120.76.107.39 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.39 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: artxz.xyz biaotv.top earrck.com pengwansu.top rainpaly.online wzxt.top sljg8.com bicore.net didisos.com www.didisos.com ilxun.com skepet.top cheapgo.shop liangyi.pro www.gohealthylife.shop ricccppp.vip xiaoyy.shop rcfq.cn dns25.hichina.com g.llll.vc dns27.hichina.com dns29.hichina.com dns31.hichina.com

Open Ports Detected

100 1000 10000 10001 1012 10134 102 1024 1025 10250 104 10443 10554 11 11000 111 11112 11210 11211 11300 1153 1167 1177 119 1200 12000 12345 1290 13 1322 1337 13579 139 14147 143 1433 14344 15 1515 1521 154 1554 1599 1604 1650 16993 17 1723 175 179 180 1800 1801 18081 18245 1883 19000 1911 1926 1962 2000 20000 2002 2008 2021 20256 2030 2051 20547 2067 2081 2082 2083 2087 21 21025 211 2121 21379 2154 2202 221 2222 2259 23 23023 2323 2332 23424 2345 2351 2404 25 25001 2550 2556 25565 2563 26 2628 264 2701 27015 27017 2761 28015 30002 30003 3001 3049 3050 3057 3061 3075 3093 3101 311 3116 31337 32400 3260 3268 3269 32764 3299 3301 3306 33060 3310 3311 3388 3389 3401 3408 3412 35000 3522 3523 3542 3548 3551 3556 3563 3569 3690 37 3749 37777 3780 3790 389 4000 4022 4040 4064 4157 41800 4200 4242 427 4282 43 4321 4369 44158 443 4430 4433 444 44818 450 4500 4506 4523 465 4700 4782 4786 47990 4840 4899 491 4911 49152 4949 50000 5001 5004 5007 5009 5010 502 5025 503 51106 51235 515 5150 5172 5190 5222 5269 53 54138 5435 5443 548 55000 554 55443 55553 55554 5560 5590 5598 5601 5672 5858 5906 5909 593 5984 5985 5986 6000 6001 60010 60030 6007 60129 61613 61616 62078 6264 631 636 6443 6510 6633 6653 666 6662 6664 6666 6667 6697 7001 7003 7071 7171 7218 7415 7434 7443 7548 7634 7654 7657 771 7779 789 79 7989 8001 8002 8003 8004 8005 8006 8007 8009 8010 8017 8044 805 8052 8056 8069 8072 8081 8083 8084 8085 8086 8087 8089 8090 81 8101 8110 8111 8126 8139 8140 8181 8184 82 8200 8248 8251 8291 83 8383 8405 8406 8410 8423 8431 8443 8444 8446 8545 8554 8586 8621 8649 8728 873 8733 8766 8782 880 8806 8832 8834 8838 8841 8846 8854 8856 8857 8864 8880 8890 9000 9001 9013 9016 9023 9029 9030 9033 9034 9042 9048 9090 9095 9100 9101 9111 9160 9191 9200 9211 9212 9218 9301 9309 9310 9418 9443 9445 95 9530 9595 9600 9633 97 9704 9743 9761 9876 99 990 992 993 994 9943 995 999 9990 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: