182.61.129.1 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 182.61.129.1 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • Country: China
  • Network: AS58540 jinan 250000
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: n676.ns.yunjiasu.com n651.ns.yunjiasu.com n568.ns.yunjiasu.com n3633.ns.yunjiasu.com n657.ns.yunjiasu.com n3617.ns.yunjiasu.com n305.ns.yunjiasu.com n17.ns.yunjiasu.com n196.ns.yunjiasu.com n593.ns.yunjiasu.com n3076.ns.yunjiasu.com n50.ns.yunjiasu.com n370.ns.yunjiasu.com n3389.ns.yunjiasu.com n157.ns.yunjiasu.com n3508.ns.yunjiasu.com n3398.ns.yunjiasu.com n319.ns.yunjiasu.com n736.ns.yunjiasu.com n19.ns.yunjiasu.com n377.ns.yunjiasu.com n3057.ns.yunjiasu.com n190.ns.yunjiasu.com n3070.ns.yunjiasu.com n301.ns.yunjiasu.com n3108.ns.yunjiasu.com n1059.ns.yunjiasu.com dns3.yunjiasu-cdn.net dns2.yunjiasu-cdn.net dns1.yunjiasu-cdn.net n381.ns.yunjiasu.com n3351.ns.yunjiasu.com 51pkg.com n1999.ns.yunjiasu.com n335.ns.yunjiasu.com n3031.ns.yunjiasu.com n586.ns.yunjiasu.com n3077.ns.yunjiasu.com n781.ns.yunjiasu.com n197.ns.yunjiasu.com n106.ns.yunjiasu.com n3331.ns.yunjiasu.com n3079.ns.yunjiasu.com n385.ns.yunjiasu.com n387.ns.yunjiasu.com n3156.ns.yunjiasu.com ns1.yjs-cdn.com n3109.ns.yunjiasu.com n363.ns.yunjiasu.com ns1.bddns.cn ns2.bddns.cn n3500.ns.yunjiasu.com n577.ns.yunjiasu.com ns1321.yjs-cdn.com ns1320.yjs-cdn.com n3086.ns.yunjiasu.com n156.ns.yunjiasu.com

Map

Whois Information

  • inetnum: 182.61.0.0 - 182.61.255.255
  • netname: Baidu
  • descr: Beijing Baidu Netcom Science and Technology Co., Ltd.
  • descr: Baidu Plaza, No.10, Shangdi 10th street,
  • descr: Haidian District Beijing,100080
  • country: CN
  • admin-c: BN261-AP
  • tech-c: BN261-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-BAIDU-CN
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • last-modified: 2024-03-11T23:29:48Z
  • irt: IRT-Baidu-CN
  • address: 12f,lixiang building ,zhongguancun,beijing
  • e-mail: huxin05@baidu.com
  • abuse-mailbox: huxin05@baidu.com
  • admin-c: ZKY3-AP
  • tech-c: ZKY3-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:37Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Baidu Noc
  • address: Baidu Campus,NO.10 Shangdi 10th Street,Haidian District,Beijing The People’s Republic of China 100085
  • country: CN
  • phone: +86-18110062082
  • e-mail: noc@baidu.com
  • nic-hdl: BN261-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2024-03-11T23:28:23Z
  • route: 182.61.128.0/19
  • descr: Baidu
  • country: CN
  • origin: AS38365
  • notify: zhangyukun@baidu.com
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2018-03-20T07:18:04Z
  • route: 182.61.128.0/19
  • descr: Baidu
  • country: CN
  • origin: AS55967
  • notify: zhangyukun@baidu.com
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2018-03-20T07:18:05Z

Links to attack logs

****** ****** ******

Share on: