182.61.201.91 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 182.61.201.91 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 25/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal
  • Contained within other IP sets: coinbl_hosts_browser, coinbl_hosts

Malware Detected on Host

Count: 609 cfb66a8598eb34298f7176a3db9b3c7ef3d37314dc762500f39dc4fed106ed75 3281a258ac2dea4de9d852886962628a6778294c6a0acac6d99ce5d4715a8ca3 f9213c71c338c115e7b40cf1d3270ae361d7bf23d29db369e506f7ecc1d2b555 af0ac1e2282cc7e3e24924e9fb461e407d40a64592af6a9c9295cb3723acfd25 5716cd8a0cb670804c2b3c999f70a9b60db70376158fe403db43b58e4acfab52 dcead66dd72a65be391184c69a01dec4750fc7bee5d03f97186228f7ccd4fd41 f32ee4bf420a2787a12b38f5c530e6d7f253bca30a57f8edf5199c8f33dd9063 f2eef9675f186fe69ea24f099cd4b99af74fd141464f39d8d2b62cd87c4cfb27 58c499f2810411887c7cb5166b977f004f597b922633d03db33a70c14c6c3a19 26fd3357c8396f1cd45f21867a38ccfbbd9b9a5762f9ac90eb4922e7c2948f73

Open Ports Detected

443 80

CVEs Detected

CVE-2016-0742 CVE-2016-0746 CVE-2016-0747 CVE-2016-1247 CVE-2016-4450 CVE-2017-20005 CVE-2017-7529 CVE-2018-16845 CVE-2019-20372 CVE-2021-23017 CVE-2021-3618

Map

Whois Information

  • inetnum: 182.61.0.0 - 182.61.255.255
  • netname: Baidu
  • descr: Beijing Baidu Netcom Science and Technology Co., Ltd.
  • descr: Baidu Plaza, No.10, Shangdi 10th street,
  • descr: Haidian District Beijing,100080
  • country: CN
  • admin-c: BN261-AP
  • tech-c: BN261-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-BAIDU-CN
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • last-modified: 2024-03-11T23:29:48Z
  • irt: IRT-Baidu-CN
  • address: 12f,lixiang building ,zhongguancun,beijing
  • e-mail: huxin05@baidu.com
  • abuse-mailbox: huxin05@baidu.com
  • admin-c: ZKY3-AP
  • tech-c: ZKY3-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:37Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Baidu Noc
  • address: Baidu Campus,NO.10 Shangdi 10th Street,Haidian District,Beijing The People’s Republic of China 100085
  • country: CN
  • phone: +86-18110062082
  • e-mail: noc@baidu.com
  • nic-hdl: BN261-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2024-03-11T23:28:23Z
  • route: 182.61.192.0/19
  • descr: Baidu
  • country: CN
  • origin: AS38365
  • notify: zhangyukun@baidu.com
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2017-12-21T02:20:17Z
  • route: 182.61.192.0/19
  • descr: Baidu
  • country: CN
  • origin: AS55967
  • notify: zhangyukun@baidu.com
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2017-12-21T02:20:22Z

Links to attack logs

****** ****** ******

Share on: