117.133.39.82 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: Nextray, Scanner, Webattack, awsau, awsindia, awsjap, bruteforce, cyber security, ioc, malicious, phishing, redis, scanning, smtp, ssh, tcp, tsec
  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS56048 china mobile communicaitons corporation
  • Noticed: 42 times
  • Protcols Attacked: redis
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, India, Japan, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: www.techreform.net

Malware Detected on Host

Count: 1 0720ff87f6a53012bd1e12ff016a1b060a9d4f2a664b0358afb1b3fa4be6110f

Open Ports Detected

111 22 3306 6379 7071 80 8081 8083 81 8181 8182 9090 9191

CVEs Detected

CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617

Map

Whois Information

  • inetnum: 117.128.0.0 - 117.191.255.255
  • netname: CMNET
  • descr: China Mobile Communications Corporation
  • descr: Mobile Communications Network Operator in China
  • descr: Internet Service Provider in China
  • country: CN
  • org: ORG-CM1-AP
  • admin-c: ct74-AP
  • tech-c: HL1318-AP
  • abuse-c: AC2006-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CN-CMCC
  • mnt-routes: MAINT-CN-CMCC
  • mnt-irt: IRT-CHINAMOBILE-CN
  • last-modified: 2020-07-15T13:10:03Z
  • irt: IRT-CHINAMOBILE-CN
  • address: China Mobile Communications Corporation
  • address: 29, Jinrong Ave., Xicheng District, Beijing, 100032
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CT74-AP
  • tech-c: CT74-AP
  • mnt-by: MAINT-CN-CMCC
  • last-modified: 2023-02-01T00:26:34Z
  • organisation: ORG-CM1-AP
  • org-name: China Mobile
  • country: CN
  • address: 29, Jinrong Ave.
  • phone: +86-10-5268-6688
  • fax-no: +86-10-5261-6187
  • e-mail: [email protected]
  • mnt-ref: APNIC-HM
  • mnt-by: APNIC-HM
  • last-modified: 2019-12-27T12:55:58Z
  • role: ABUSE CHINAMOBILECN
  • address: China Mobile Communications Corporation
  • address: 29, Jinrong Ave., Xicheng District, Beijing, 100032
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: CT74-AP
  • tech-c: CT74-AP
  • nic-hdl: AC2006-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-02-01T00:26:44Z
  • role: chinamobile tech
  • address: 29, Jinrong Ave.,Xicheng district
  • address: Beijing
  • country: CN
  • phone: +86 5268 6688
  • fax-no: +86 5261 6187
  • e-mail: [email protected]
  • admin-c: HL1318-AP
  • tech-c: HL1318-AP
  • nic-hdl: ct74-AP
  • notify: [email protected]
  • mnt-by: MAINT-cn-cmcc
  • abuse-mailbox: [email protected]
  • last-modified: 2016-11-29T09:37:27Z
  • person: haijun li
  • nic-hdl: HL1318-AP
  • e-mail: [email protected]
  • address: 29,Jinrong Ave, Xicheng district,beijing,100032
  • phone: +86 1052686688
  • fax-no: +86 10 52616187
  • country: CN
  • mnt-by: MAINT-CN-CMCC
  • abuse-mailbox: [email protected]
  • last-modified: 2016-11-29T09:38:38Z
  • route: 117.133.0.0/16
  • descr: China Mobile communications corporation
  • origin: AS9808
  • mnt-by: MAINT-CN-CMCC
  • last-modified: 2009-02-17T02:59:13Z

Links to attack logs

awsindia-redis-bruteforce-ip-list-2022-04-16 awsau-redis-bruteforce-ip-list-2022-04-02 awsindia-redis-bruteforce-ip-list-2022-05-11 awsjap-redis-bruteforce-ip-list-2022-04-27 awsindia-redis-bruteforce-ip-list-2022-03-24 awsindia-redis-bruteforce-ip-list-2022-04-02 redis-bruteforce-ip-list-2022-07-19 awsindia-redis-bruteforce-ip-list-2022-04-12 awsjap-redis-bruteforce-ip-list-2022-04-23 awsjap-redis-bruteforce-ip-list-2022-03-27 awsjap-redis-bruteforce-ip-list-2022-04-18 redis-bruteforce-ip-list-2022-08-08 awsindia-redis-bruteforce-ip-list-2022-04-19 awsindia-redis-bruteforce-ip-list-2022-05-13 awsindia-redis-bruteforce-ip-list-2022-05-06 awsindia-redis-bruteforce-ip-list-2022-05-23