116.62.194.43 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 116.62.194.43 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: awsbah, bruteforce, cyber security, ioc, malicious, Nextray, phishing, redis, Scanner, scanning, smtp, ssh, tcp, Webattack

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network:
  • Noticed: 50 times
  • Protocols Attacked: redis
  • Countries Attacked: Bahrain, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

10000 10001 10002 10023 10034 10035 10036 10037 10049 10083 10087 10134 102 10225 1025 10250 104 10554 1080 10810 10936 1099 11 11000 11001 111 11210 11211 11288 113 11481 1153 11681 1177 119 1200 121 12113 12134 12138 12139 12161 12166 12188 12197 122 12233 12242 12247 12258 12261 12269 12303 12311 12318 12325 12334 12336 1234 12341 12397 12401 12402 12416 12432 12433 12434 12465 12480 12492 12513 12542 12548 12569 12581 1291 12980 13 14006 14082 1414 14265 1433 14330 14344 14406 1452 14523 1460 15 15002 15042 1515 1521 1588 1599 16034 1604 16044 16046 16049 16402 16601 16993 17 175 17771 17779 179 1800 18008 1801 18013 18020 18030 18033 18035 18037 18041 18060 18094 18098 18105 18245 18765 1883 19 19014 19082 1911 1926 195 1950 1951 1954 1956 1962 1964 1988 2000 20000 2002 20040 2008 20151 20256 20440 2057 2061 2062 2063 2067 2081 2083 2087 20880 21025 2122 21238 21264 21268 21296 21307 21328 21329 2134 21357 21379 2181 221 2248 22705 23023 2323 2332 24 2455 24808 25 25001 25006 2553 2556 25565 2567 26 2628 27571 2762 28015 28443 30003 3001 3012 30122 3056 3058 3063 3065 3076 3078 3085 3089 311 3111 3113 3114 3133 31337 3136 3138 31380 3146 3161 3163 3164 3177 3179 32001 32101 3260 3268 32764 3299 3301 3306 33060 3310 3389 340 3407 35000 35002 35241 3551 3558 3560 3568 37 37777 3842 389 3922 4000 4064 40894 4095 4104 4150 4242 4282 43 43200 4321 4369 44158 4434 444 44510 4457 4459 4500 4572 46001 4620 46443 4646 465 4700 4786 4840 4899 491 4911 49501 49502 49688 49694 50000 50007 5001 5010 50100 50101 50102 502 503 5053 5089 50999 51004 513 5222 5224 5245 5251 5268 5269 52951 53 5321 53481 5351 53805 541 5435 5440 55443 55470 5552 55554 55555 5558 5591 5613 5672 5680 57783 58378 5853 591 5910 5913 5920 5986 5988 5993 6000 6001 6002 60023 61613 61616 62078 6264 63210 63256 63260 6348 636 6662 6666 6667 6668 6697 6700 6748 6789 7000 7001 7025 7080 7171 7218 7403 7415 7434 7443 7535 7548 7654 7687 771 789 79 8004 8006 8009 8013 8035 8037 8041 8065 8085 8087 8089 8092 8105 811 8118 8139 8140 8142 8181 8194 8200 8241 8322 8333 84 8402 8409 8426 8428 8434 8460 8463 8482 8493 8500 853 8553 8554 8561 8563 8564 8566 8575 8584 8589 8598 8605 8637 8708 8728 8791 8816 8834 8844 8849 8871 8877 8889 8891 9000 9004 9006 9012 9015 902 9022 9051 9081 9097 9100 9103 9115 9124 9142 9151 9160 9162 9183 9185 9193 9194 9236 9251 9253 9289 9300 9306 9313 9333 9383 9398 9418 9455 95 9529 9600 9761 9802 9876 9898 9900 9902 992 9922 9928 995 999 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-10088 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • inetnum: 116.62.0.0 - 116.62.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:56:56Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 116.62.128.0/17
  • descr: CNC Group CHINA169 Fujian Province Network
  • descr: Addresses from CNNIC(KUANCOM)
  • country: CN
  • origin: AS4837
  • mnt-by: MAINT-CNCGROUP-RR
  • last-modified: 2008-09-04T07:55:16Z

Links to attack logs

awsbah-redis-bruteforce-ip-list-2022-04-08 ****** ****** ******

Share on: