103.249.192.70 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Host and Network Information

  • Tags: Malicious IP, aws, blacklist, botnet, bruteforce, dosing, la, lafusioncenter, louisiana, mirai, mssql, nmap, port-scan, scan, smb, tcp, tsec
  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS136958 china unicom guangdong ip network
  • Noticed: 37 times
  • Protcols Attacked: mssql
  • Countries Attacked: Australia, Japan, United States of America

Map

Whois Information

  • inetnum: 103.249.192.0 - 103.249.195.255
  • netname: WSUNET
  • descr: Shenzhen WSUNet Technology Co., Ltd.
  • descr: Room 4-A19,No.11, Jiangong Road, Tianhe Industrial Park, Tianhe District,
  • descr: Guangzhou City,Guangdong Prov. China
  • country: CN
  • admin-c: ML1935-AP
  • tech-c: ML1935-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • mnt-irt: IRT-CNNIC-CN
  • last-modified: 2021-06-16T01:33:03Z
  • irt: IRT-CNNIC-CN
  • address: Beijing, China
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-06-16T01:39:57Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Desen Huang
  • address: Room 4-A19,No.11, Jiangong Road, Tianhe Industrial Park, Tianhe District,
  • address: Guangzhou City,Guangdong Prov. China
  • country: CN
  • phone: +86-075586705765
  • e-mail: [email protected]
  • nic-hdl: ML1935-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2022-03-28T08:37:13Z

Links to attack logs

nmap-scanning-list-2021-06-02 aws-mssql-bruteforce-ip-list-2020-12-27 nmap-scanning-list-2021-01-10 dosing-mssql-bruteforce-ip-list-2021-03-05