163.171.128.150 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 163.171.128.150 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 12/100

Host and Network Information

  • Country: Germany
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: grandtour.myswitzerland.com paypassport.suning.com list.mi.com ebusiness.coscon.com item.mi.com ds.suning.cn review.suning.com www.huaweiacad.com ann.xiu8.com shrek.6.cn stockcdn.pingan.com www.hujiang.com 1sthw5.dtwscache.speedcdns.com class.hujiang.com trackcommon.hujiang.com bbs.ngacn.cc quantil-dynna.cedexis-test.com

Malware Detected on Host

Count: 17 d6d8d08c0aa6f462ae852fa24f236b4a81df67d3a260f4e2f76a5e78837943d3 3ded6cb88ad6c6602ba7155f19045b73879dae665630dc4548efb1081edcb00e 2551d8f6c5fddca48136b4a3ed8492e080d7826a2af2573b363df437e35f0c9d c17727bce8303e17607c5553d814407c99c95e2a60bf74f4728160501050e6e7 39271d606e68326b20ab31d96c2dc44b66a969f7b4e36cca4d9a9f99a43d2515 47d2b1bc50b5a80bbc7f1ca0b92f52a80a10e0d8e0d640e3d68fc95b7dad1dfd a83e3f9d271f410bade47527a644adc76007f12ee9fd6c94f3c52bef9dcd67c1 46d813747daf7c4dcdf99d1424641b990825e781e186f57e32e07f05b45d3571 8a965119dcff34fccf1c0ba1abdc0027bd702ade5a435e5a6605b46bf6ffcbf7 f5ff598e8080caa88cbcab22944c2f7097c89e8346e7ff86b65fea1acbcf6225

Open Ports Detected

10000 10001 10003 10011 10017 10205 10210 10443 1080 11000 11027 11112 12000 12016 12113 12345 12443 1433 14406 14407 1443 14873 14880 14897 14903 15042 15443 16010 16030 16050 16888 17000 1723 17770 17771 17773 1800 18000 18001 18004 1801 18010 18033 18081 18087 18088 18111 1883 19000 19443 19902 2000 20000 2003 20082 2012 20200 2081 2083 2086 2087 2323 2443 3000 30001 3001 3012 3050 3299 400 4000 4150 443 44303 4433 4434 4436 444 4443 4444 447 4477 4899 5000 50000 5001 5004 5005 5006 5007 50070 5009 5010 51001 5201 5222 5280 5555 5672 6000 6001 6002 60030 6009 6011 6080 6443 6580 6590 6601 6666 6688 6699 7001 7021 7443 7444 7777 7900 8000 8001 8002 8003 8008 8009 8010 8014 8015 8016 8020 8021 8022 8026 8032 8057 8060 8061 8076 8081 8083 8084 8085 8086 8087 8089 8090 8092 8095 8096 8098 8099 8100 8102 8107 8108 8112 8117 8180 8183 8188 8200 8203 8280 8381 8388 8401 8443 8445 8447 8473 8500 8530 8680 8703 8732 8787 8800 8801 8834 8880 8883 8888 8889 8899 8916 8991 8999 9000 9001 9002 9009 9011 9013 9035 9036 9037 9044 9074 9080 9081 9082 9083 9088 9089 9090 9091 9092 9098 9100 9123 9180 9185 92 9200 9230 9243 93 9443 9444 9600 9704 9800 9803 9888 9901 9944 9955 9998 9999

Map

Whois Information

  • inetnum: 163.171.128.0 - 163.171.128.255
  • netname: CDNetworks
  • country: DE
  • admin-c: Cr2616-RIPE
  • tech-c: Cr2616-RIPE
  • status: LEGACY
  • mnt-by: PANTHER-MNT
  • created: 2021-11-03T14:55:32Z
  • last-modified: 2021-11-24T14:59:25Z
  • role: CDNetworks role
  • address: CDNetworks, Co. Ltd.
  • address: 135-935, Handong Blgd., 7F, Yeoksam-Dong
  • address: Gangnam-Gu, Seoal, Korea
  • abuse-mailbox: network@cdnetworks.co.kr
  • admin-c: CDN57-RIPE
  • tech-c: CDN57-RIPE
  • nic-hdl: Cr2616-RIPE
  • mnt-by: OPENPEERING-MNT
  • created: 2008-05-14T13:18:43Z
  • last-modified: 2012-07-16T12:50:37Z
  • route: 163.171.128.0/24
  • origin: AS54994
  • mnt-by: PANTHER-MNT
  • created: 2021-11-24T14:57:09Z
  • last-modified: 2021-11-24T14:57:09Z

Links to attack logs

****** ****** anonymous-proxy-ip-list-2023-06-22 ******

Share on: