116.62.100.197 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 116.62.100.197 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: awsindia, bruteforce, cyber security, ioc, malicious, Nextray, phishing, redis, Scanner, scanning, smtp, ssh, tcp, Webattack

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network:
  • Noticed: 49 times
  • Protocols Attacked: redis
  • Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, India, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Malware Detected on Host

Count: 1 6992ec175bc0cc586bfb558a9a23ccdbf107c548dd014eb22c9cefb833297caa

Open Ports Detected

10001 10006 10021 10032 10035 10046 10047 10134 102 1022 1023 1025 10250 10254 10302 10444 10554 1099 110 11000 11112 11210 11211 11300 11596 1167 11681 1177 1200 12000 12016 12117 12132 12146 12172 12177 12186 12191 12200 12205 12264 12287 12295 12302 12308 12328 12345 12355 12359 12366 12371 12374 12383 12387 12407 12433 12438 12471 12487 12493 12496 12564 12565 12579 12583 12590 12601 13 1337 1364 13780 14024 14101 1414 1433 14344 14401 1454 1455 15 1515 1521 1599 16023 16035 16037 16042 16051 16072 16086 16088 16094 16103 17 1700 17184 1723 17772 179 1800 18006 18010 18019 18024 18046 18056 18060 18065 18081 18092 18110 18264 1883 19 19000 19022 19084 1911 1926 195 1962 1966 1974 1975 2000 20000 2002 20030 2006 2008 20100 20106 20110 2016 20201 2053 20547 2067 2081 2082 2086 2087 20880 21 2101 2109 2111 21242 21255 21295 2130 21308 21500 2154 2156 2196 2201 2202 2221 22380 23 2376 2404 25 25000 25002 25010 2552 25565 2562 2601 264 27015 27017 27571 2761 28015 30002 30003 3001 3008 30111 30123 3047 3050 3052 3066 3104 3105 311 3115 3141 31444 3158 3161 3164 3167 3171 3172 3173 3184 32101 3221 3260 3268 3269 3299 3301 3306 3307 3310 3352 3388 3389 3498 35000 35004 3522 3551 35524 3562 3572 36505 36984 37 37777 3780 3790 389 39001 4000 4021 4022 40471 4063 4072 4100 4150 4157 41800 42208 42235 4250 427 4282 43 4333 4344 4369 44158 442 443 44307 4433 4434 44340 4438 444 4457 446 44818 4500 4506 4523 45444 45668 4643 465 4786 47984 47990 4899 4911 50000 5001 50010 50014 5003 5004 5007 50085 5009 50100 50101 50160 502 50202 503 50443 5089 50995 50996 50999 51200 515 5172 5201 5246 5253 5261 5266 5269 5275 5277 5279 53 53200 54022 54138 5454 548 554 55443 55554 5567 5592 5594 5597 5603 5606 5671 5672 57779 587 5902 5904 5909 5915 5938 59443 5988 6000 6001 60023 6004 6005 60129 61613 61616 62078 62237 632 63210 63256 636 6379 6380 6400 646 6510 6513 6514 6543 6602 666 6666 6667 6668 6748 6779 70 7001 7004 7082 7084 7105 7171 7218 743 7434 7443 7548 771 7801 789 80 8004 8009 8040 8053 8063 8081 8083 8085 8087 8089 8099 8104 8119 8127 8130 8146 8156 8172 8177 8184 8200 8222 8280 8291 8333 8415 843 8443 8446 8455 8458 8464 8482 8513 8514 8519 8548 8577 8587 8589 8598 8649 8680 87 8728 873 8743 8837 8838 8849 8852 8871 8878 888 8889 9001 9010 9027 9029 9031 9037 9046 9051 9057 9064 9071 9076 9087 9092 9098 9100 9109 9119 9129 9143 9145 9150 9151 9163 9180 9218 9221 9242 9299 9303 9304 9306 9311 9315 9333 9400 9418 9456 9465 9530 9600 9633 9773 9802 9804 9876 9898 990 993 9943 9991 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2024-6387 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • inetnum: 116.62.0.0 - 116.62.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:56:56Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 116.62.64.0/18
  • descr: CNC Group CHINA169 Fujian Province Network
  • descr: Addresses from CNNIC(KUANCOM)
  • country: CN
  • origin: AS4837
  • mnt-by: MAINT-CNCGROUP-RR
  • last-modified: 2008-09-04T07:55:16Z

Links to attack logs

****** ****** awsindia-redis-bruteforce-ip-list-2022-05-13 ****** awsindia-redis-bruteforce-ip-list-2022-05-15

Share on: