120.76.107.58 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 120.76.107.58 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

Open Ports Detected

10000 10001 10081 10134 102 1023 1024 10250 1026 104 10443 10554 10909 1099 11 111 1111 1119 11210 11211 113 11300 11434 1153 1177 119 12000 12345 13 1322 13579 1400 14147 14265 143 1433 14344 1494 1515 1521 1599 16030 1723 1741 179 1800 1801 18081 18245 1883 19000 19071 1911 1926 195 1951 1962 1990 2000 20000 2002 2008 20256 2053 2054 2066 2080 2081 2082 2083 2087 21 21025 211 2121 21379 2154 2181 221 222 2222 2250 23 23023 2320 2323 2345 2376 2404 2455 2480 25 25001 2552 2558 2626 264 27015 27017 2761 2762 28017 30002 30003 3001 3050 3051 3059 3063 3069 3080 3093 3095 3098 3099 311 31337 32400 3268 3269 32764 3299 3301 3306 33060 3310 3388 3389 3403 3405 3407 3443 35000 3521 3541 3551 3557 3560 3567 3569 3689 37 37215 3749 37777 3780 3790 3793 389 4000 4063 4064 4157 41800 4242 4282 43 4321 4369 44158 443 4430 4433 444 4443 4445 44818 4500 4506 4545 4646 4700 4747 4786 47990 4840 4899 49 4911 49152 4949 50000 5001 5005 5006 5007 50070 5009 5010 50100 502 5025 503 5070 51235 5172 5201 5209 5222 5269 5280 53 54138 5432 5435 548 5494 55000 554 55442 55443 55553 55554 5560 5601 5607 5672 56981 5858 587 5900 5909 593 5938 5984 5986 6000 6001 60010 6002 6003 6006 60129 6080 61613 61616 62078 631 636 6443 6590 6605 6633 6653 666 6662 6666 6667 6668 6789 6887 6998 70 7000 7004 7010 7022 7071 7170 7171 7415 7434 7500 7548 7634 771 777 7779 789 79 7999 8001 8002 8005 8009 8018 8020 8023 8030 8032 8038 8048 8052 8056 8060 8080 8081 8083 8085 8086 8087 8089 8095 8097 8099 8101 8108 8139 8181 8200 8237 8251 8291 8333 8383 84 8404 8408 8417 8432 8433 8442 8443 85 8500 8554 8575 86 8602 8649 8728 873 8782 8790 8791 8802 8816 8817 8820 8832 8834 8839 8845 8854 8863 888 8880 8889 8990 9000 9001 9002 9004 9014 9026 9046 9051 9090 9091 9092 9095 9097 9100 9106 9109 9151 9160 9191 9199 9209 9219 9221 9222 9303 9306 9309 9418 9443 9500 9530 9600 9633 9682 9743 9800 9876 990 992 993 994 9943 9950 9994 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767

Map

Whois Information

  • inetnum: 120.76.0.0 - 120.79.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:00Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: yitian.gaoyt@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: guowei.pangw@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 120.76.0.0/14
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z
  • route: 120.76.0.0/14
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-06T02:28:03Z

Links to attack logs

****** ****** ******

Share on: