119.37.199.177 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Host and Network Information

  • Tags: awsau, awsjap, brute force, bruteforce, digital ocean, mssql, ssh, tsec
  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: blocklist_net_ua, ciarmy

  • Country: China
  • Network: AS4134 chinanet
  • Noticed: 32 times
  • Protcols Attacked: mssql
  • Countries Attacked: Australia, Japan, Singapore, United Kingdom
  • Passive DNS Results: api.ymkjgc.com luyi6.com luyi5.com ka.getkokomi.com

Open Ports Detected

13 17 3306 33060 3388 3389 443 593 5985 80 8009

CVEs Detected

CVE-2014-4078 CVE-2015-1635 CVE-2019-0708

Map

Whois Information

  • inetnum: 119.37.192.0 - 119.37.255.255
  • netname: SRT
  • descr: Silk Road Technologies co., ltd
  • descr: Hangzhou, Zhejiang, P.R.China
  • country: CN
  • admin-c: LHM26-AP
  • tech-c: SRT8-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-CNNIC-CN
  • last-modified: 2020-06-15T23:11:19Z
  • irt: IRT-CNNIC-CN
  • address: Beijing, China
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-06-16T01:39:57Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Lin HuiMing
  • address: 2 Longtan Road, Cangqian street, Yuhang District, Hangzhou City, Zhejiang Province, 310012,China
  • country: CN
  • phone: +86-13735810001
  • e-mail: [email protected]
  • nic-hdl: LHM26-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-06-15T06:00:03Z
  • person: Chu Tao
  • address: 2 Longtan Road, Cangqian street, Yuhang District, Hangzhou City, Zhejiang Province,310012,China
  • country: CN
  • phone: +86-0-13735810001-78006
  • e-mail: [email protected]
  • nic-hdl: SRT8-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-06-15T06:04:02Z

Links to attack logs

dolondon-mssql-bruteforce-ip-list-2021-11-25 awsjap-mssql-bruteforce-ip-list-2022-02-08 vultrparis-mssql-bruteforce-ip-list-2022-05-01 awsjap-mssql-bruteforce-ip-list-2022-04-24 awsau-mssql-bruteforce-ip-list-2022-02-11 dosing-mssql-bruteforce-ip-list-2022-03-06 dolondon-mssql-bruteforce-ip-list-2022-03-20