106.11.35.18 Threat Intelligence and Host Information

General

IP Address
106.11.35.18
IPv4 Address
Location
🇨🇳 China
CN
Network
AS37963
Hangzhou Alibaba Advertising Co.,Ltd.
Threat Score
37/100
Medium Risk
0x1040x11a0x12b0x14a0x14e0x2280x970xc6
Attack Intelligence
MITRE ATT&CK Techniques
T1059 - Command and Scripting Interpreter
Open Ports Detected
10000
Geographic Location
Country
China
City
Unknown
Region
Unknown
Coordinates
34.7732, 113.7220
Network Information
ASN
AS37963
Organization
Hangzhou Alibaba Advertising Co.,Ltd.
Network
AS37963 Hangzhou Alibaba Advertising Co.,Ltd.
WHOIS Information
inetnum
106.11.0.0 - 106.11.255.255
netname
Taobao
descr
China Internet Network Information Center
country
CN
admin-c
IP50-AP
tech-c
IP50-AP
abuse-c
AC1601-AP
status
ALLOCATED PORTABLE
mnt-by
MAINT-CNNIC-AP
mnt-irt
IRT-TAOBAO-CN
mnt-lower
MAINT-CNNIC-AP
mnt-routes
MAINT-CNNIC-AP
last-modified
2020-02-18T01:15:48Z
irt
IRT-Taobao-CN
address
Zhejiang, China, 310099
e-mail
guowei.pangw@alibaba-inc.com
abuse-mailbox
ipas@cnnic.cn
role
ABUSE CNNICCN
phone
+86-0571-85022088-30763
nic-hdl
ZM877-AP
person
Guowei Pan
fax-no
+86-0571-85022600
route
106.11.35.0/24
origin
AS45102

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protcols Attacked: SSH
  • Passive DNS Results: aidc-ai.com ns2.cdngslb.com gdsns2.1688.com gdsns2.alibaba-inc.com gdsns2.taobao.com ns2.alibabadns.com gdsns2.tanx.com

CVEs Detected

CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10002 CVE-2016-10003 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-2390 CVE-2016-3947 CVE-2016-3948 CVE-2016-4051 CVE-2016-4052 CVE-2016-4053 CVE-2016-4054 CVE-2016-4553 CVE-2016-4554 CVE-2016-4555 CVE-2016-4556 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-19131 CVE-2018-19132 CVE-2018-20685 CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12522 CVE-2019-12523 CVE-2019-12524 CVE-2019-12525 CVE-2019-12526 CVE-2019-12528 CVE-2019-12529 CVE-2019-13345 CVE-2019-18676 CVE-2019-18677 CVE-2019-18678 CVE-2019-18679 CVE-2019-18860 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-11945 CVE-2020-14058 CVE-2020-14145 CVE-2020-15049 CVE-2020-15778 CVE-2020-15810 CVE-2020-15811 CVE-2020-24606 CVE-2020-25097 CVE-2020-8449 CVE-2020-8450 CVE-2020-8517 CVE-2021-28116 CVE-2021-28651 CVE-2021-28652 CVE-2021-31806 CVE-2021-31807 CVE-2021-31808 CVE-2021-33620 CVE-2021-36368 CVE-2021-41617 CVE-2021-46784 CVE-2022-41318 CVE-2023-38408 CVE-2023-46724 CVE-2023-46728 CVE-2023-46846 CVE-2023-46847 CVE-2023-48795 CVE-2023-49288 CVE-2023-50269 CVE-2023-51384 CVE-2023-51385

Disclaimer
This page contains threat intelligence information for the IPv4 address 106.11.35.18 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.