120.76.107.57 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.57 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protocols Attacked: SSH

Open Ports Detected

10000 10001 1012 10134 102 1023 1024 1025 10250 10443 1050 10554 10911 1099 110 11000 111 1110 11211 11300 11371 1153 1177 119 1200 12000 122 1234 12345 1322 1337 1400 14265 143 1433 14344 15 1515 1521 16030 1604 1650 16992 16993 17 175 179 1800 1801 18245 1883 19 19000 1911 1926 195 1950 1962 1981 2000 20000 2008 2020 2022 20256 2030 20547 2057 2067 2081 2083 2086 2087 21 21025 2122 21379 2154 2181 2200 221 2220 2222 2223 2250 2259 23 23023 2332 2345 2376 2379 2404 2455 2480 25 25001 25105 2550 2552 2553 25565 2560 2562 2570 2628 264 27015 27017 2762 28017 30002 30003 3001 3005 3050 3082 3088 3092 3100 3108 311 3114 3118 3119 3121 31337 32400 3260 3268 32764 3299 3301 3306 33060 3310 3388 3443 35000 3522 3548 3551 3562 35780 3690 37 37215 3780 3790 389 4022 4040 4063 4064 4117 4157 41800 4242 427 4282 43 4321 4369 443 4430 4433 444 4443 4500 4506 4646 465 4664 47463 4782 4808 4840 4848 4899 49 4911 49152 4949 50000 5006 5007 5009 50100 502 5025 503 51 51106 51235 515 5172 5201 5222 5269 53 541 54138 5432 5435 548 55000 554 55442 55443 55553 55554 5560 5567 5591 5597 5606 5608 5672 5673 5801 5858 587 5900 5908 593 5938 59417 5984 5985 5986 6000 60001 6001 6002 6004 60129 61616 62078 6264 6308 636 6443 6503 6581 6605 6653 666 6666 6667 6668 6789 6955 7001 7070 7080 7090 7171 7218 7415 7433 7434 7445 7474 7537 7548 7634 771 7887 789 79 7998 8001 8009 801 8011 8019 8021 8030 8036 8040 8050 8057 8058 8060 8072 8080 8081 8083 8085 8086 8087 8090 8091 8098 8099 8106 8108 8109 8126 8139 8181 8184 82 8200 8237 8241 8282 8334 8403 8417 8418 8419 8422 8425 843 8431 8443 8446 8447 8500 8554 8621 8623 8649 8666 8688 8728 8733 8765 8766 8779 880 8803 8809 8815 8823 8825 8834 8835 8859 8868 8880 8881 8889 8935 9000 9001 9002 9004 9005 9016 9021 9022 9024 9025 9028 9035 9039 9040 9042 9047 9049 9051 9070 9089 9090 9091 9092 9093 9094 9095 9100 9160 9202 9222 9295 9299 9301 9304 9311 9418 9443 95 9530 9633 9704 9761 9861 9869 9876 992 993 994 9943 995 9981 999 9997 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: