103.140.127.154 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Host and Network Information

  • Tags: C&C, Malicious IP, awsau, blacklist, botnet, bruteforce, mirai, mssql, nmap, port-scan, scan, smb, tcp, tsec
  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS55933 cloudie limited
  • Noticed: 23 times
  • Protcols Attacked: mssql
  • Countries Attacked: Australia
  • Passive DNS Results: bb.mt18.cc ghyjxgkj.com www.xincailiaobbs.com

Malware Detected on Host

Count: 4 bd921ce1dcd591e4c41d5747ee43d80203db6351c31b7a72159d11a4fe5668c6 bec4a3cd1d1ad39da2a4eb356759d5871b7c3299fa366a963361b8435e6e6e7c 7625f7a5e040d535a5ef6c207882f33a583e3cde53ec80b99a1028b7e5ce0581 8a21292a4eeda976467fb57aaf8daa25c43b6b3365eca19de8ac441be98d3940

Map

Whois Information

  • inetnum: 103.140.126.0 - 103.140.127.255
  • netname: ZSSBAY-CN
  • descr: Zhong Shan Shi Ba Ai Yun Ji Suan Co., Limited
  • country: CN
  • org: ORG-ZBAY1-AP
  • admin-c: ZBAY1-AP
  • tech-c: ZBAY1-AP
  • abuse-c: AZ409-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-ZSSBAY-CN
  • mnt-routes: MAINT-ZSSBAY-CN
  • mnt-irt: IRT-ZSSBAY-CN
  • last-modified: 2020-07-01T01:52:58Z
  • irt: IRT-ZSSBAY-CN
  • address: Xing Long Jie 41 Hao, zhong san shi guan dong sheng 528400
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: ZBAY1-AP
  • tech-c: ZBAY1-AP
  • mnt-by: MAINT-ZSSBAY-CN
  • last-modified: 2023-02-08T13:11:36Z
  • organisation: ORG-ZBAY1-AP
  • org-name: Zhong Shan Shi Ba Ai Yun Ji Suan Co., Limited
  • country: CN
  • address: Xing Long Jie 41 Hao
  • phone: +86-0760-88337063
  • fax-no: +86-0760-88337063
  • e-mail: [email protected]
  • mnt-ref: APNIC-HM
  • mnt-by: APNIC-HM
  • last-modified: 2019-04-29T12:57:36Z
  • role: ABUSE ZSSBAYCN
  • address: Xing Long Jie 41 Hao, zhong san shi guan dong sheng 528400
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: ZBAY1-AP
  • tech-c: ZBAY1-AP
  • nic-hdl: AZ409-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-02-08T13:13:19Z
  • role: ZhongShanShi ba ai yun ji suan Ltd administrator
  • address: Xing Long Jie 41 Hao, zhong san shi guan dong sheng 528400
  • country: CN
  • phone: +86-0760-88337063
  • fax-no: +86-0760-88337063
  • e-mail: [email protected]
  • admin-c: ZBAY1-AP
  • tech-c: ZBAY1-AP
  • nic-hdl: ZBAY1-AP
  • mnt-by: MAINT-ZSSBAY-CN
  • last-modified: 2019-06-25T03:37:41Z

Links to attack logs

awsau-mssql-bruteforce-ip-list-2021-10-25 nmap-scanning-list-2021-10-27 awsau-mssql-bruteforce-ip-list-2021-11-07