139.224.142.112 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 139.224.142.112 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 15/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: China
- Network: AS37963 hangzhou alibaba advertising co. ltd.
- Noticed: 1 times
- Protocols Attacked: SSH
- Passive DNS Results: drinkinglook.store haorn521.asia jhds1234.top 2377077706.xyz boengg.top gzgfx.top 130.run bbc88.top zhengbinbin.top www.lvtongzuishuai.top www.xn--vuqw0ed22axya889bof6a.icu shenghuo.cool devmeta.club flyerlace.com www.pro8617888112910.asia xn–fiqx7cp7qktad7h5ybo36e.com diyixy.shop yushen.shop www.ishatch.top ishatch.top dns11.hichina.com g.llll.vc dns13.hichina.com dns15.hichina.com dns9.hichina.com
Open Ports Detected
10000 1012 10134 102 1023 1025 10250 1026 1027 10344 10554 10911 11 110 11000 111 1111 11112 11210 11211 113 11300 11371 1153 1167 1177 119 1200 12000 122 12345 13 1337 135 13579 14147 14265 1433 1471 15 1521 154 1599 16010 16030 1604 16992 17 1723 175 179 1800 1801 18081 18245 1830 1883 19000 19071 1911 1926 1947 195 1951 1962 2000 20000 2002 2003 2008 2018 2021 20256 20547 2067 2081 2082 2087 21 21025 21379 2181 2220 2222 2266 23 23023 2323 2332 2345 2375 2376 2404 2455 2480 25 25001 2506 25105 2555 25565 2557 2558 2560 2568 26 2628 263 264 2701 2709 2761 2762 28015 28017 30002 3001 3005 3054 3068 3075 3083 3087 3113 31337 3260 3268 32764 3299 3301 3306 33060 3310 3389 3412 35000 3541 3561 3568 3690 37777 3780 389 4000 4022 4040 4064 4118 4157 41800 4242 4282 43 4321 4369 4430 4433 444 4443 4444 44818 4500 4506 4646 465 4664 4782 47990 48226 4840 49 49152 4949 50000 5001 5004 5005 50050 5007 50070 5009 5010 50100 502 503 51106 5122 515 5172 5269 53 54138 5431 5432 5435 5454 55000 554 55553 55554 5567 5591 5594 5604 5672 5801 5858 593 5984 5986 6000 6002 60129 6080 6102 61613 61616 62078 631 636 6363 6379 6443 6560 6633 6653 6666 6667 6668 6697 6955 70 7001 7004 7022 7071 7080 7171 7218 7415 7433 7443 7474 7493 7548 7634 7657 771 789 79 8009 8017 8018 8020 805 8060 8081 8083 8085 8086 8087 8089 8096 8098 8099 8106 8123 8139 8140 8181 82 8200 8333 8334 8401 8409 8413 8427 8500 8554 8575 8649 8728 873 8779 8791 8804 8808 8813 8821 8827 8834 8839 8842 8864 8875 888 8880 8889 8891 8899 8989 8999 9000 9001 9002 9004 902 9039 9042 9045 9084 9088 9091 9092 9093 9095 9097 91 9100 9160 9308 9443 9444 9530 9595 9600 9633 9761 9800 9876 994 9943 995 9955 9990 9998 9999
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51384 CVE-2023-51385 CVE-2023-51767
Map
Whois Information
- NetRange: 139.224.0.0 - 139.224.255.255
- CIDR: 139.224.0.0/16
- NetName: APNIC-ERX-139-224-0-0
- NetHandle: NET-139-224-0-0-1
- Parent: NET139 (NET-139-0-0-0-0)
- NetType: Early Registrations, Transferred to APNIC
- OriginAS:
- Organization: Asia Pacific Network Information Centre (APNIC)
- RegDate: 2010-11-03
- Updated: 2010-11-17
- Comment: This IP address range is not registered in the ARIN database.
- Comment: This range was transferred to the APNIC Whois Database as
- Comment: part of the ERX (Early Registration Transfer) project.
- Comment: For details, refer to the APNIC Whois Database via
- Comment:
- Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
- Comment: for the Asia Pacific region. APNIC does not operate networks
- Comment: using this IP address range and is not able to investigate
- Comment: spam or abuse reports relating to these addresses. For more
- Ref: https://rdap.arin.net/registry/ip/139.224.0.0
- OrgName: Asia Pacific Network Information Centre
- OrgId: APNIC
- Address: PO Box 3646
- City: South Brisbane
- StateProv: QLD
- PostalCode: 4101
- Country: AU
- RegDate:
- Updated: 2012-01-24
- Ref: https://rdap.arin.net/registry/entity/APNIC
- OrgAbuseHandle: AWC12-ARIN
- OrgAbuseName: APNIC Whois Contact
- OrgAbusePhone: +61 7 3858 3188
- OrgAbuseEmail: search-apnic-not-arin@apnic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- OrgTechHandle: AWC12-ARIN
- OrgTechName: APNIC Whois Contact
- OrgTechPhone: +61 7 3858 3188
- OrgTechEmail: search-apnic-not-arin@apnic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- inetnum: 139.224.0.0 - 139.224.255.255
- netname: ALISOFT
- descr: Aliyun Computing Co., LTD
- descr: 5F, Builing D, the West Lake International Plaza of S&T
- descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- country: CN
- admin-c: ZM1015-AP
- tech-c: ZM877-AP
- tech-c: ZM876-AP
- tech-c: ZM875-AP
- abuse-c: AC1601-AP
- status: ALLOCATED PORTABLE
- mnt-by: MAINT-CNNIC-AP
- mnt-irt: IRT-ALISOFT-CN
- last-modified: 2023-11-28T00:57:06Z
- irt: IRT-ALISOFT-CN
- address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- e-mail: didong.jc@alibaba-inc.com
- abuse-mailbox: didong.jc@alibaba-inc.com
- admin-c: ZM877-AP
- tech-c: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2021-09-05T23:38:36Z
- role: ABUSE CNNICCN
- address: Beijing, China
- country: ZZ
- phone: +000000000
- e-mail: ipas@cnnic.cn
- admin-c: IP50-AP
- tech-c: IP50-AP
- nic-hdl: AC1601-AP
- abuse-mailbox: ipas@cnnic.cn
- mnt-by: APNIC-ABUSE
- last-modified: 2020-05-14T11:19:01Z
- person: Li Jia
- address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
- country: CN
- phone: +86-0571-85022088
- e-mail: jiali.jl@alibaba-inc.com
- nic-hdl: ZM1015-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2014-07-30T02:02:01Z
- person: Guoxin Gao
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022600
- fax-no: +86-0571-85022600
- e-mail: anti-spam@list.alibaba-inc.com
- nic-hdl: ZM875-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2014-07-30T01:56:01Z
- person: security trouble
- e-mail: yitian.gaoyt@alibaba-inc.com
- address: Hangzhou, Zhejiang, China
- phone: +86-0571-85022600
- country: CN
- mnt-by: MAINT-CNNIC-AP
- nic-hdl: ZM876-AP
- last-modified: 2021-04-13T23:22:33Z
- person: Guowei Pan
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022088-30763
- fax-no: +86-0571-85022600
- e-mail: guowei.pangw@alibaba-inc.com
- nic-hdl: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2013-07-09T01:34:02Z
- route: 139.224.142.0/24
- origin: AS37963
- descr: China Internet Network Information Center
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2020-02-18T01:31:57Z
- route: 139.224.142.0/24
- origin: AS45102
- descr: China Internet Network Information Center
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2020-02-18T01:33:17Z