27.39.130.144 Threat Intelligence and Host Information

General

IP Address
27.39.130.144
IPv4 Address
Location
🇨🇳 China
CN
Network
AS17816
China Unicom IP network China169 Guangdo...
Threat Score
55/100
High Risk
2026-012026-02attacker-ipautomatedAutomatedbrute-forcebruteforcecowrie
Attack Intelligence
MITRE ATT&CK Techniques
T1046 - Network Service Scanning, T1110.001 - Password Guessing, T1110.003 - Password Spraying, T1110 - Brute Force, T1595.001 - Scanning IP Blocks, T1595.002 - Vulnerability Scanning
Open Ports Detected
22
Geographic Location
Country
China
City
Unknown
Region
Unknown
Coordinates
34.7732, 113.7220
Network Information
ASN
AS17816
Organization
China Unicom IP network China169 Guangdong province
Network
AS17816 China Unicom IP network China169 Guangdong province
WHOIS Information
inetnum
27.36.0.0 - 27.39.255.255
netname
UNICOM-GD
descr
China Unicom Guangdong Province Network
country
CN
admin-c
CH1302-AP
tech-c
CH1302-AP
abuse-c
AC1718-AP
status
ALLOCATED PORTABLE
mnt-by
MAINT-CNCGROUP-RR
mnt-lower
MAINT-CNCGROUP-GD
mnt-routes
MAINT-CNCGROUP-RR
mnt-irt
IRT-CU-CN
last-modified
2010-10-29T06:46:01Z
irt
IRT-CU-CN
address
XinShiKong Plaza,No 666 Huangpu Rd. Guangzhou 510627,China
e-mail
gdipnoc@chinaunicom.cn
abuse-mailbox
zhaoyz3@chinaunicom.cn
role
ABUSE CUCN
phone
+86-20-22214174
nic-hdl
RP181-AP
person
runkeng pan
fax-no
+86-20-22212266-4174
route
27.39.128.0/17
origin
AS17816
Attack Logs
Date Target Location Protocol Link
2026-03-17 Singapore SSH View Log

  • Country: China
  • Network:
  • Noticed: 30 times
  • Protocols Attacked: portscan ssh
  • Countries Attacked: Belgium, Malaysia, United Kingdom of Great Britain and Northern Ireland
Disclaimer
This page contains threat intelligence information for the IPv4 address 27.39.130.144 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.