114.96.73.17 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 114.96.73.17 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network:
  • Noticed: 29 times
  • Protocols Attacked: SSH
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

10000 10001 10023 10035 10100 1023 1024 10243 10250 10251 10380 10443 1080 10909 1099 11000 111 11101 11112 11210 11288 11300 12105 12114 12180 12189 12221 12231 1224 12273 12336 12346 12371 12397 12424 12433 12448 12467 12471 12480 12492 1250 12516 12530 12559 12561 12586 13084 1311 13443 13579 14147 1433 1451 1458 1471 14895 15647 1599 16010 16033 1604 16081 16084 16992 16993 17000 1701 1723 1741 1801 18024 18070 18081 18089 18108 18789 19000 19071 1962 2000 2061 2067 2081 2082 2086 2087 2108 2154 22 2323 2332 2345 2376 2379 2404 2480 2761 2762 3000 3001 3030 3050 3090 3135 3138 3148 3156 3157 3260 3268 3269 3299 3301 3306 3310 3388 3524 3541 3550 3551 3569 3749 3790 4000 4040 4063 4064 4120 4150 4165 4242 4321 4369 4434 4443 4531 4782 4786 4808 4840 4848 4949 5000 5005 5006 5007 5009 5010 5025 5190 5201 5357 5555 5592 5594 5595 5660 5672 5800 5801 5900 5985 6000 6001 6002 6080 6443 6550 6605 6633 6653 6667 6668 6686 6688 6697 6700 7001 7002 7016 7071 7083 7171 7218 7434 7443 7547 7548 7634 7657 7776 7777 7788 8000 8001 8008 8009 8044 8060 8069 8081 8083 8086 8087 8089 8090 8098 8099 8111 8112 8113 8139 8165 8169 8175 8189 8194 8200 8282 8291 8333 8343 8350 8383 8494 8503 8536 8545 8550 8575 8597 8606 8649 8709 8834 8880 8886 8889 8913 9000 9002 9023 9037 9042 9080 9082 9114 9158 9160 9191 9194 9208 9246 9295 9306 9308 9313 9333 9398 9400 9446 9595 9600 9761 9800 9869 9888 9898 9919 9943 9944 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • inetnum: 114.96.0.0 - 114.103.255.255
  • netname: CHINANET-AH
  • descr: CHINANET Anhui PROVINCE NETWORK
  • descr: China Telecom
  • descr: No.31,jingrong street
  • descr: Beijing 100032
  • country: CN
  • admin-c: JW89-AP
  • tech-c: JW89-AP
  • abuse-c: AC1573-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CHINANET-AH
  • mnt-routes: MAINT-CHINANET-AH
  • mnt-irt: IRT-CHINANET-CN
  • last-modified: 2021-06-15T08:06:13Z
  • irt: IRT-CHINANET-CN
  • address: No.31 ,jingrong street,beijing
  • address: 100032
  • e-mail: anti-spam@chinatelecom.cn
  • abuse-mailbox: anti-spam@chinatelecom.cn
  • admin-c: CH93-AP
  • tech-c: CH93-AP
  • mnt-by: MAINT-CHINANET
  • last-modified: 2025-11-18T00:26:23Z
  • role: ABUSE CHINANETCN
  • country: ZZ
  • address: No.31 ,jingrong street,beijing
  • address: 100032
  • phone: +000000000
  • e-mail: anti-spam@chinatelecom.cn
  • admin-c: CH93-AP
  • tech-c: CH93-AP
  • nic-hdl: AC1573-AP
  • abuse-mailbox: anti-spam@chinatelecom.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2025-11-13T14:15:15Z
  • person: Jinneng Wang
  • address: 17/F, Postal Building No.120 Changjiang
  • address: Middle Road, Hefei, Anhui, China
  • country: CN
  • phone: +86-551-2659073
  • fax-no: +86-551-2659287
  • e-mail: ahdata@189.cn
  • nic-hdl: JW89-AP
  • mnt-by: MAINT-CHINANET-AH
  • last-modified: 2014-02-21T01:19:43Z

Links to attack logs

****** bruteforce-ip-list-2021-09-10 ****** ******

Share on: