103.122.247.187 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 103.122.247.187 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 31/100
Host and Network Information
-
Tags: Nextray, cyber security, ioc, malicious, phishing
-
View other sources: Spamhaus VirusTotal
- Country: Australia
- Network: AS55020 aodao inc
- Noticed: 1 times
- Protcols Attacked: SSH
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
- Passive DNS Results: 055049.com ffyl6339.com yy0211w.com f0770f.com yy0293w.com ffyl6006.com 406492.com 457921.com 357904.com 315428.com 359173.com yb0891.com ybyl48340.com ybyl0123.com yby156.com ybyl30330.com ybyl37350.com yby162320.com ybyl39350.com ybyl23050.com ybyl13150.com ybyl29050.com ybyl46320.com yby16231.com yby16201.com ybyl072.com ybyl0893.com ybyl26050.com ybyl57520.com ybyl0873.com ybyl12050.com yb0768.com yb0639.com yb0275.com yb0887.com vm257.com abk3.com 9ty.vip gtm-cn-0pp1mh9i204.barnn.cn 0tyhd.com ybyl0839.com ybyl0891.com
Open Ports Detected
CVEs Detected
CVE-2010-1899 CVE-2010-2730 CVE-2010-3972
Map
Whois Information
- inetnum: 103.122.247.0 - 103.122.247.255
- netname: HK-DINGDIAN-IPV4
- descr: HK DINGDIAN NETWORK LIMITED
- country: HK
- admin-c: JZ4379-AP
- tech-c: JZ4379-AP
- abuse-c: AH835-AP
- status: ASSIGNED NON-PORTABLE
- mnt-by: MAINT-HUS-AP
- mnt-irt: IRT-HUS-AP
- last-modified: 2021-04-21T05:51:30Z
- irt: IRT-HUS-AP
- address: 8 The Green, Ste 4000
- e-mail: abuse@hostus.us
- abuse-mailbox: abuse@hostus.us
- admin-c: HSLA2-AP
- tech-c: HSLA2-AP
- mnt-by: MAINT-HUS-AP
- last-modified: 2023-05-03T09:07:03Z
- role: ABUSE HUSAP
- address: 8 The Green, Ste 4000
- country: ZZ
- phone: +000000000
- e-mail: abuse@hostus.us
- admin-c: HSLA2-AP
- tech-c: HSLA2-AP
- nic-hdl: AH835-AP
- abuse-mailbox: abuse@hostus.us
- mnt-by: APNIC-ABUSE
- last-modified: 2023-05-03T14:22:44Z
- person: Jack zhu
- address: North Point City Centre 1802, 250 Royal Road, North Point, Hong Kong
- country: HK
- phone: +852-54226370
- e-mail: vip@139w.com
- nic-hdl: JZ4379-AP
- mnt-by: MAINT-HUS-AP
- last-modified: 2019-03-24T12:42:33Z
- route: 103.122.247.0/24
- origin: AS55020
- descr: HostUS Worldwide, Inc.
- mnt-by: MAINT-HW-AP
- last-modified: 2023-07-11T23:08:10Z
Links to attack logs
bruteforce-ip-list-2020-01-24 bruteforce-ip-list-2020-01-21
Share on: