120.76.107.51 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.51 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: yycm.love themain.top yuanwenhui888.top mailangpack.com jiucaikeji.top prod.asia xn–ciqpnp3ab3k8uvpgh68xvssh1z.ink liangyujx.com www.pailitto.cn yesnypqh.top biofda.com ru.artfty.com www.pro8617888112910.asia jmtitanmec.com dns12.hichina.com www.xn--gmq148b20i91g.cc dns14.hichina.com yushen.shop dns16.hichina.com dns10.hichina.com

Open Ports Detected

100 10000 10001 10134 102 1023 1025 1028 10443 10554 10909 10911 11 110 11000 111 11112 11210 11211 113 11300 11371 11434 1153 1177 119 1200 12000 122 1234 12345 13 1337 135 13579 139 14147 14265 143 1433 14344 1471 15 1515 1521 154 1599 16010 1604 16992 16993 17 1723 175 1800 18081 18245 1833 19000 19071 1926 195 20 2000 20000 2002 2008 2010 20256 20547 2067 2081 2082 2083 2086 2087 21 21025 2121 21379 2150 2154 221 2222 22222 23 23023 2323 2332 2345 2375 2376 2404 2455 25001 2555 25565 2561 2601 2628 27015 27017 2762 28015 28017 30002 30003 3001 3048 3050 3057 3062 3063 3079 3082 3085 3092 3104 3106 3108 311 3112 3115 31337 3260 3268 3269 32764 3299 33060 3307 3310 3388 3389 3404 3406 35000 3542 3551 3554 3560 3561 3568 35780 3689 37 37215 3749 37777 3780 3790 389 4000 4010 4022 4042 4063 4064 4157 4242 427 4282 43 4321 4369 443 4430 4433 444 4443 4445 4500 4506 465 4700 4747 47990 4840 49 4911 49152 4949 50000 5001 5004 5005 5007 50070 5009 5010 502 5025 503 51235 5150 5172 5201 522 5269 53 54138 5432 5435 5454 548 55000 5542 55442 55443 55553 55554 5560 5594 5606 56981 5801 5858 5910 593 5938 59417 5984 5986 6000 6001 60010 6002 6004 6006 60129 6080 61613 62078 6262 631 636 6379 6443 6512 6565 6600 6633 6650 6653 666 6664 6666 675 6955 70 7001 7005 7080 7171 7218 7415 7434 7443 7445 7474 7500 7547 7548 7634 771 7778 7779 789 79 7989 80 8001 8005 8018 8029 8031 8040 8041 8045 8046 8060 8069 8071 8081 8083 8085 8086 8087 8089 8098 8099 8101 8108 8112 8126 8139 8140 8181 8184 8200 8238 8248 8251 8291 8333 84 8422 8428 8429 8443 8445 8447 8500 8554 86 8622 8649 8728 873 8782 8789 8791 8804 8809 8811 8814 8818 8820 8822 8833 8834 8865 8871 8873 888 8880 8889 8890 8989 8993 90 9000 9001 9002 9016 9017 9020 9034 9037 9039 9042 9088 9091 9092 9095 9100 9102 9104 9108 9151 9191 9200 9210 9251 9295 9299 9305 9306 9418 9443 9527 9530 9600 9633 9761 9876 992 993 9943 995 9950 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: