139.224.142.109 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 139.224.142.109 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 15/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: China
- Network: AS37963 hangzhou alibaba advertising co. ltd.
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: djwsj.xyz artxz.xyz biaotv.top pengwansu.top rainpaly.online wzxt.top sljg8.com bicore.net didisos.com www.didisos.com ilxun.com skepet.top cheapgo.shop liangyi.pro www.gohealthylife.shop ricccppp.vip xiaoyy.shop rcfq.cn dns25.hichina.com g.llll.vc dns27.hichina.com dns29.hichina.com dns31.hichina.com
Open Ports Detected
10000 10001 10134 1023 1025 10250 1028 104 10443 10909 10911 1099 11 110 11000 111 1110 11112 11210 11211 113 11300 11371 11434 1167 119 1200 12000 122 12345 13 1311 1337 13443 135 13579 1388 14147 14265 143 1433 14344 1494 1515 1521 16010 1604 16993 17 1723 175 179 1800 1801 18081 18245 1883 19 19000 1901 1911 1935 1947 195 1962 20 2000 20000 2002 2008 2012 20256 2030 20547 2067 2081 2082 2083 2086 2087 21 21025 2111 2121 21379 2154 2181 221 2222 2232 23023 2323 2332 2345 2376 2404 2455 25 25001 25565 2557 2567 2570 26 2628 263 264 2650 27015 27017 2709 2761 2762 28015 30002 30003 3001 3048 3050 3060 3062 3063 3074 3082 3086 3092 3098 3099 3110 3119 3120 3129 31337 3221 3260 3268 3269 32764 3299 3306 33060 3310 3333 3388 3389 3402 3403 3404 3407 35000 3542 3550 3551 3560 3690 37 3749 37777 3780 3790 38 389 3953 4000 4022 4040 4063 4064 4157 4242 427 4282 43 4321 4369 443 4430 444 4443 4444 448 44818 4482 4500 4505 4506 4550 4646 465 47463 47990 49 49152 4949 50000 5001 5005 5006 5007 5009 5010 50100 502 5025 503 51106 51235 515 5172 5201 5222 5269 53 54138 5435 548 55000 554 55442 55443 55553 55554 5594 5596 5597 5605 5672 5822 5858 5909 593 5938 5984 5986 6000 60001 6001 6002 6006 6009 60129 6080 6102 61613 61616 62078 636 6379 6443 6464 6561 6603 6653 666 6662 6664 6666 6667 6668 6697 70 7001 7071 7171 7218 7415 7434 7443 7510 7537 7547 7548 7634 771 7779 79 8001 8002 8012 8040 8043 8046 8060 8071 8083 8085 8086 8087 8089 8099 8112 8126 8139 8140 8200 8222 8251 8291 8333 8401 8407 8417 8420 8423 843 8500 8545 8554 8575 8649 8663 8728 873 8765 8782 8801 8811 8813 8815 8848 8854 8856 8863 8865 8868 8877 8880 8889 8890 9000 902 9020 9029 9035 9047 9051 9070 9091 9094 9100 9102 9111 9119 9136 9151 9191 9199 9295 9301 9302 9306 9389 9418 9443 95 9530 9600 9633 9876 992 9943 995 9990 9993 9998 9999
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767
Map
Whois Information
- NetRange: 139.224.0.0 - 139.224.255.255
- CIDR: 139.224.0.0/16
- NetName: APNIC-ERX-139-224-0-0
- NetHandle: NET-139-224-0-0-1
- Parent: NET139 (NET-139-0-0-0-0)
- NetType: Early Registrations, Transferred to APNIC
- OriginAS:
- Organization: Asia Pacific Network Information Centre (APNIC)
- RegDate: 2010-11-03
- Updated: 2010-11-17
- Comment: This IP address range is not registered in the ARIN database.
- Comment: This range was transferred to the APNIC Whois Database as
- Comment: part of the ERX (Early Registration Transfer) project.
- Comment: For details, refer to the APNIC Whois Database via
- Comment:
- Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
- Comment: for the Asia Pacific region. APNIC does not operate networks
- Comment: using this IP address range and is not able to investigate
- Comment: spam or abuse reports relating to these addresses. For more
- Ref: https://rdap.arin.net/registry/ip/139.224.0.0
- OrgName: Asia Pacific Network Information Centre
- OrgId: APNIC
- Address: PO Box 3646
- City: South Brisbane
- StateProv: QLD
- PostalCode: 4101
- Country: AU
- RegDate:
- Updated: 2012-01-24
- Ref: https://rdap.arin.net/registry/entity/APNIC
- OrgAbuseHandle: AWC12-ARIN
- OrgAbuseName: APNIC Whois Contact
- OrgAbusePhone: +61 7 3858 3188
- OrgAbuseEmail: search-apnic-not-arin@apnic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- OrgTechHandle: AWC12-ARIN
- OrgTechName: APNIC Whois Contact
- OrgTechPhone: +61 7 3858 3188
- OrgTechEmail: search-apnic-not-arin@apnic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- inetnum: 139.224.0.0 - 139.224.255.255
- netname: ALISOFT
- descr: Aliyun Computing Co., LTD
- descr: 5F, Builing D, the West Lake International Plaza of S&T
- descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- country: CN
- admin-c: ZM1015-AP
- tech-c: ZM877-AP
- tech-c: ZM876-AP
- tech-c: ZM875-AP
- abuse-c: AC1601-AP
- status: ALLOCATED PORTABLE
- mnt-by: MAINT-CNNIC-AP
- mnt-irt: IRT-ALISOFT-CN
- last-modified: 2023-11-28T00:57:06Z
- irt: IRT-ALISOFT-CN
- address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- e-mail: didong.jc@alibaba-inc.com
- abuse-mailbox: didong.jc@alibaba-inc.com
- admin-c: ZM877-AP
- tech-c: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2021-09-05T23:38:36Z
- role: ABUSE CNNICCN
- address: Beijing, China
- country: ZZ
- phone: +000000000
- e-mail: ipas@cnnic.cn
- admin-c: IP50-AP
- tech-c: IP50-AP
- nic-hdl: AC1601-AP
- abuse-mailbox: ipas@cnnic.cn
- mnt-by: APNIC-ABUSE
- last-modified: 2020-05-14T11:19:01Z
- person: Li Jia
- address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
- country: CN
- phone: +86-0571-85022088
- e-mail: jiali.jl@alibaba-inc.com
- nic-hdl: ZM1015-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2014-07-30T02:02:01Z
- person: Guoxin Gao
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022600
- fax-no: +86-0571-85022600
- e-mail: anti-spam@list.alibaba-inc.com
- nic-hdl: ZM875-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2014-07-30T01:56:01Z
- person: security trouble
- e-mail: yitian.gaoyt@alibaba-inc.com
- address: Hangzhou, Zhejiang, China
- phone: +86-0571-85022600
- country: CN
- mnt-by: MAINT-CNNIC-AP
- nic-hdl: ZM876-AP
- last-modified: 2021-04-13T23:22:33Z
- person: Guowei Pan
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022088-30763
- fax-no: +86-0571-85022600
- e-mail: guowei.pangw@alibaba-inc.com
- nic-hdl: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2013-07-09T01:34:02Z
- route: 139.224.142.0/24
- origin: AS37963
- descr: China Internet Network Information Center
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2020-02-18T01:31:57Z
- route: 139.224.142.0/24
- origin: AS45102
- descr: China Internet Network Information Center
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2020-02-18T01:33:17Z