139.224.234.5 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 139.224.234.5 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 45/100

Host and Network Information

  • Tags: awsbah, awsindia, bruteforce, cyber security, ioc, malicious, Nextray, phishing, redis

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network:
  • Noticed: 34 times
  • Protocols Attacked: redis
  • Countries Attacked: Bahrain, Canada, Czechia, Denmark, Estonia, France, Germany, India, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: mp.jiaxiaobo.com

Open Ports Detected

10001 10018 1002 10029 10040 10068 10100 10134 102 10205 1023 1025 10256 10397 104 10444 10480 10554 1063 1080 10909 11 11084 11112 11210 11288 113 11300 11481 119 1200 12000 12106 12124 12129 12131 12143 12161 12168 12185 12188 12193 12199 12200 12206 12212 12217 12219 12230 12232 12244 12281 12296 12303 12304 12306 12323 12328 12345 12386 12388 12392 12393 12412 12413 12429 12438 12441 12443 12444 12445 12447 12464 12469 12473 12474 12487 12504 12510 12514 12552 12555 12559 12560 12564 12902 12980 13 1337 135 139 1414 14147 143 14401 14403 1451 1457 14873 14875 14905 15040 15044 15082 15503 1599 16014 16018 16029 16037 1604 16057 16066 16071 16082 16084 16086 16095 16096 16103 16401 16404 1660 16667 17 17010 17102 17184 1723 175 17780 179 1800 18016 18023 18033 18040 18045 18058 18059 18066 18075 18077 18079 18081 18082 18097 18107 18110 18113 18245 1830 1833 1883 19000 19013 19080 19443 195 1950 1951 1952 1957 1960 1962 1967 1977 1978 1982 1990 19999 2000 20000 20010 2003 2008 20106 20107 20150 2052 20547 2055 2067 2068 2079 20800 2081 20880 20900 2095 21 21025 2107 2108 2121 21236 21259 2126 21268 21271 21278 21279 21290 21293 21300 21315 21326 21327 21329 2134 21379 21400 21500 21515 2195 2200 2209 2210 2211 2222 22222 22403 2248 22705 23023 23082 2323 2332 2363 2376 2404 2455 25002 2551 25565 2570 2626 264 27015 2709 2761 2762 28001 29799 2985 30002 30003 30004 30009 3001 30019 3006 30083 3009 3020 3050 3066 3070 3075 3085 3100 31017 3102 3121 3149 3152 3157 3162 3165 3168 3170 3171 3172 3195 32080 32303 3260 3268 32764 32800 3299 3301 33060 3388 3389 34225 34500 35000 3523 35251 3530 3531 3551 35522 35531 3554 35559 3556 3559 3561 3562 3563 3569 36983 37 37777 3780 3792 4000 4063 4080 40894 4120 4148 4150 4157 4165 4242 427 4282 42901 43 4344 4369 44158 442 443 44305 4432 4433 444 4443 4444 4447 44500 4457 44818 4488 45444 4545 45786 45886 46443 465 47534 4782 48020 4821 4840 4899 4949 49502 49686 50000 50001 5001 50010 5007 5009 5010 50100 502 5025 50443 50500 51002 513 515 5228 5232 5241 5261 5269 5280 53 53481 5435 5454 548 55000 554 555 5590 5596 5672 57779 57783 57787 5804 5858 58603 5907 5912 5913 593 5938 5986 5988 5991 5996 6000 6001 60129 6036 6061 61617 62078 62237 63045 63256 63260 636 63676 6432 6443 6482 65000 6543 65432 6565 6600 6633 6650 666 6666 6667 6697 6699 6755 6998 70 7001 7010 7021 7057 7071 7080 7170 7171 7172 7331 7415 7434 7634 7775 7776 7780 7887 789 79 8009 8019 8021 8036 8037 8050 8051 8067 8076 8081 8082 8083 8087 8097 8115 8120 8126 8129 8139 8140 8141 8148 8154 8162 8173 8181 8183 8184 8185 8190 8193 8194 8199 8280 8282 8291 8316 8333 8350 8403 8404 8405 8423 8425 8428 8430 8431 8443 8449 8455 8459 8461 8463 8465 8519 8528 8536 8545 8554 8556 8558 8561 8575 8576 8581 8584 8587 8589 8596 8599 8630 8641 8649 8728 873 8732 8765 8766 8790 8821 8825 8827 8835 8840 8841 8844 8849 8863 8864 8868 8874 8879 8880 8889 8890 8911 8988 9000 9005 9011 9014 9034 9035 9038 9042 9052 9060 9066 9070 9082 9088 9093 9095 9097 9099 9100 9101 9103 9113 9117 9119 9125 9130 9141 9149 9151 9152 9160 9163 9168 9203 9212 9217 9236 9241 9242 9300 9307 9309 9312 9333 9393 9398 9399 94 9418 9433 9488 95 9501 9527 9529 9530 9600 9606 9682 9761 9765 9876 9900 9919 9926 9928 9939 995 9988 9990 9998 9999

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-20372 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2019-9511 CVE-2019-9513 CVE-2019-9516 CVE-2020-14145 CVE-2020-15778 CVE-2021-23017 CVE-2021-3618 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-44487 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2025-26465 CVE-2025-32728

Map

Whois Information

  • NetRange: 139.224.0.0 - 139.224.255.255
  • CIDR: 139.224.0.0/16
  • NetName: APNIC-ERX-139-224-0-0
  • NetHandle: NET-139-224-0-0-1
  • Parent: NET139 (NET-139-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: This IP address range is not registered in the ARIN database.
  • Comment: This range was transferred to the APNIC Whois Database as
  • Comment: part of the ERX (Early Registration Transfer) project.
  • Comment: For details, refer to the APNIC Whois Database via
  • Comment:
  • Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
  • Comment: for the Asia Pacific region. APNIC does not operate networks
  • Comment: using this IP address range and is not able to investigate
  • Comment: spam or abuse reports relating to these addresses. For more
  • Ref: https://rdap.arin.net/registry/ip/139.224.0.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: search-apnic-not-arin@apnic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: search-apnic-not-arin@apnic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 139.224.0.0 - 139.224.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALISOFT-CN
  • last-modified: 2023-11-28T00:57:06Z
  • irt: IRT-ALISOFT-CN
  • address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM877-AP
  • tech-c: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:36Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2025-09-19T17:20:32Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: jiali.jl@alibaba-inc.com
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2025-07-01T07:12:42Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: abuse@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2025-07-01T07:06:11Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: abuse@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2025-07-01T07:05:46Z
  • route: 139.224.234.0/24
  • origin: AS37963
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:33:04Z
  • route: 139.224.234.0/24
  • origin: AS45102
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:34:26Z

Links to attack logs

****** awsindia-redis-bruteforce-ip-list-2022-01-15 awsau-redis-bruteforce-ip-list-2021-09-08 awsbah-redis-bruteforce-ip-list-2022-01-16 redis-bruteforce-ip-list-2021-07-28 ****** ****** aws-redis-bruteforce-ip-list-2021-07-19

Share on: