120.76.107.47 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.47 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: justasimplefjsuw4.cfd rsagf.com rumarts.com www.rumarts.com 38365.uk 321321.uk 876876.uk 123123.uk 163163.uk 133133.uk 126126.uk 135135.uk 520520.uk ns7.alidns.com g.llll.vc

Open Ports Detected

10000 10001 10081 10134 102 1023 1024 1025 10250 104 10554 10909 10911 1099 110 11000 111 11112 11210 11211 113 11300 11371 1153 1177 119 1200 12000 122 1234 12345 13 1311 1337 135 13579 1400 14147 14265 143 1433 14344 1471 15 1515 1521 1599 16010 16030 1604 16992 16993 17 1723 175 179 1800 1801 18081 18245 1883 19 19000 1911 1926 195 1950 199 1990 2000 20000 2002 2008 20256 2051 20547 2064 2069 2079 2081 2083 2086 2087 2095 2100 21025 2121 21379 2154 2181 221 222 2222 2223 2225 2232 2250 23 23023 2323 2332 2345 2375 2376 2382 2404 2455 25 25001 2551 2552 2556 25565 2558 2628 264 27015 27017 2761 2762 28015 28017 2985 30002 30003 3001 3053 3061 3071 3085 3090 3091 3098 3108 311 3111 3115 31337 3200 3260 3268 3299 3301 3306 33060 3310 3311 3333 3389 3400 3404 3407 3408 3410 3479 35000 3522 3551 3552 3558 3561 3566 37 37215 3749 37777 3780 3790 3791 3792 389 3953 4000 4022 4040 4063 4064 4117 4157 41800 4242 427 4282 43 4321 4369 44158 443 4430 4433 444 44818 449 4500 4506 4524 465 4664 4786 47990 4899 49 4911 4949 50000 5001 5005 50050 5006 5007 50070 5009 5010 50100 502 5025 5080 51106 51235 515 5172 5201 5209 522 5222 5269 53 5321 5431 5432 5435 5446 5454 548 5494 55000 554 55443 55553 5595 5607 5672 5858 5910 593 5938 5985 5986 6000 6001 6002 60030 6007 6008 60129 62078 636 6379 6443 6581 6633 6653 666 6664 6666 6667 6668 6697 6998 70 7001 7022 7071 7171 7218 7415 7433 7434 7443 7474 7537 7547 7634 771 7887 789 79 7998 8001 8007 8009 8012 8023 8032 8033 8035 8069 8081 8083 8085 8086 8087 8089 8099 81 8100 8112 8126 8139 8140 8180 8181 8200 8236 8291 8333 8411 8412 8421 8443 8500 8513 8545 8553 8585 8590 8649 8728 8765 8767 8801 8804 8810 8812 8828 8833 8834 8835 8841 8845 8846 8851 8855 8861 8864 8868 8870 888 8880 8887 8889 8890 9000 9001 9002 9008 9033 9034 9036 9040 9042 9051 9090 9091 9092 9095 9100 9111 9151 9160 92 9299 9305 9418 9443 9530 9600 9606 9633 9690 97 9761 990 992 993 9943 9950 9981 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: