209.141.58.92 Fraud Risk

Very high Risk
← Lowest Risk
Highest Risk →
0
Fraud Score: 100
100
We consider web traffic from IP address 209.141.58.92 to present a potentially very high fraud risk. This IP address is owned by FranTech Solutions whose web traffic we consider to present a potentially medium risk. In both cases, non-web traffic may present a different risk or no risk at all. According to our most recent port scan, the IP address points to a server running the SSH server OpenSSH 7.4 (protocol 2.0) on port 22. Scamalytics see medium levels of web traffic from this IP address across our global network, almost all of which we suspect to be potentially fraudulent. Considering only the web traffic where we have visibility, we apply a risk score of 100/100 to 209.141.58.92, which reflects the proportion of this traffic which we suspect to be potentially fraudulent. If you see web traffic from this IP address there is potentially a very high risk that it is criminals engaged in fraudulent activity. Other types of traffic may present a different risk or no risk. The device on 209.141.58.92 is operating an anonymising VPN, which could be proxying traffic from another geographical location. The geographical location of 209.141.58.92 is in the United States, however the geographical location of the user could be anywhere in the world.
IP Fraud Risk API
{
  "ip":"209.141.58.92",
  "score":"100",
  "risk":"very high"
}
        
Click here for details of our free usage tier, free trial, and pricing information.
Operator
Hostname slavik.in
ASN 53667 - PONYNET - FranTech Solutions
ISP Name FranTech Solutions
Organization Name FranTech Solutions
Connection type n/a
Location
Country Name United States
Country Code US
Region Nevada
City Las Vegas
Postal Code 89111
Metro Code n/a
Area Code n/a
Latitude 36.1699
Longitude -115.1400
Port Scan
TCP
7/echo?
Open
TCP
9/discard?
Open
TCP
13/daytime?
Open
TCP
21/ftp?
Open
TCP
22/ssh
Open
OpenSSH 7.4 (protocol 2.0)
TCP
23/telnet?
Open
TCP
25/smtp
Filtered
TCP
26/rsftp?
Open
TCP
37/time?
Open
TCP
53/domain?
Open
TCP
79/finger?
Open
TCP
80/http
Open
TCP
81/http
Open
nginx 1.20.1
TCP
88/kerberos-sec?
Open
TCP
106/pop3pw?
Open
TCP
110/pop3?
Open
TCP
111/rpcbind?
Open
TCP
113/ident?
Open
TCP
119/nntp?
Open
TCP
135/msrpc?
Open
TCP
139/netbios-ssn?
Open
TCP
143/imap?
Open
TCP
144/news?
Open
TCP
179/bgp?
Open
TCP
199/smux?
Open
TCP
389/ldap?
Open
TCP
427/svrloc?
Open
TCP
443/https
Open
TCP
444/snpp?
Open
TCP
445/microsoft-ds?
Open
TCP
465/smtps
Filtered
TCP
513/login?
Open
TCP
514/shell?
Open
TCP
515/printer?
Open
TCP
543/klogin?
Open
TCP
544/kshell?
Open
TCP
548/afp?
Open
TCP
554/rtsp?
Open
TCP
587/submission
Filtered
TCP
631/ipp?
Open
TCP
646/ldp
Filtered
TCP
873/rsync?
Open
TCP
990/ftps?
Open
TCP
993/imaps?
Open
TCP
995/pop3s?
Open
TCP
1025/NFS-or-IIS?
Open
TCP
1026/LSA-or-nterm?
Open
TCP
1027/IIS?
Open
TCP
1028/unknown
Open
TCP
1029/ms-lsa?
Open
TCP
1110/nfsd-status?
Open
TCP
1433/ms-sql-s?
Open
TCP
1720/h323q931?
Open
TCP
1723/pptp?
Open
TCP
1755/wms?
Open
TCP
1900/upnp?
Open
TCP
2000/cisco-sccp?
Open
TCP
2001/dc?
Open
TCP
2049/nfs?
Open
TCP
2121/ccproxy-ftp?
Open
TCP
2717/pn-requester?
Open
TCP
3000/ppp?
Open
TCP
3128/squid-http?
Open
TCP
3306/mysql?
Open
TCP
3389/ms-wbt-server?
Open
TCP
3986/mapper-ws_ethd?
Open
TCP
4899/radmin?
Open
TCP
5000/upnp?
Open
TCP
5009/airport-admin?
Open
TCP
5051/ida-agent?
Open
TCP
5060/sip?
Open
TCP
5101/admdog?
Open
TCP
5190/aol?
Open
TCP
5357/wsdapi?
Open
TCP
5432/postgresql?
Open
TCP
5631/pcanywheredata?
Open
TCP
5666/nrpe?
Open
TCP
5800/vnc-http?
Open
TCP
5900/vnc?
Open
TCP
6000/X11?
Open
TCP
6001/X11:1?
Open
TCP
6646/unknown
Open
TCP
7070/realserver?
Open
TCP
8000/http-alt?
Open
TCP
8008/http
Open
TCP
8009/ajp13?
Open
TCP
8080/http-proxy?
Open
TCP
8081/blackice-icecap?
Open
TCP
8443/https-alt?
Open
TCP
8888/sun-answerbook?
Open
TCP
9100/jetdirect?
Open
TCP
9999/abyss?
Open
TCP
10000/snet-sensor-mgmt?
Open
TCP
32768/filenet-tms
Closed
TCP
49152/unknown
Closed
TCP
49153/unknown
Closed
TCP
49154/unknown
Closed
TCP
49155/unknown
Closed
TCP
49156/unknown
Closed
TCP
49157/unknown
Closed
Proxies
Anonymizing VPN
Yes
Tor Exit Node
No
Server
No
Public Proxy
No
Web Proxy
No
Search Engine Robot
No
Domain Names
slavik.in

IP Address data partner DB-IP.com:

DB-IP

Proxy data sponsored by IP2Proxy:

IP2Proxy

IMPORTANT: Scamalytics Ltd operate a fraud-detection network with visibility into many millions of internet users per month. We do not have visibility into the entire internet. The statements on this page represent our opinion based on the limited information we have available to us, and specifically only cover web connections made by internet users to websites and applications, not other connections such as server to server connections.