120.78.69.31 Threat Intelligence and Host Information

General

IP Address
120.78.69.31
IPv4 Address
Location
🇨🇳 Shenzhen, China
CN
Network
AS37963
Hangzhou Alibaba Advertising Co.,Ltd.
Threat Score
45/100
Medium Risk
bruteforceBruteforceBrute-ForceCredential-HarvestingdigitaloceanENV-HuntingNginx
Attack Intelligence
Open Ports Detected
22
Geographic Location
Country
China
City
Shenzhen
Region
Guangdong
Coordinates
22.5455, 114.0683
Network Information
ASN
AS37963
Organization
Hangzhou Alibaba Advertising Co.,Ltd.
Network
AS37963 Hangzhou Alibaba Advertising Co.,Ltd.
WHOIS Information
inetnum
120.76.0.0 - 120.79.255.255
netname
ALISOFT
descr
Alibaba (US) Technology Co., Ltd.
country
CN
admin-c
IP50-AP
tech-c
IP50-AP
abuse-c
AC1601-AP
status
ALLOCATED PORTABLE
mnt-by
MAINT-CNNIC-AP
mnt-irt
IRT-ALISOFT-CN
last-modified
2019-08-06T02:28:03Z
irt
IRT-ALISOFT-CN
address
Zhejiang, China, 310099
e-mail
abuse@alibaba-inc.com
abuse-mailbox
ipas@cnnic.cn
role
ABUSE CNNICCN
phone
+86-0571-85022088-30763
nic-hdl
ZM877-AP
person
Guowei Pan
fax-no
+86-0571-85022600
route
120.76.0.0/14
origin
AS45102
Attack Logs
Date Target Location Protocol Link
2026-05-13 Toronto, Canada SSH View Log

  • Country: China
  • Network:
  • Noticed: 7 times
  • Protocols Attacked: ssh

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2013-1548 CVE-2015-3152 CVE-2016-0652 CVE-2016-0653 CVE-2016-0654 CVE-2016-0656 CVE-2016-0657 CVE-2016-0658 CVE-2016-0659 CVE-2016-0662 CVE-2016-0663 CVE-2016-0667 CVE-2016-20012 CVE-2016-3424 CVE-2016-3440 CVE-2016-3518 CVE-2016-3588 CVE-2016-5436 CVE-2016-5437 CVE-2016-5441 CVE-2016-5442 CVE-2016-5443 CVE-2016-5628 CVE-2016-5631 CVE-2016-5632 CVE-2016-5633 CVE-2016-5634 CVE-2016-5635 CVE-2016-8286 CVE-2016-8287 CVE-2016-8289 CVE-2016-8290 CVE-2017-10165 CVE-2017-10167 CVE-2017-10284 CVE-2017-10296 CVE-2017-10311 CVE-2017-10313 CVE-2017-15906 CVE-2017-3251 CVE-2017-3256 CVE-2017-3319 CVE-2017-3320 CVE-2017-3454 CVE-2017-3455 CVE-2017-3457 CVE-2017-3458 CVE-2017-3459 CVE-2017-3460 CVE-2017-3465 CVE-2017-3467 CVE-2017-3468 CVE-2017-3529 CVE-2017-3637 CVE-2017-3638 CVE-2017-3639 CVE-2017-3640 CVE-2017-3642 CVE-2017-3643 CVE-2017-3644 CVE-2017-3645 CVE-2017-3646 CVE-2017-3650 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2018-3061 CVE-2018-3071 CVE-2019-1559 CVE-2019-2614 CVE-2019-2627 CVE-2019-2683 CVE-2019-2730 CVE-2019-2731 CVE-2019-2737 CVE-2019-2738 CVE-2019-2739 CVE-2019-2740 CVE-2019-2741 CVE-2019-2755 CVE-2019-2757 CVE-2019-2805 CVE-2019-2819 CVE-2019-2910 CVE-2019-2911 CVE-2019-2922 CVE-2019-2923 CVE-2019-2924 CVE-2019-2969 CVE-2019-2974 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2019-7317 CVE-2020-14145 CVE-2020-14539 CVE-2020-14550 CVE-2020-14559 CVE-2020-14672 CVE-2020-14760 CVE-2020-14765 CVE-2020-14769 CVE-2020-14793 CVE-2020-14812 CVE-2020-14814 CVE-2020-14830 CVE-2020-14837 CVE-2020-14839 CVE-2020-14845 CVE-2020-14846 CVE-2020-14852 CVE-2020-14867 CVE-2020-15358 CVE-2020-15778 CVE-2020-1967 CVE-2020-1971 CVE-2020-2574 CVE-2020-2579 CVE-2020-2752 CVE-2020-2763 CVE-2020-2779 CVE-2020-2780 CVE-2020-2804 CVE-2020-2812 CVE-2020-2814 CVE-2020-2901 CVE-2020-2922 CVE-2021-2001 CVE-2021-2007 CVE-2021-2010 CVE-2021-2022 CVE-2021-2060 CVE-2021-22570 CVE-2021-2356 CVE-2021-36368 CVE-2021-41617 CVE-2022-21417 CVE-2022-21444 CVE-2023-21977 CVE-2023-21980 CVE-2023-22007 CVE-2023-22015 CVE-2023-22026 CVE-2023-22028 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728 CVE-2026-35385 CVE-2026-35386 CVE-2026-35387 CVE-2026-35388 CVE-2026-35414

Disclaimer
This page contains threat intelligence information for the IPv4 address 120.78.69.31 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.