114.112.236.228 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Host and Network Information

  • Tags: Malicious IP, Nextray, blacklist, botnet, cyber security, ioc, la, lafusioncenter, louisiana, malicious, mirai, nmap, phishing, port-scan, scan, smb, tcp, tsec
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: haley_ssh

  • Country: China
  • Network: AS133107 fnetlink co . limited
  • Noticed: 18 times
  • Protcols Attacked: mssql
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Malware Detected on Host

Count: 2 3f5d604a71af776fd2761eb013de104437af5693ed7a04289e3196e6f4a934b8 3f5d604a71af776fd2761eb013de104437af5693ed7a04289e3196e6f4a934b8

Open Ports Detected

179 53 9527

Map

Whois Information

  • inetnum: 114.112.236.0 - 114.112.239.255
  • netname: TWOWINCOLIMITED-HK
  • descr: Room G, 16/F, Block 2, Yuk Ming Towers,
  • descr: 202 Third Street, Sais Ying Pun, Hong Kong
  • country: HK
  • admin-c: TCLA5-AP
  • tech-c: TCLA5-AP
  • abuse-c: AO377-AP
  • status: ASSIGNED NON-PORTABLE
  • mnt-by: MAINT-ONENETHKLTD-HK
  • mnt-irt: IRT-ONENETHKLTD-HK
  • last-modified: 2021-06-23T13:09:45Z
  • irt: IRT-ONENETHKLTD-HK
  • address: Room 1116, 11/F., Fortune Commercial Bldg., 362 Sha Tsui Road, Tsuen Wan, NT, Hong Kong.
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: OHLA2-AP
  • tech-c: OHLA2-AP
  • mnt-by: MAINT-ONENETHKLTD-HK
  • last-modified: 2022-10-18T16:23:18Z
  • role: ABUSE ONENETHKLTDHK
  • address: Room 1116, 11/F., Fortune Commercial Bldg., 362 Sha Tsui Road, Tsuen Wan, NT, Hong Kong.
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: OHLA2-AP
  • tech-c: OHLA2-AP
  • nic-hdl: AO377-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2022-10-18T16:24:02Z
  • role: TWOWIN CO LIMITED administrator
  • address: Room G, 16/F, Block 2, Yuk Ming Towers,, 202 Third Street, Sai Ying Pun, Hong Kong., HongKong
  • country: HK
  • phone: +852-3906 1887
  • fax-no: +852-3906 1887
  • e-mail: [email protected]
  • admin-c: TCLA5-AP
  • tech-c: TCLA5-AP
  • nic-hdl: TCLA5-AP
  • mnt-by: MAINT-TWOWINCOLIMITED-HK
  • last-modified: 2017-11-03T08:37:19Z
  • route: 114.112.236.0/24
  • descr: Proxy-registered route object
  • origin: AS133107
  • mnt-by: MAINT-AP-FEIKE1
  • notify: [email protected]
  • last-modified: 2015-07-31T07:22:37Z

Links to attack logs

dolondon-mssql-bruteforce-ip-list-2021-10-28 dolondon-mssql-bruteforce-ip-list-2021-10-29 nmap-scanning-list-2022-03-04