IP: 92.242.144.50 United Kingdom Location: United Kingdom
Country:
United Kingdom
Latitude:
51.4964
Longitude:
-0.1224
NetRange: 92.0.0.0 - 92.255.255.255
CIDR: 92.0.0.0/8
NetName: 92-RIPE
NetHandle: NET-92-0-0-0-1
Parent: ()
NetType: Allocated to RIPE NCC
OriginAS:
Organization: RIPE Network Coordination Centre (RIPE)
RegDate: 2007-03-27
Updated: 2009-05-18
Comment: These addresses have been further assigned to users in
Comment: the RIPE NCC region. Contact information can be found in
Comment: the RIPE database at http://www.ripe.net/whois
Ref: https://rdap.arin.net/registry/ip/92.0.0.0

ResourceLink: https://apps.db.ripe.net/search/query.html
ResourceLink: whois.ripe.net

OrgName: RIPE Network Coordination Centre
OrgId: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL
RegDate:
Updated: 2013-07-29
Ref: https://rdap.arin.net/registry/entity/RIPE

ReferralServer: whois://whois.ripe.net
ResourceLink: https://apps.db.ripe.net/search/query.html

OrgAbuseHandle: ABUSE3850-ARIN
OrgAbuseName: Abuse Contact
OrgAbusePhone: +31205354444
OrgAbuseEmail: abuse@ripe.net
OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3850-ARIN

OrgTechHandle: RNO29-ARIN
OrgTechName: RIPE NCC Operations
OrgTechPhone: +31 20 535 4444
OrgTechEmail: hostmaster@ripe.net
OrgTechRef: https://rdap.arin.net/registry/entity/RNO29-ARIN
DNS BlackList results:
Most recent complaints on 92.242.144.50
Complaint by curious :

Yes, my comodo firewall keeps blocking outbound packets headed there... hmm

Reported on: 7th, Mar. 2012
Complaint by Mike :

I also noticed this IP coming from a newly built windows 7 box. I have not had a chance to run it down but it was using ports 445/tcp and 137/tcp. Both can be used in filesharing. I also turned off windows file and print sharing for that interface. No change in traffic. Anybody else?

Reported on: 12th, Mar. 2012
Complaint by Rene :

Outbound traffic to 92.242.144.50 was blocked by my firewall. Comodo sayd therequest came from a program that I was developing and testing. Little chance that it got infected in between compiling and running. Apparently, the infection, if that's what it is, somehow spoofs its background within the operating system.

Reported on: 27th, Mar. 2012
Complaint by mac :

i see this ip here,my commodo firewall reported it because "iceop.exe" a camfrog operator tool,whitch claims to be spyware at all try to connect to it http://www.camfrogcommunity.com/Thread-camfrog-video-chat-6-2-now-available?pid=12199#pid12199

Reported on: 4th, Apr. 2012
Complaint by someone :

i keep getting this flagged ...who is it? had a credit card scammed online yesterday...might have a compromised system. trying to track it.

Reported on: 29th, May. 2012
Complaint by Richard Gainor :

Norton Internet Security 2012 is blocking C:WINDOWSsystem32svchost.exe from connecting to this ip address. Service claims to be wpad.my ISP.com. This IP is in the UK my ISP is in USA. There is no reason for my computer to be connecting to this ip. Blocked it with Norton.

Reported on: 9th, Jun. 2012
Complaint by XCLNYC :

I noticed in the K9 web access log that the PC was accessing or trying to access 92.242.144.50/wpad.dat FWIW: when entering this in another PC's browser with http:\ I get "this site is running Teamviewer "

Reported on: 16th, Jul. 2012
Complaint by karel netherlands :

ESET Firewall is giving an alert on this secret IP. I tried everywhere to find out who is behind this IP. No results. Is this a spy-institute to get information of mij system and files? I suggest everybody to block and ban forever these crooks who are not willing to show their face..I blocked this IP

Reported on: 18th, Sep. 2012
Complaint by anna :

comodo is blocking this ip 92.242.144.50 every 5min...i dont know how to stop it or what is causing it. do i have a virus? how do i tell? security center does not show anything but my system is slower and sometimes internet searches seem to be redirected suspected. will show unrelated sites..same search on diff pc is normal who is this ip

Reported on: 3rd, Nov. 2012
Complaint by Herp :

92.242.144.50 Has also shown up in comondo, but I ran a program sandboxed that was cracked by On HAX. It could be his virus connecting to him.

Reported on: 20th, Jan. 2013
Complaint by Zier :

Kreeg dezelfde blocking van Comodo. Ik kan er niets mee

Reported on: 23rd, Mar. 2013
Complaint by Dragnwarror :

We are all blocking this IP so far Comodo Firewall Norton Peerblock are all blocking this IP. I will be looking for a solution for this problem.

Reported on: 11th, Apr. 2013
Complaint by Dragnwarror :

This is the information I could find on them I am in the process in finding the cause of the connection now. Whois Lookup For 92.242.144.50 : [ Check out our IP Lookup For 92.242.144.50 ] % This is the RIPE Database query service. % The objects are in RPSL format. % % The RIPE Database is subject to Terms and Conditions. % See http://www.ripe.net/db/support/db-terms-conditions.pdf % Note: this output has been filtered. % To receive output for a database update, use the "-B" flag. % Information related to '92.242.128.0 - 92.242.159.255' inetnum: 92.242.128.0 - 92.242.159.255 netname: UK-BAREFRUIT-20071227 descr: Barefruit Ltd. country: GB org: ORG-BL53-RIPE admin-c: PR42-RIPE tech-c: PR42-RIPE status: ALLOCATED PA mnt-by: RIPE-NCC-HM-MNT mnt-lower: CATALYST2-MNT mnt-domains: CATALYST2-MNT mnt-routes: CATALYST2-MNT source: RIPE # Filtered organisation: ORG-BL53-RIPE org-name: Barefruit Ltd. org-type: LIR address: Barefruit Ltd. Lindsay Dean 43 - 45 Charlotte Street London W1T 1RS United Kingdom phone: +44 207 717 8675 fax-no: +44 207 717 8759 admin-c: PR42-RIPE mnt-ref: CATALYST2-MNT mnt-ref: RIPE-NCC-HM-MNT mnt-by: RIPE-NCC-HM-MNT source: RIPE # Filtered person: Paul Redpath remarks: Catalyst2 Services Ltd org: ORG-csl3-RIPE address: Centre House address: 79 Chichester Street address: Belfast address: BT1 4JE phone: +44 800 107 7979 fax-no: +44 845 280 4993 abuse-mailbox: abuse@catalyst2.com mnt-by: CATALYST2-MNT source: RIPE # Filtered nic-hdl: PR42-RIPE % This query was served by the RIPE Database Query Service version 1.59.8 (WHOIS2)

Reported on: 11th, Apr. 2013
Complaint by Stanley :

I have hosted my domain and still unavailable , When i am trying to ping the system response is it http://92.242.144.50/

Reported on: 4th, Jul. 2013
Complaint by Scooby Dooooo :

BareFruit LTD (92.242.144.50) was being denied all over my firewall system and Slowing it down ....Zoinks! I first blocked 0.0.0.0:68 (yes its 0.0.0.0 port 68) Then I Blocked the IP address 92.242.144.50 Then I started noticing all these in-addr.arpa addresses - "Now WTF?" (I click info on each address and it reads 92.242.144.50)...BareFruit has tried every in-address possible from 1.0.168.192.in-addr.arpa to 255.0.168.192.in-addr.arpa Using Little Snitch - I blocked the entire range of IP addresses from 92.242.144.0 to 92.242.144.255 by entering 92.242.144.0/24 which is how you do it in LS (for the people that say LS does not do wildcards). << I have blocked this IP range from All Applications and separately blocked it from my mDNSResponder, lookupd, as well as the bootpc port 68>> << I blocked the entire range of BareFruit from my BootPC port by typing "0.0.0.0/24" for the IP and "68" for the port My Internet is Faster "but not back to normal since BareFruit still tries the in-address connections ... :( Searching info on Barefruit points to catalyst2.com which is blocked by Comodo for the reason of Phishing - which means this is a website that the Federal Trade Commission should shut down... but they don't! - any guesses why? Now it's Time for a ****** Snack... :)

Reported on: 22nd, Aug. 2013
Complaint by user :

i found the source code here http://pastebin.com/emHixNpN is a port sniffing code starts like this Index : 45 Protocol : UDP Local Address : 192.168.1.101 i guess a modem ip Remote Address : comodo , norton etc ip here Local Port : 49971 Remote Port : 53 Local Host : Remote Host : Service Name : domain Packets : 1 {1 ; 0} Data Size : 29 Bytes {29 ; 0} Total Size : 114 Bytes {57 ; 57} Data Speed : Capture Time : 17/03/2012 00:43:05:822 Last Packet Time : 17/03/2012 00:43:05:822 only changes ips of norton comodo and so on this is from 2012 and still continues any news of destroying this? my best regards

Reported on: 3rd, Mar. 2014
Complaint by MERLIN :

I am getting packets sent to this IP on my galaxy s4 phone. The default "Internet" browser is making these requests even though I never run the app.

Reported on: 13th, Sep. 2014
Complaint by MERLIN :

Here is some description about the owner of the IP address: https://en.wikipedia.org/wiki/Barefruit Looks like its a company that makes money by paying ISPs to redirect invalid URLs there. Still does not explain why packets seems to be automatically sent there.

Reported on: 13th, Sep. 2014
Complaint by IKnowNothing :

It's a site called Godlikeproductions.com It's possibly run by Tavistock out of the U.K. Think I'm kidding? The person who bought it originally went by the name Trinity and if you mention Tavistock or a bunch of other words referring to it, you're instantly banned. Also, they were monitoring people and installing LOP software on those who visited there. It's also a very popular conspiracy site filled with many alphabet agency types. Hope this helps.

Reported on: 2nd, Apr. 2015
Complaint by Pro :

This IP Address is used for SPAM. The server running on the IP Address is looking for websites or other means to spam users. It is mostly seen visiting websites and trying to complete email forms. I cannot guarantee it is only for SPAM of course. So I would block any communication with this server.

Reported on: 5th, Jun. 2015
Complaint by Roman :

kernel: The MAC address in flash is null! kernel: nas8: MT7510 PTM Ethernet address: 00:00:AA:BB:CC:FF kernel: kernel: The MAC address in flash is null! kernel: nas9: MT7510 PTM Ethernet address: 00:00:AA:BB:CC:FF

Reported on: 20th, Jun. 2016
Complaint by D :

HD-Bluestacks.... Emulator for phones software.

Reported on: 2nd, Jul. 2016

Please help us keep Internet safer and cleaner by leaving a descriptive comment about 92.242.144.50 IP address


DNSBL* - is a list of IP addresses published through the Internet Domain Name Service (DNS) either as a zone file that can be used by DNS server software, or as a live DNS zone that can be queried in real-time. DNSBLs are most often used to publish the addresses of computers or networks linked to spamming; most mail server software can be configured to reject or flag messages which have been sent from a site listed on one or more such lists.

WHOIS** - is a query/response protocol that is widely used for querying databases in order to determine the registrant or assignee of Internet resources, such as a domain name, an IP address block, or an autonomous system number. WHOIS lookups were traditionally performed with a command line interface application, and network administrators predominantly still use this method, but many simplified web-based tools exist. WHOIS services are typically communicated using the Transmission Control Protocol (TCP). Servers listen to requests on the well-known port number 43.

** Approximate Geographic Location - This is NOT the exact geographical location of the person/organization with the given IP address. However, this should still give you a good idea about the area/region where this person/orgranization is located.