42.200.106.175 Threat Intelligence and Host Information
Nov 19, 2024
ipinfopage
General
IP Address
42.200.106.175
Location
🇭🇰 Central, Hong Kong
Network
AS4760
Threat Score
55/100
Attack Intelligence
MITRE ATT&CK Techniques
T1078 - Valid Accounts, T1083 - File and Directory Discovery, T1098.004 - SSH Authorized Keys, T1105 - Ingress Tool Transfer, T1110.004 - Credential Stuffing, T1110 - Brute Force, T1595 - Active Scanning
Open Ports Detected
10443
Geographic Location
Country
Hong Kong
City
Central
Region
Central and Western District
Coordinates
22.2908, 114.1501
Network Information
ASN
AS4760
Organization
HKT Limited
Network
AS4760 HKT Limited
WHOIS Information
inetnum
42.200.0.0 - 42.200.127.255
netname
HKT-BIA
descr
PCCW IMS Ltd (PCCW Business Internet Access)
country
HK
admin-c
WC109-AP
tech-c
WC109-AP
abuse-c
AP706-AP
status
ALLOCATED NON-PORTABLE
mnt-by
MAINT-HK-PCCW-BIA
mnt-irt
IRT-PCCW-BIA-HK
last-modified
2020-06-12T06:21:35Z
irt
IRT-PCCW-BIA-HK
address
PO Box 9896 GPO
e-mail
noc@imsbiz.com
abuse-mailbox
noc@imsbiz.com
role
TECHNICAL ADMINISTRATORS
phone
+852-2883-5151
nic-hdl
TA66-AP
notify
noc@imsbiz.com
route
42.200.96.0/19
origin
AS4760
mnt-routes
MAINT-HK-PCCW-BIA
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2024-11-08 | London, UK | SSH | View Log |
- Country: Hong Kong
- Network: AS4760 hkt limited
- Noticed: 17 times
- Protocols Attacked: ssh
- Countries Attacked: Australia, Poland, Sweden
- Passive DNS Results: 42-200-106-175.static.imsbiz.com chinaone.direct.quickconnect.to
Disclaimer
This page contains threat intelligence information for the IPv4 address 42.200.106.175 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.