110.42.1.146 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 110.42.1.146 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS136188 ningbo zhejiang province p.r.china.
  • Noticed: 1 times
  • Protcols Attacked: redis
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: ahjwys.xyz merpay.haodamibibei.xyz cemasys.haodamibibei.xyz 538316.vip xnmqtm.vip rjmhtt.vip rkmctg.vip rdmgtb.vip njtrkg.vip xqmstw.vip ngtzkf.vip xdmbtg.vip rwmhtd.vip xlmttd.vip rzmbty.vip rzmlth.vip rqmptm.vip rwmctt.vip rxmrth.vip xmmqtl.vip xgmntb.vip xtmltq.vip xmmbtq.vip xpmrtq.vip xjmbtb.vip rcmqtd.vip xkmttn.vip rgmztq.vip rpmztz.vip xdmgtp.vip xhmytz.vip xlmstb.vip xqmhtw.vip xtmntm.vip xcmftf.vip njtlkb.vip rzmqtg.vip ngtwkm.vip rymhtt.vip xhmqtf.vip rjmjtx.vip rcmytg.vip rmmytp.vip xsmqth.vip xtmttb.vip xwmdtm.vip xmmfts.vip rzmrth.vip xcmqtn.vip rwmxth.vip xfmntd.vip rxmctt.vip rlmytk.vip rhmjtf.vip xhmftl.vip rsmltf.vip rhmhtt.vip rkmqtb.vip xsmhts.vip rnmstj.vip xrmmtx.vip xrmrtt.vip xsmrtr.vip xpmxtt.vip rqmjtc.vip xjmqtg.vip rbmdtz.vip xtmbts.vip

Map

Whois Information

  • inetnum: 110.42.0.0 - 110.42.127.255
  • netname: nbgaofang
  • descr: Ningbo Zhuo Zhi Innovation Network Technology Co., Ltd
  • descr: 1088-13 No.1558 Jiangnan Road,NingBo,China
  • country: CN
  • admin-c: YW6719-AP
  • tech-c: JS3943-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • mnt-irt: IRT-CNNIC-CN
  • last-modified: 2021-06-16T01:32:35Z
  • irt: IRT-CNNIC-CN
  • address: Beijing, China
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-06-16T01:39:57Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Tianyuan Wu
  • address: 1088-13 No.1558 Jiangnan Road,NingBo,China
  • country: CN
  • phone: +86-0574-88093323
  • e-mail: [email protected]
  • nic-hdl: JS3943-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2017-03-16T01:56:02Z
  • person: Jingjing Xu
  • address: 1088-13 No.1558 Jiangnan Road,NingBo,China
  • country: CN
  • phone: +86-0574-88093323
  • e-mail: [email protected]
  • nic-hdl: YW6719-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2017-03-16T01:56:01Z

Links to attack logs

awsau-redis-bruteforce-ip-list-2021-09-05