183.253.125.205 Threat Intelligence and Host Information

General

IP Address
183.253.125.205
IPv4 Address
Location
🇨🇳 Fujian, China
CN
Network
AS9808
China Mobile Communications Group Co., L...
Threat Score
67/100
High Risk
attackBlacklistBruteforcecowriecredentialstuffDNSBLpassword
Attack Intelligence
MITRE ATT&CK Techniques
T1046 - Network Service Scanning, T1078 - Valid Accounts, T1083 - File and Directory Discovery, T1098.004 - SSH Authorized Keys, T1105 - Ingress Tool Transfer, T1110.004 - Credential Stuffing, T1110 - Brute Force, T1583.005 - Botnet
Open Ports Detected
22
Geographic Location
Country
China
City
Fujian
Region
Fujian
Coordinates
26.2487, 117.9964
Network Information
ASN
AS9808
Organization
China Mobile Communications Group Co., Ltd.
Network
AS9808 China Mobile Communications Group Co., Ltd.
WHOIS Information
inetnum
183.192.0.0 - 183.255.255.255
netname
CMNET
descr
China Mobile Communications Corporation
country
CN
org
ORG-CMCC1-AP
admin-c
HL1318-AP
tech-c
HL1318-AP
abuse-c
AC1895-AP
status
ALLOCATED PORTABLE
mnt-by
MAINT-CN-CMCC
mnt-lower
MAINT-CN-CMCC
mnt-routes
MAINT-CN-CMCC
mnt-irt
IRT-CHINAMOBILE2-CN
last-modified
2012-09-12T08:13:12Z
irt
IRT-CHINAMOBILE2-CN
address
29,Jinrong Ave, Xicheng district,beijing,100032
e-mail
hostmaster@chinamobile.com
abuse-mailbox
abuse@chinamobile.com
organisation
ORG-CMCC1-AP
org-name
China Mobile Communications Corporation
org-type
LIR
phone
+86 1052686688
fax-no
+86 10 52616187
mnt-ref
APNIC-HM
Attack Logs
Date Target Location Protocol Link
2024-05-18 Perth, Australia MULTIPLE View Log

  • Country: China
  • Network: AS9808 china mobile communications group co. ltd.
  • Noticed: 40 times
  • Protocols Attacked: ssh
  • Countries Attacked: Australia, Belgium, United Kingdom of Great Britain and Northern Ireland

CVEs Detected

CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2020-14145 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767

Disclaimer
This page contains threat intelligence information for the IPv4 address 183.253.125.205 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.