106.11.41.157 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 106.11.41.157 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protcols Attacked: SSH

Open Ports Detected

10000 10001 10134 102 1023 1025 10250 1026 1028 1029 10443 1099 11 110 11000 111 11112 11211 113 11300 11371 1153 1177 119 1200 121 122 12345 1250 13 1311 135 13579 1400 14265 143 1433 14344 1471 1494 15 1500 1515 1521 1599 16010 16030 17 1723 1741 175 179 1800 1801 18081 18245 1883 19 1911 1925 1926 1935 1947 195 1962 2000 20000 2002 2008 2021 20256 2049 2053 20547 2063 2067 2077 2081 2086 2087 21 21025 2121 21379 2181 22 221 2222 2266 23 2332 2333 2345 2375 2376 2404 2455 25 25001 25565 2562 2569 2570 26 2628 264 27015 2761 2762 28015 3000 30002 30003 3001 3050 3059 3062 3071 3100 3107 3119 32400 3260 3268 3269 32764 3299 3301 3306 33060 3310 3333 3352 3388 3389 340 3402 3443 3460 3479 35000 3541 3542 3551 3562 3566 37777 3780 3790 389 3951 4022 4040 4063 4064 4157 4242 427 4282 43 4321 44158 443 4433 444 4443 4444 44818 4500 4506 4523 4550 465 4734 4782 4786 4840 49 491 4911 4949 50000 5001 5005 50050 5006 5007 50070 5009 5010 50100 502 5025 51106 51235 515 5172 5201 5209 5222 5269 52869 53 54138 5432 5435 548 554 55443 5555 55554 5567 5601 5672 5801 5858 587 58749 593 5938 5984 5985 5986 6001 60010 6002 60030 60129 6080 61613 61616 62078 631 636 6379 6443 6512 6633 6653 666 6662 6664 6666 6667 6668 6697 6998 70 7001 7010 7090 7171 7218 7401 7415 7434 7443 7474 7537 7547 7548 7634 7657 771 7777 7779 789 79 7989 7998 8001 8005 8008 8009 8010 8011 8019 8042 8047 8055 806 8060 8069 8080 8083 8085 8086 8087 8089 8090 8098 8099 8103 8112 8123 8126 8139 8140 8181 82 8200 8236 8243 8291 8333 8334 8403 8404 8414 8421 8426 8443 8500 8545 8553 8554 8575 8621 8622 8649 8663 87 8728 873 88 8800 8805 8810 8827 8829 8830 8833 8834 8835 8839 8842 8847 8855 8873 8874 8880 8888 8889 8935 8988 90 9000 9001 9002 9003 9011 9017 9024 9025 9034 9035 9041 9042 9051 9070 9080 9091 9092 9095 9100 9102 9136 9151 9160 9191 9217 9219 9251 9302 9304 9306 9418 943 9443 9530 9550 9595 9600 9633 9761 9765 9869 992 993 9943 995 9966 9981 9991 9998 9999

CVEs Detected

CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385

Map

Whois Information

  • inetnum: 106.11.0.0 - 106.11.255.255
  • netname: Taobao
  • descr: Zhejiang Taobao Network Co.,Ltd
  • descr: 2nd floor, Westlake International technology Building
  • descr: 391Wener Road, Hangzhou, China
  • country: CN
  • admin-c: ZM678-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-TAOBAO-CN
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • last-modified: 2023-11-28T00:56:50Z
  • irt: IRT-Taobao-CN
  • address: 2nd floor, Westlake International technology Building, 391 Wener Road, Hangzhou
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Shuo Yu
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM678-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-04-13T23:21:57Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 106.11.41.0/24
  • origin: AS37963
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:13:56Z
  • route: 106.11.41.0/24
  • origin: AS45102
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:15:52Z

Links to attack logs

****** ****** ******

Share on: