222.186.168.164 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 222.186.168.164 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Tags: bruteforce, cyber security, digital ocean, ioc, malicious, mssql, Nextray, nmap, phishing, port-scan, vultr

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network:
  • Noticed: 41 times
  • Protocols Attacked: mssql
  • Countries Attacked: Australia, Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Spain, Turkey, Ukraine, United Kingdom, United Kingdom of Great Britain and Northern Ireland, United States of America

Malware Detected on Host

Count: 171 4ff6792614649f98a1062e39d62cbd9d5879ec27ee61fce8cb0aef8e5d0827e7 756640c61711a4a2cecfe515edff9a2785463c07dcdf7cf65813c3409f893cc7 8c98b433a4015805c3320abb748746bfc48411dbcd1645560462d5e7fa57c10c 6f086b7a1307a6d47fb3fcc2215f7266a3acdcb75adce59ef443ceef20ed3373 4abe34282bce58261947cbd66cdc3ea6ab49e73920c99c100d435caebf98aff9 034b0c47df80c5d8ec65a706f27758506ee2a49c558b79d13f23bf5abb16c0a6 8b3172f4127eaaa35bc8be6e8795c3e2db8946e80c51ccd2592dcdaf40959d7d a56fdbc917de06f4d71ab07306961bd41c4bdfa3a959e5b1ca3216f93b99bd71 59b0d3166ad1284f5abd43165c5bd9b11ce5808b8c8e711136a740abf0c3f094 98e22e3e27ba9d6f0d8c6e8610890b53b75dc99cee19c2aaf13c13f933a5c8fa

Open Ports Detected

10000 10001 10005 10006 10007 10010 10018 10022 10035 10042 10043 10045 10047 10084 10101 10134 10225 10243 10249 1025 10250 10324 10443 10477 10533 10554 10894 10909 10911 10936 11000 11075 11112 1119 11210 11211 11288 11300 11371 11434 1153 11681 11701 1177 1190 12000 12104 12107 12108 12113 12116 12117 12121 12126 12146 12154 12161 12162 12167 12177 12208 12236 12244 12249 12252 12257 12259 12263 12275 12281 12289 12293 12303 12307 12311 12312 12315 12328 1234 1311 1364 1377 1387 1388 1414 1433 1455 1457 1460 1471 1515 1521 1599 1604 1723 1741 1800 1801 1883 19000 19014 19071 1911 1925 1935 19443 1955 1962 1970 1976 1987 19902 2000 20000 20018 2002 2003 2008 2053 2064 2079 2081 2082 2086 2087 2109 2121 2154 2181 2202 2222 2224 2323 2332 2345 2375 2376 2379 2382 2404 2455 2480 2562 2563 25782 2628 27015 27017 27105 2761 28015 28017 2806 2995 3000 30002 30003 3001 30011 3002 30027 3004 3005 30120 30123 3021 3030 30468 30479 3065 30701 3077 3082 30894 3091 3095 3105 3108 3122 3128 3129 3130 3138 3141 3148 3150 3151 3164 3174 3179 3193 3197 3260 3269 3299 3301 3306 3307 3310 3311 3333 3365 3388 3389 3406 3409 3443 3460 3498 3542 3551 3552 3556 3569 3780 3790 3842 3953 4000 4022 4040 4063 4064 4080 4096 4150 4157 4165 4242 4282 4321 4369 443 4443 50000 50080 5010 5025 5053 5070 5080 5119 5130 5150 5160 5172 5201 5222 5231 5244 5245 5248 5250 5267 5269 5272 5321 5357 5432 5435 5500 5523 5555 5560 5598 5601 5606 5640 5650 5672 5800 5801 5858 5900 5901 5907 5938 5984 5985 5986 6000 60001 6001 6002 6004 6022 6080 6100 61616 6352 6363 6380 6443 6500 6505 6511 6633 6653 6661 6666 6668 6686 6697 6779 6955 7001 7006 7025 7050 7071 7087 7100 7443 80 8008 8009 8010 8023 8037 8045 8048 8055 8060 8061 8069 8070 8074 8076 8079 8080 8081 8083 8085 8086 8087 8089 8090 8098 8099 81 8100 8105 8112 8123 8124 8126 8132 8133 8139 8140 8145 8163 8179 8181 8187 8188 8190 82 8200 8230 8238 8250 83 8334 8385 84 8404 8406 8421 8443 8454 8463 8500 8503 8521 8528 8536 8545 8550 8553 8554 8575 8582 8588 8599 8649 8700 8702 8703 8728 88 8800 8801 8808 8810 8822 8833 8834 8841 8864 8867 8871 8876 8877 8880 8881 8883 8889 8891 8900 8943 8999 9000 9001 9002 9004 9009 9014 9030 9051 9080 9082 9084 9088 9091 9092 9100 9147 9149 9152 9154 9156 9160 9165 9174 9182 9185 9191 9196 9198 9200 9201 9205 9212 9226 9246 9252 9283 9289 9295 9306 9333 9398 9418 9443 9480 9530 9595 9600 9633 9690 9754 9761 9800 9802 9811 9898 9902 9916 9943 9944 9981 9998 9999

Map

Whois Information

  • inetnum: 222.184.0.0 - 222.191.255.255
  • netname: CHINANET-JS
  • descr: CHINANET jiangsu province network
  • descr: China Telecom
  • descr: A12,Xin-Jie-Kou-Wai Street
  • descr: Beijing 100088
  • country: CN
  • admin-c: CH93-AP
  • tech-c: CJ186-AP
  • abuse-c: AC1573-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CHINANET-JS
  • mnt-routes: MAINT-CHINANET-JS
  • mnt-irt: IRT-CHINANET-CN
  • last-modified: 2021-06-15T08:06:34Z
  • irt: IRT-CHINANET-CN
  • address: No.31 ,jingrong street,beijing
  • address: 100032
  • e-mail: anti-spam@chinatelecom.cn
  • abuse-mailbox: anti-spam@chinatelecom.cn
  • admin-c: CH93-AP
  • tech-c: CH93-AP
  • mnt-by: MAINT-CHINANET
  • last-modified: 2025-11-18T00:26:23Z
  • role: ABUSE CHINANETCN
  • country: ZZ
  • address: No.31 ,jingrong street,beijing
  • address: 100032
  • phone: +000000000
  • e-mail: anti-spam@chinatelecom.cn
  • admin-c: CH93-AP
  • tech-c: CH93-AP
  • nic-hdl: AC1573-AP
  • abuse-mailbox: anti-spam@chinatelecom.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2025-11-13T14:15:15Z
  • role: CHINANET JIANGSU
  • address: 260 Zhongyang Road,Nanjing 210037
  • country: CN
  • phone: +86-25-87799222
  • e-mail: jsipmanager@163.com
  • admin-c: CH360-AP
  • tech-c: CS306-AP
  • tech-c: CN142-AP
  • nic-hdl: CJ186-AP
  • notify: jsipmanager@163.com
  • mnt-by: MAINT-CHINANET-JS
  • last-modified: 2022-08-05T15:34:47Z
  • person: Chinanet Hostmaster
  • nic-hdl: CH93-AP
  • e-mail: anti-spam@chinatelecom.cn
  • address: No.31 ,jingrong street,beijing
  • address: 100032
  • phone: +86-10-58501724
  • fax-no: +86-10-58501724
  • country: CN
  • mnt-by: MAINT-CHINANET
  • last-modified: 2022-02-28T06:53:44Z

Links to attack logs

mssql-bruteforce-ip-list-2022-06-18 nmap-scanning-list-2022-06-17 vultrwarsaw-mssql-bruteforce-ip-list-2022-06-18 dobengaluru-mssql-bruteforce-ip-list-2022-06-22 ****** vultrparis-mssql-bruteforce-ip-list-2022-06-19 nmap-scanning-list-2022-06-19 vultrparis-mssql-bruteforce-ip-list-2022-06-22 dolondon-mssql-bruteforce-ip-list-2022-06-20 mssql-bruteforce-ip-list-2022-06-17 vultrwarsaw-mssql-bruteforce-ip-list-2022-06-20 vultrparis-mssql-bruteforce-ip-list-2022-06-18 nmap-scanning-list-2022-06-18 dobengaluru-mssql-bruteforce-ip-list-2022-06-19 ****** vultrmadrid-mssql-bruteforce-ip-list-2022-06-18 ******

Share on: