117.159.25.229 Threat Intelligence - China | IP Address Lookup
ipinfopage
Share on:
General
IP Address
117.159.25.229
Location
🇨🇳 China
Network
AS24445
Threat Score
50/100
Attack Intelligence
MITRE ATT&CK Techniques
T1059 - Command and Scripting Interpreter, T1105 - Ingress Tool Transfer
Noticed
9 times
Protocols Attacked
combined portscan
Countries Attacked
Finland, France, Germany, Poland, United States of America
Open Ports Detected
1002212321223000500150035006500750095010538888
Geographic Location
Country
China
City
Unknown
Region
Unknown
Coordinates
34.7732, 113.7220
Network Information
ASN
AS24445
Organization
Henan Mobile Communications Co.,Ltd
Network
AS24445 Henan Mobile Communications Co.,Ltd
Associated CVEs
WHOIS Information
inetnum
117.144.0.0 - 117.159.255.255
netname
CMNET
descr
China Mobile Communications Corporation
country
CN
org
ORG-CM1-AP
admin-c
ct74-AP
tech-c
HL1318-AP
abuse-c
AC2006-AP
status
ALLOCATED PORTABLE
mnt-by
APNIC-HM
mnt-lower
MAINT-CN-CMCC
mnt-routes
MAINT-CN-CMCC
mnt-irt
IRT-CHINAMOBILE-CN
last-modified
2025-12-05T04:13:54Z
irt
IRT-CHINAMOBILE-CN
address
China Mobile Communications Corporation
e-mail
abuse@chinamobile.com
abuse-mailbox
abuse@chinamobile.com
organisation
ORG-CM1-AP
org-name
China Mobile Communications Group Co., Ltd
org-type
LIR
phone
+86-10-5268-6688
fax-no
+86-10-5261-6187
mnt-ref
APNIC-HM
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2026-09-04 | Digitaloceantoronto Combined | Multiple | View Log |
| 2026-09-03 | Digitaloceantoronto Combined | Multiple | View Log |
| 2026-09-02 | Digitaloceantoronto Combined | Multiple | View Log |
Disclaimer
This page contains threat intelligence information for the IPv4 address 117.159.25.229 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only, and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.