47.108.5.63 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 47.108.5.63 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10001 10134 102 1023 1024 10243 10250 1028 104 10443 10554 1099 11 110 11000 111 1110 11112 11210 11211 113 11300 11371 1153 1177 119 12000 122 1234 12345 1290 13 1311 1337 1400 14147 14265 143 1433 14344 1471 1515 1521 154 1588 1599 16010 16030 1604 16992 16993 17 1723 1741 175 179 180 1800 1801 18081 18245 1883 19 19071 1911 1925 1926 195 1962 199 1990 2000 20000 2002 2003 2008 20256 2052 2053 20547 2060 2066 2067 2081 2082 2083 2086 2087 2096 21 2100 21025 211 2121 21379 2150 2154 2181 221 2211 2222 2223 2225 2259 23 23023 2323 2332 23424 2345 2352 2375 2376 2382 24 2404 2455 25 25105 2548 2551 2553 2555 25565 2557 2562 2572 26 2628 263 264 2650 27015 27017 2709 2761 2762 28015 28017 2806 3000 30002 30003 3001 3050 3066 3067 3068 3085 3092 3102 311 3112 3114 3116 3117 3118 3121 31337 3211 32400 3260 3268 3269 3270 32764 3299 3301 3306 33060 3307 3310 3311 3333 3388 3389 3401 3404 3406 3410 3412 3479 35000 3523 3542 3549 3550 3551 3552 3555 3558 3559 3567 3689 37 37215 3749 37777 3780 389 3953 3954 4000 4001 4022 4040 4063 4064 4118 4157 41800 4242 4243 427 4282 43 4321 4369 44158 443 4430 4433 444 4443 44818 4500 4505 4506 4567 4782 4786 47990 4840 4848 4899 49 49152 4949 5000 50000 5001 5003 50050 5006 5007 50070 5009 5010 50100 503 5090 51 51106 51235 515 5201 522 5222 52288 5269 5280 52869 53 5357 54138 5432 5435 55000 554 55442 55443 5555 55553 55554 5568 5593 5594 5598 5599 5601 5672 5801 5858 587 5909 5938 5984 5985 5986 6001 60010 60030 6005 60129 6080 6161 61613 61616 62078 631 636 6363 6379 6443 6503 6512 6580 6605 6633 6650 6653 666 6664 6666 6667 6668 6697 70 7001 7017 7070 7071 7171 7415 7433 7443 7444 7445 7474 7500 7510 7547 7548 7634 7657 771 772 7776 7777 7779 7887 789 79 7989 80 8001 8008 8009 8015 8018 8019 8021 8035 8042 8050 8058 8060 8071 8080 8081 8083 8085 8086 8087 8089 8090 8097 8098 8099 81 8101 8105 8106 8107 8108 8112 8123 8139 8181 8182 82 8200 8222 8236 8282 8291 83 8333 8334 8402 8408 8411 8412 8413 8423 843 8431 8432 8433 8444 8545 8554 8575 86 8649 8686 8728 873 8766 8782 8789 88 8800 8803 8815 8831 8833 8834 8848 8853 8855 8859 8861 8865 8866 8874 8880 8885 8888 8889 8999 9000 9001 9002 9003 9004 9009 9012 9016 9019 9022 9023 9024 9025 9028 9038 9042 9044 9049 9051 9070 9080 9091 9092 9095 9100 9102 9103 9110 9119 9136 9151 9160 9200 9202 9203 9205 9206 9207 9219 9251 9295 9304 9305 9306 9418 943 9443 95 9500 9530 9595 9600 9606 9633 9690 9704 9761 98 9800 9869 9898 992 993 9943 995 9966 9981 9988 9990 9993 9998 9999

CVEs Detected

CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408

Map

Whois Information

  • NetRange: 47.98.0.0 - 47.112.255.255
  • CIDR: 47.100.0.0/14, 47.112.0.0/16, 47.104.0.0/13, 47.98.0.0/15
  • NetName: APNIC
  • NetHandle: NET-47-98-0-0-1
  • Parent: NET47 (NET-47-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2015-04-01
  • Updated: 2015-04-01
  • Ref: https://rdap.arin.net/registry/ip/47.98.0.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 47.104.0.0 - 47.111.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-CNNIC-CN
  • last-modified: 2021-06-16T01:30:52Z
  • irt: IRT-CNNIC-CN
  • address: Beijing, China
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-06-16T01:39:57Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: [email protected]
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: [email protected]
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: [email protected]
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: [email protected]
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 47.104.0.0/13
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:06Z
  • route: 47.104.0.0/13
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:05Z

Links to attack logs

anonymous-proxy-ip-list-2023-10-31 anonymous-proxy-ip-list-2023-10-30