202.118.8.51 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Potentially Malicious Host 🟡 37/100

Host and Network Information

  • Tags: Nextray, bruteforce, cyber security, ioc, la, lafusioncenter, louisiana, malicious, mssql, phishing, tsec
  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 13 times
  • Protcols Attacked: SSH
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America

Open Ports Detected

10000 10001 10134 10250 1026 10443 10554 1099 110 11000 11112 11211 11300 11371 1153 1177 1200 12000 1234 12345 1311 1337 13579 1388 1400 14265 143 1471 1515 1521 1599 16010 1604 16992 16993 1741 18081 18245 1830 1900 19000 19071 1925 1926 1935 1962 2002 2008 20256 2067 2082 2083 2087 21 21025 21379 2154 2181 22 2211 2222 2232 23 23023 2320 2323 2332 23424 2345 2375 2376 2404 2480 25 25001 25105 25565 2560 2628 27015 2761 2762 3000 3001 3049 3066 3068 3071 3087 3091 3114 3116 3117 3128 31337 32400 3260 3269 3270 32764 3301 33060 3310 3352 3388 3389 3460 3479 3503 3541 3542 3558 3689 37215 37777 3780 3793 3922 3951 3954 4000 4022 4040 4063 4064 4157 41800 4242 4282 4321 44158 443 4433 4443 44818 4500 4506 4646 465 4664 4747 4782 4848 4899 4949 50000 5001 5007 50070 5009 5010 50100 5060 51106 5172 54138 5432 5435 5454 55000 55442 55443 55553 55554 5560 5569 5590 5601 5672 5800 5858 5901 5984 5985 5986 6000 60001 60129 61616 62078 6363 6511 65535 6603 6633 6664 6666 6668 6697 7171 7218 7415 7443 7444 7547 7548 7657 7777 7779 7887 7979 7989 80 8000 8001 8002 8003 8008 8009 8010 8022 8027 8040 8043 8044 8055 8069 8080 8083 8086 8087 8089 8090 8097 8098 8099 81 8107 8123 8139 8140 8180 8181 8200 8291 8401 8414 8426 8446 8500 8554 8575 8728 8789 8800 8807 8812 8822 8823 8834 8839 8861 8864 8866 8870 8888 8889 8969 9000 9001 9007 9009 9021 9033 9042 9051 9080 9091 9097 9103 9151 9191 9222 9295 9304 9418 9443 9444 9530 9550 9595 9600 9633 9761 9800 993 9943 9944 9981 9992 9999

CVEs Detected

CVE-2020-1938

Map

Whois Information

  • inetnum: 202.112.0.0 - 202.121.255.255
  • netname: CERNET-CN
  • descr: China Education and Research Network
  • descr: China Education and Research Network Center
  • descr: Tsinghua University
  • descr: Beijing, 100084
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:29Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2022-11-08T03:56:04Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2022-11-08T03:56:47Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

mssql-bruteforce-ip-list-2021-02-05