159.138.150.253 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 159.138.150.253 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS136907 huawei clouds
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy
  • Passive DNS Results: 675891.com 935874.com 349236.com 319142.com 565943.com 126615.com 713292.com 684181.com 478385.com 791495.com 617351.com 613972.com 184447.com 238717.com 175347.com 292344.com 841263.com 181714.com 298463.com 585125.com 241195.com 267193.com 635646.com 476561.com 264751.com 683745.com 521792.com 635975.com 146515.com 543944.com 646136.com 145736.com 342124.com 385979.com 235983.com 852131.com 883834.com 686647.com 994829.com 676214.com 161481.com 686331.com 661754.com 437532.com 144547.com 486676.com 434287.com 856779.com 931376.com 794457.com 935815.com 246549.com 759791.com 293826.com 714561.com 743184.com 684185.com 722471.com 649746.com 741281.com 611713.com 646238.com 624793.com 613869.com 613117.com 268679.com 743273.com 278237.com 277931.com 116271.com 264558.com 156137.com 276563.com 134942.com 24238.cn 231419.com 216573.com 241441.com 235951.com 238275.com 142649.com 117489.com 126875.com 124772.com 128941.com 259282.com 271636.com 238591.com 258726.com 245696.com 962632.com 971923.com 985956.com 979714.com 129185.com 974412.com 138349.com 916193.com 942625.com 947753.com 984813.com 925275.com 136184.com 898194.com 895193.com 868744.com 314994.com 214831.com 179697.com 191653.com 226832.com 184181.com 225247.com 418979.com 245256.com 352587.com 521487.com 594898.com 546276.com 544932.com 544539.com 544357.com 545775.com 515772.com 613494.com 597142.com 497122.com 421793.com 463822.com 421316.com 461126.com 437146.com 433917.com 489197.com 435414.com 471392.com 497948.com 479232.com 464924.com 437972.com 442752.com 353437.com 375423.com 419761.com 374139.com 385469.com 352537.com 385573.com 391682.com 367912.com 319684.com 292538.com 397653.com 358597.com 347937.com 327643.com 44545.cc 238982.com 754565.com 754576.com 754573.com 754471.com 754464.com 754463.com 754462.com 754465.com 868564.com 985447.com 985443.com 868563.com 868784.com 271152.com 271154.com 963351.com 963392.com 835954.com 963395.com 963391.com 963411.com 654854.com 588543.com 588541.com 654853.com 654843.com 654841.com 654847.com 654861.com 586433.com ur41-site-01.cdn-ng.net 586455.com 949631.com 949623.com 619364.com 692145.com

Open Ports Detected

443 80 8086 8890 9090

Map

Whois Information

  • NetRange: 159.138.0.0 - 159.138.255.255
  • CIDR: 159.138.0.0/16
  • NetName: APNIC
  • NetHandle: NET-159-138-0-0-1
  • Parent: NET159 (NET-159-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2017-11-16
  • Updated: 2017-11-16
  • Ref: https://rdap.arin.net/registry/ip/159.138.0.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 159.138.144.0 - 159.138.159.255
  • netname: Huawei-HK-CLOUDS
  • descr: Huawei HongKong Clouds
  • country: HK
  • admin-c: HIPL7-AP
  • tech-c: HIPL7-AP
  • abuse-c: AH905-AP
  • status: ALLOCATED NON-PORTABLE
  • mnt-by: MAINT-HIPL-SG
  • mnt-irt: IRT-HIPL-SG
  • last-modified: 2021-07-21T13:12:27Z
  • irt: IRT-HIPL-SG
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: HIPL4-AP
  • tech-c: HIPL4-AP
  • mnt-by: MAINT-HIPL-SG
  • last-modified: 2023-06-07T02:47:11Z
  • role: ABUSE HIPLSG
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: HIPL4-AP
  • tech-c: HIPL4-AP
  • nic-hdl: AH905-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-06-07T02:47:54Z
  • role: HUAWEI INTERNATIONAL PTE LTD administrator
  • country: SG
  • phone: +8618730601505
  • e-mail: [email protected]
  • admin-c: HIPL7-AP
  • tech-c: HIPL7-AP
  • nic-hdl: HIPL7-AP
  • notify: [email protected]
  • mnt-by: MAINT-HIPL-SG
  • last-modified: 2021-06-04T07:42:42Z
  • route: 159.138.0.0/16
  • country: HK
  • descr: Huawei-HK-CLOUDS
  • origin: AS136907
  • mnt-by: MAINT-HIPL-SG
  • last-modified: 2017-11-17T02:15:11Z

Links to attack logs

anonymous-proxy-ip-list-2023-08-31