",
  "risk":"very high"
}
        
Click here for details of our free usage tier, free trial, and pricing information.
Operator
Hostname n/a
ASN 29614 - GHANATEL-AS
ISP Name Vodafone Ghana
Organization Name n/a
Connection type wireless
Location
Country Name Ghana
Country Code GH
Region Volta
City Kete Krachi
Postal Code n/a
Metro Code n/a
Area Code n/a
Latitude 7.7939
Longitude -0.0498
Port Scan
TCP
81/hosts2-ns
Closed
TCP
8000/ipcam
Open
Hikvision IPCam control port
TCP
23/telnet
Filtered
TCP
22/ssh
Open
OpenSSH 8.2p1 Ubuntu 4ubuntu0.3 (Ubuntu Linux; protocol 2.0)
TCP
53/tcpwrapped
Open
TCP
80/http
Open
nginx 1.18.0
TCP
443/ssl/http
Open
nginx 1.18.0
TCP
9100/jetdirect
Filtered
TCP
389/ldap
Closed
TCP
990/ftps
Closed
TCP
111/rpcbind
Open
2-4 (RPC #100000)
TCP
3128/http
Open
Proxmox Virtual Environment REST API 3.0
TCP
5432/postgresql
Open
PostgreSQL DB 9.6.0 or later
TCP
25/smtp
Filtered
TCP
465/smtps
Filtered
TCP
587/submission
Filtered
TCP
135/msrpc
Filtered
TCP
139/netbios-ssn
Filtered
TCP
445/microsoft-ds
Filtered
TCP
49152/unknown
Closed
TCP
49153/unknown
Closed
TCP
49154/unknown
Closed
TCP
49156/unknown
Closed
TCP
49157/unknown
Closed
TCP
32768/filenet-tms
Closed
TCP
49155/unknown
Closed
TCP
113/ident
Closed
TCP
8008/http
Open
Tor built-in httpd (DirPortFrontPage configured)
TCP
8443/http
Open
Tor built-in httpd (DirPortFrontPage configured)
TCP
646/ldp
Filtered
TCP
444/ssl/snpp?
Open
Proxies
Anonymizing VPN
No
Tor Exit Node
No
Server
No
Public Proxy
No
Web Proxy
No
Search Engine Robot
No
Domain Names
n/a

IP Address data partner DB-IP.com:

Proxy data sponsored by IP2Proxy:

IMPORTANT: Scamalytics Ltd operate a fraud-detection network with visibility into many millions of internet users per month. We do not have visibility into the entire internet. The statements on this page represent our opinion based on the limited information we have available to us, and specifically only cover web connections made by internet users to websites and applications, not other connections such as server to server connections.