120.76.107.48 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.48 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

Malware Detected on Host

Count: 1 82db3a4201e287cc31d029c0a514f23278723c3ed4836c70cd08e3239a5dec8a

Open Ports Detected

100 10000 10001 10081 1012 10134 102 1023 1024 1025 10250 104 10443 10909 10911 1099 11 11000 111 11112 11210 11211 113 11300 11371 1153 1177 119 1200 12000 122 12345 1311 1322 1337 1344 135 13579 1388 14147 14265 143 1433 14344 15 1500 1515 1604 16992 16993 17 17000 1723 1741 175 179 180 1800 1801 18081 18245 1833 1883 19 19000 1911 1925 1926 1947 195 1950 1962 2000 2002 2008 2012 2020 2053 20547 2056 2065 2067 2077 2079 2082 2083 2086 2087 2095 21 21025 211 2121 21379 2154 2181 2200 221 222 22222 225 2323 2332 2345 2351 2376 2404 2455 25 25001 2550 2551 2554 25565 26 264 2701 27015 27017 2761 2762 28015 30002 30003 3001 3005 3050 3059 3066 3070 3074 3078 3092 3094 311 3121 3129 32400 3260 3268 3269 32764 3299 3301 3306 33060 3310 3337 3352 3388 3389 3412 3443 35000 3521 3541 3551 3561 35780 37 3780 3790 38 389 4000 4022 4043 4063 4064 4157 41800 4242 427 4282 43 4321 443 4430 4433 444 4443 44818 4500 4506 4524 4550 465 4782 4786 47990 4808 4840 4899 49 491 4911 49152 4949 4999 50000 5001 50050 5006 5007 50070 5009 5010 50100 502 5025 503 5090 51106 51235 515 5172 5201 522 5222 53 54138 5432 548 55000 554 55443 55553 55554 5560 5598 5601 5608 5672 5858 5900 593 5938 5984 5986 6000 60001 6001 6002 6008 60129 6080 61613 62078 636 6363 6379 6560 6580 6602 6633 6653 666 6666 6667 6668 6697 675 6887 7001 7071 7080 7081 7171 7218 7415 7443 7474 7535 7548 771 7778 7788 789 79 7979 7989 8001 8007 8009 8010 8017 8040 805 8069 8072 8081 8083 8085 8086 8087 8089 8095 8096 8098 81 8100 8107 8112 8126 8139 8140 8180 8181 8200 8241 8291 83 84 8406 8416 8420 8421 8429 843 8445 8500 8545 8554 8728 873 8766 8767 8779 8808 8811 8815 8824 8834 8839 8843 8855 8862 8870 8872 8876 8879 8880 8881 8889 8890 8991 8993 9000 9001 9002 9003 9030 9034 9042 9051 9091 9092 9094 9095 9097 9100 9106 9111 9151 9160 9203 9213 9251 9295 9306 9309 9418 9443 9530 9600 9633 97 9761 9765 9876 990 993 9943 995 9981 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2007-3205 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2013-2220 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-10088 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: