Skip to main content

Command Palette

Search for a command to run...

False Statement Mapping

Published
•1 min read•View as Markdown
IP AddressIncorrect StatementWhy It Is IncorrectCorrect Classification
193.142.146.112Phishing & credential harvesting infraOnly SSH brute-force and port scanning seen. No phishing pages, kits, or campaigns. Activity is old.Historical SSH brute-force / scanning (inactive)
104.244.72.115Cloud-hosted VPS (can be abused)This is only infrastructure context. IP shows real malicious activity, not just “can be abused.”Active malicious IP (web attacks, brute-force, TOR abuse)
51.195.102.77Public VPS, noisy trafficNo alerts, scans, or abuse reported. “Noisy” is not supported by evidence.Clean cloud IP (no malicious activity)
167.71.12.34Cloud provider scanning behaviorScanning came from abused cloud VM, not the cloud provider itself. No recent activity.Historical abuse from cloud-hosted IP
139.59.64.89Temporary / short-lived IPNo evidence of IP rotation or short lifecycle. Cloud hosting alone is not proof.Legitimate cloud IP (stable, clean)