112.124.38.7 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 112.124.38.7 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: howmart.com uulike.com

Open Ports Detected

10000 10001 10029 10039 10043 10052 10080 1013 10134 10181 10205 10240 10250 10398 104 10554 11002 11007 11075 111 1110 11288 113 11680 1177 11920 1200 12082 12111 12118 12125 12136 12148 12164 12169 12173 12176 12208 12210 12211 12215 12232 12235 12239 12245 12255 12257 12261 12263 12265 12270 12281 12290 12299 12305 12345 12383 12392 12393 12421 12431 12460 12482 12483 12489 12495 12514 12522 12523 12553 12562 12564 12566 12571 12577 1291 13 1414 14147 143 1433 14344 1459 1460 14909 15151 15443 1554 16009 16022 16033 1604 16064 16069 16104 16993 17 17182 1723 175 17777 179 1800 18020 18052 18064 18065 18071 18072 18091 18181 189 19 19000 19016 1911 1926 195 1962 2000 20000 2002 2003 20030 2006 20070 2008 20084 20121 2022 20325 2051 20547 2058 2064 2067 2070 2081 2083 20880 20900 21 21002 21025 21082 21234 21245 21249 21256 2126 21289 21296 21311 21316 21319 21322 21324 21328 2134 21379 2154 221 2220 2222 23 23128 2362 2376 2382 2423 2455 25 25001 25007 25008 2550 25565 2560 2563 2567 25782 26 2601 2602 2628 264 27015 2761 2762 28015 28017 29840 30000 30002 30009 3001 30025 30050 3007 30121 30473 3050 3085 30894 3091 3099 3104 3106 3111 3115 3119 31337 3137 3141 3150 3162 3186 3221 32443 32444 3260 32764 3301 3306 33060 3310 3388 3389 3405 35000 35101 3531 35531 35560 3563 3570 3580 37777 38080 389 39001 3950 3951 3952 4000 40471 4064 4085 40892 4120 4150 4157 4242 4250 427 4282 43 43200 4321 4343 4369 4402 44100 44158 443 44309 4431 4433 4434 4436 444 4443 4447 4459 44818 4500 4506 4528 46000 465 4786 47990 48000 4899 49 4933 4949 49767 50000 50011 5007 5009 50100 50106 50122 50160 5025 503 5070 51235 513 5140 515 5201 52010 5222 5233 5238 5240 5242 5243 5250 5260 5269 5273 5277 53 53200 53480 53485 5351 54138 5432 5435 5446 548 5494 5500 55055 55200 5523 554 55443 55553 55554 5557 5593 5613 5701 57784 58378 587 5918 5919 5986 6001 6007 60129 602 6021 6081 6100 61613 61616 61617 62078 62237 6262 632 63210 63256 63260 63676 6379 64295 6464 6500 65432 6633 6653 666 6666 6667 6668 6697 675 6775 6799 6955 70 7001 7071 7087 7100 7171 7218 7403 7415 7434 7444 7548 7634 771 7782 782 789 80 8012 8029 8034 8068 8081 8083 8087 8089 8091 8099 811 8111 8120 8125 8126 8140 8155 8162 8164 8175 8181 8191 8291 8404 8414 8416 8426 8433 8443 8445 8446 8448 8449 8451 8461 8464 8500 8502 8515 8524 8529 8530 8544 8556 8560 8571 8574 8575 8621 8641 8822 8834 887 8874 8875 8885 8889 8890 8907 9000 9005 9010 9013 9020 9029 9031 9032 9037 9042 9081 9088 9092 9094 9095 9100 9132 9137 9140 9151 9157 9170 9179 9209 9213 9353 9383 9443 9446 9480 9530 9532 9553 9600 9633 9658 9711 9779 992 993 995 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2024-6387 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • inetnum: 112.124.0.0 - 112.127.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:56:52Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 112.124.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:03Z
  • route: 112.124.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:02Z

Links to attack logs

anonymous-proxy-ip-list-2023-05-25 ****** anonymous-proxy-ip-list-2023-05-19 anonymous-proxy-ip-list-2023-05-27 anonymous-proxy-ip-list-2023-05-26 anonymous-proxy-ip-list-2023-05-17 anonymous-proxy-ip-list-2023-05-20 anonymous-proxy-ip-list-2023-05-18 anonymous-proxy-ip-list-2023-05-24 anonymous-proxy-ip-list-2023-05-21 anonymous-proxy-ip-list-2023-05-22 ****** anonymous-proxy-ip-list-2023-05-23 ******

Share on: