47.111.203.234 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 47.111.203.234 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 15/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS37963 hangzhou alibaba advertising co. ltd.
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

1000 10000 10001 1012 10134 102 1023 1025 10250 1029 104 10443 10554 110 11000 111 11112 11210 11211 113 11300 1153 1167 1177 119 1200 12000 1234 12345 1311 1337 1344 135 1366 1400 14147 14265 143 1433 14344 15 1515 154 1599 16030 1604 16993 17 1723 1741 175 179 1800 1801 18081 18245 1883 19 19071 1911 1925 1926 1962 20 2000 20000 2008 2010 2020 2022 20256 20547 2055 2058 2067 2081 2082 2083 2086 2087 21 21025 2121 21379 2154 221 2222 2259 23 23023 2332 23424 2345 2352 2375 2376 2404 2443 25 25001 2549 25565 2561 2562 2563 2568 2628 264 27015 27017 2761 2762 28015 2806 3000 30002 30003 3001 3050 3059 3062 3066 3078 3082 3087 3101 311 3113 31337 32400 3260 3268 3269 32764 3299 3301 3306 33060 3310 3389 35000 3521 3522 3523 3541 3542 3551 3552 3559 3560 3567 3568 3569 3570 3689 37215 3749 37777 3780 3790 389 3950 3952 4000 4022 4064 4100 4157 4242 4282 43 4321 4369 44158 443 4433 444 4443 44818 4500 4506 465 4664 4782 4786 47990 4840 4848 4899 49 4911 49152 4949 5000 50000 50050 5006 5007 5009 5010 50100 502 5025 503 5080 51235 515 5172 5201 5222 52288 5269 52869 53 54138 5432 5435 548 55000 554 55443 5555 55553 55554 55580 5560 5567 5569 5594 5601 5672 5801 5858 5906 593 5984 5986 60001 6001 60010 6002 6010 60129 6161 61613 61616 62078 636 6379 6560 6580 6633 6653 666 6664 6667 6668 6789 70 7001 7005 7071 7171 7218 7415 7493 7500 7510 7547 7634 771 772 7777 789 79 80 8001 8008 8009 8011 8015 8049 8052 8057 8058 8069 8071 8080 8081 8083 8085 8086 8087 8089 8090 8099 8107 8112 8123 8126 8139 8140 82 8200 8291 83 8333 84 8411 8421 8429 8443 8500 8545 8575 8622 8649 8666 8700 8728 873 8784 8800 8801 8817 8818 8823 8861 8864 8865 8870 8880 8885 8888 8889 8891 8993 9000 9001 9002 9009 9014 9017 9022 9027 9039 9042 9050 9082 9091 9092 9095 9099 9100 9151 9189 9200 9208 9213 9295 9304 9306 9418 9443 9444 9530 9595 9606 9633 9761 98 9861 992 995 9950 9981 9991 9998 9999

CVEs Detected

CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-9244 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408

Map

Whois Information

  • NetRange: 47.98.0.0 - 47.112.255.255
  • CIDR: 47.100.0.0/14, 47.112.0.0/16, 47.98.0.0/15, 47.104.0.0/13
  • NetName: APNIC
  • NetHandle: NET-47-98-0-0-1
  • Parent: NET47 (NET-47-0-0-0-0)
  • NetType: Early Registrations, Transferred to APNIC
  • OriginAS:
  • Organization: Asia Pacific Network Information Centre (APNIC)
  • RegDate: 2015-04-01
  • Updated: 2015-04-01
  • Ref: https://rdap.arin.net/registry/ip/47.98.0.0
  • OrgName: Asia Pacific Network Information Centre
  • OrgId: APNIC
  • Address: PO Box 3646
  • City: South Brisbane
  • StateProv: QLD
  • PostalCode: 4101
  • Country: AU
  • RegDate:
  • Updated: 2012-01-24
  • Ref: https://rdap.arin.net/registry/entity/APNIC
  • OrgAbuseHandle: AWC12-ARIN
  • OrgAbuseName: APNIC Whois Contact
  • OrgAbusePhone: +61 7 3858 3188
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • OrgTechHandle: AWC12-ARIN
  • OrgTechName: APNIC Whois Contact
  • OrgTechPhone: +61 7 3858 3188
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
  • inetnum: 47.104.0.0 - 47.111.255.255
  • netname: ALISOFT
  • descr: Aliyun Computing Co., LTD
  • descr: 5F, Builing D, the West Lake International Plaza of S&T
  • descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
  • country: CN
  • admin-c: ZM1015-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • tech-c: ZM875-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-CNNIC-CN
  • last-modified: 2021-06-16T01:30:52Z
  • irt: IRT-CNNIC-CN
  • address: Beijing, China
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-06-16T01:39:57Z
  • role: ABUSE CNNICCN
  • address: Beijing, China
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2020-05-14T11:19:01Z
  • person: Li Jia
  • address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
  • country: CN
  • phone: +86-0571-85022088
  • e-mail: [email protected]
  • nic-hdl: ZM1015-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T02:02:01Z
  • person: Guoxin Gao
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • fax-no: +86-0571-85022600
  • e-mail: [email protected]
  • nic-hdl: ZM875-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2014-07-30T01:56:01Z
  • person: security trouble
  • e-mail: [email protected]
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2021-04-13T23:22:33Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: [email protected]
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2013-07-09T01:34:02Z
  • route: 47.104.0.0/13
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • country: CN
  • origin: AS37963
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:06Z
  • route: 47.104.0.0/13
  • descr: Alibaba (US) Technology Co., Ltd.
  • country: CN
  • origin: AS45102
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2019-08-07T23:28:05Z

Links to attack logs

anonymous-proxy-ip-list-2023-11-02