120.76.107.46 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.46 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: idei.cf www.lolka.cc api.sizegene.com 115xs.xyz g.llll.vc ns2.alidns.com

Open Ports Detected

1000 10000 10134 1023 1025 10250 1028 104 10443 1099 11 110 11000 111 11112 11211 113 11300 11371 1153 1177 122 1234 12345 1250 13 1311 1322 1337 135 14265 143 1433 14344 15 1515 1521 1599 1604 16993 17 1723 175 179 1800 1801 18081 18245 1883 19 19000 1911 1925 195 1962 1990 2000 20000 2002 2006 2008 2020 20256 2051 2053 20547 2056 2081 2082 2083 2086 2087 21 21025 2111 2121 2122 21379 2154 221 2222 2223 23 23023 2320 2323 2345 2375 2376 2404 2455 2480 25 25001 2556 25565 2569 2598 26 2628 264 2701 27015 27017 2761 2762 28015 28017 30002 30003 3001 3068 3079 3100 3103 3107 3108 311 3112 3113 31337 3211 3260 3268 3269 32764 3299 3301 3306 33060 3310 3388 3389 3402 3410 3460 35000 3503 3523 3542 3549 3551 3566 35780 3689 37 3749 37777 3780 3790 3794 389 3954 4000 4002 4022 4042 4043 4063 4064 4157 41800 4242 4243 427 4282 43 4321 44158 443 4430 4433 444 4443 4445 44818 450 4500 4506 4524 4734 4747 4786 47990 4899 49 49152 49153 4949 4999 5000 50000 5001 5005 5006 5007 5009 502 5025 503 51 51235 515 5172 5201 5269 53 54138 5431 5432 5435 5446 548 5494 55000 554 55443 55553 55554 5595 5601 5672 5801 5853 5858 5900 5906 5907 593 5984 5986 6001 6002 6010 60129 6080 61613 62078 631 6379 6443 6511 6512 6633 6653 6666 6667 6668 6697 70 7001 7003 7010 7022 7071 7171 7218 7415 7434 7443 7474 7535 7548 7634 7657 771 772 789 79 7989 80 8001 8009 8010 8022 8024 8027 8028 8037 8038 8039 8071 8081 8083 8085 8086 8087 8089 8099 8110 8126 8139 8140 8143 8181 8200 8236 8239 8241 8243 8249 8291 8333 8334 84 8402 8443 8447 8500 8554 8575 8602 8623 8637 8649 8666 8728 8733 8788 8804 8829 8830 8834 8845 8851 8865 8875 8879 8889 8891 9000 9001 9002 9005 9013 9016 9032 9036 9039 9042 9046 9050 9051 9091 9092 9095 9100 9151 9160 9191 9203 9218 9222 9389 9418 9433 9445 9500 9595 9600 9633 9761 9800 9869 9876 992 993 9943 9944 995 9950 9991 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: