47.95.116.119 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 47.95.116.119 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 45/100
Host and Network Information
-
Tags: cyber security, ioc, malicious, Nextray, phishing, probing, scanning, webscan, webscanner bruteforce web app attack
-
View other sources: Spamhaus VirusTotal
- Country: China
- Network:
- Noticed: 34 times
- Protocols Attacked: redis
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
- Passive DNS Results: www.whsongwei.com
Open Ports Detected
10000 10001 10002 10003 10014 10021 10037 10038 10044 10045 10066 10081 10100 10134 102 10225 1023 1025 10250 10256 10390 104 10445 10480 10554 1080 10892 10909 10933 10934 10936 1099 11 110 11000 111 1110 1111 11180 11211 11288 113 11480 1153 11602 11681 1177 1195 1198 12000 12101 12103 12104 12109 12113 12115 12120 12133 12156 12168 12169 12171 12174 12186 12187 12189 12190 12199 122 12205 12211 12223 12224 12235 12245 12271 12272 12275 12276 12281 12289 12294 12301 12316 12325 12329 12337 12341 12345 12352 12359 12369 12372 12374 12378 12383 12386 12394 12395 12413 12445 12455 12462 12464 12473 12482 12496 12497 12500 12511 12530 12534 12535 12536 12564 12566 12567 12586 1283 13128 13333 1337 1343 13443 135 139 14026 14082 14101 1414 14147 14265 1433 14344 14403 14523 1454 14873 14909 15 1500 15082 1515 1521 15555 15831 1599 16004 16007 16008 16009 16015 16025 16035 16037 16039 1604 16042 16046 16051 16068 16074 16078 16093 16100 16831 17 1700 17020 17184 17443 175 17770 17771 17775 17776 17779 17780 1800 18002 18004 18018 18019 18021 18022 18024 18027 18040 18058 18060 18065 18067 18068 18069 18081 18090 18093 18245 18368 18556 1883 18888 189 19 19000 19016 1911 1926 1954 1964 1965 1967 1971 1976 2 20000 2002 20020 2003 20070 2008 20208 20547 2056 2063 2065 2067 2069 2078 2081 2083 2087 20880 21 21025 21081 21084 2121 21230 21231 21233 21255 21259 21270 21277 21282 21300 21303 21321 21379 21515 2154 2181 22022 221 2222 2233 22345 23 23023 2332 234 2376 2404 2443 24510 2455 25 25001 25008 2525 2550 2551 25565 2561 2572 2602 2626 2628 27017 2761 2762 28015 28818 30000 30003 30005 30006 30009 3001 30013 30025 3006 30083 3012 3017 3050 3051 3056 3065 3069 3071 3083 311 3112 3124 31337 3144 31443 3150 3154 3156 3157 3164 3166 3178 3182 3189 3200 32080 32444 3260 3268 3299 3301 3306 33060 3310 3342 3365 3388 3402 3403 3407 3408 35000 35002 35004 3524 35241 3549 3551 3556 3562 3563 3569 36983 37 37080 37777 3780 3790 3792 389 3952 3954 40029 4063 4064 4120 4150 4157 41800 4242 427 4282 4321 4369 440 4400 4401 44158 443 44300 4433 4434 44410 4443 4444 44444 4445 4449 4455 4461 447 44818 45003 45006 45039 4543 4550 45667 45786 465 47001 4786 47990 48019 4840 48889 4899 49121 4949 49501 49767 50000 50005 5001 5003 50073 50085 5009 5010 50100 502 503 50777 5083 5093 50996 51004 51007 51235 51294 513 5140 515 5172 5201 5223 5229 5231 5233 5240 5244 5250 5259 5263 5265 52951 53 53482 53483 53806 54138 54545 548 54857 55000 55081 55200 554 5543 55443 55490 55554 5593 5595 5599 5602 5605 5660 5672 5701 57780 58000 59012 5902 5909 5911 5912 5915 5918 593 5938 59443 5984 5986 5990 6000 6001 6002 60023 6005 6009 60129 6070 61234 61613 62078 632 63210 63256 6363 6482 65000 6514 6580 6603 6633 666 6661 6667 6668 6697 6700 685 689 6998 70 7000 7001 7002 7005 7013 7021 7071 7080 7105 7171 7173 7218 7302 7415 7434 7443 7535 7548 7603 7634 771 7776 7799 785 789 79 7980 8009 8021 8029 8032 8036 8040 8058 8061 8075 8081 8085 8087 8089 8093 8094 8099 8107 8110 8117 8119 8126 8129 8135 8139 8140 8145 8147 8154 8159 8175 8176 8178 8181 8199 8238 8251 8282 8284 8291 8316 8333 8381 8401 8408 8413 8415 8427 8429 8431 8446 8450 8455 8470 8493 8500 8510 8545 8553 8554 8557 8569 8573 8586 8587 86 8621 8622 8641 8643 8649 8680 8705 8706 8724 8728 873 8733 8788 8791 8803 8808 8813 8821 8824 8830 8831 8834 8835 8855 8866 8873 8875 888 8880 8883 8889 8899 8943 90 9000 9001 9007 9017 9020 9029 9033 9037 9038 9042 9051 9054 9061 9062 9068 9095 9100 9107 9111 9130 9136 9139 9156 9160 9161 9162 9165 9167 9179 9184 9185 9188 9202 9209 9212 9223 9257 9301 9306 9307 9311 9333 9351 9353 9376 9400 9418 9441 9501 9527 9550 9606 9633 97 9743 9765 9898 9899 9916 992 9943 9998 9999
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2010-4478 CVE-2010-4755 CVE-2010-5107 CVE-2011-4327 CVE-2011-5000 CVE-2012-0814 CVE-2014-1692 CVE-2014-2532 CVE-2014-2653 CVE-2015-5352 CVE-2015-5600 CVE-2015-6563 CVE-2015-6564 CVE-2016-0777 CVE-2016-10009 CVE-2016-10010 CVE-2016-10011 CVE-2016-10012 CVE-2016-10708 CVE-2016-1908 CVE-2016-20012 CVE-2016-3115 CVE-2017-15906 CVE-2018-10088 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-16905 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767 CVE-2024-6387 CVE-2025-26465 CVE-2025-32728
Map
Whois Information
- NetRange: 47.92.0.0 - 47.97.255.255
- CIDR: 47.92.0.0/14, 47.96.0.0/15
- NetName: APNIC
- NetHandle: NET-47-92-0-0-1
- Parent: NET47 (NET-47-0-0-0-0)
- NetType: Early Registrations, Transferred to APNIC
- OriginAS:
- Organization: Asia Pacific Network Information Centre (APNIC)
- RegDate: 2015-03-02
- Updated: 2015-03-02
- Ref: https://rdap.arin.net/registry/ip/47.92.0.0
- OrgName: Asia Pacific Network Information Centre
- OrgId: APNIC
- Address: PO Box 3646
- City: South Brisbane
- StateProv: QLD
- PostalCode: 4101
- Country: AU
- RegDate:
- Updated: 2012-01-24
- Ref: https://rdap.arin.net/registry/entity/APNIC
- OrgTechHandle: AWC12-ARIN
- OrgTechName: APNIC Whois Contact
- OrgTechPhone: +61 7 3858 3188
- OrgTechEmail: search-apnic-not-arin@apnic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- OrgAbuseHandle: AWC12-ARIN
- OrgAbuseName: APNIC Whois Contact
- OrgAbusePhone: +61 7 3858 3188
- OrgAbuseEmail: search-apnic-not-arin@apnic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- inetnum: 47.92.0.0 - 47.95.255.255
- netname: ALISOFT
- descr: Aliyun Computing Co., LTD
- descr: 5F, Builing D, the West Lake International Plaza of S&T
- descr: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- country: CN
- admin-c: ZM1015-AP
- tech-c: ZM877-AP
- tech-c: ZM876-AP
- tech-c: ZM875-AP
- abuse-c: AC1601-AP
- status: ALLOCATED PORTABLE
- mnt-by: MAINT-CNNIC-AP
- mnt-irt: IRT-ALISOFT-CN
- last-modified: 2023-11-28T00:58:17Z
- irt: IRT-ALISOFT-CN
- address: No.391 Wen’er Road, Hangzhou, Zhejiang, China, 310099
- e-mail: didong.jc@alibaba-inc.com
- abuse-mailbox: didong.jc@alibaba-inc.com
- admin-c: ZM877-AP
- tech-c: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2021-09-05T23:38:36Z
- role: ABUSE CNNICCN
- country: ZZ
- address: Beijing, China
- phone: +000000000
- e-mail: ipas@cnnic.cn
- admin-c: IP50-AP
- tech-c: IP50-AP
- nic-hdl: AC1601-AP
- abuse-mailbox: ipas@cnnic.cn
- mnt-by: APNIC-ABUSE
- last-modified: 2024-07-30T11:55:46Z
- person: Li Jia
- address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou
- country: CN
- phone: +86-0571-85022088
- e-mail: jiali.jl@alibaba-inc.com
- nic-hdl: ZM1015-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2025-07-01T07:12:42Z
- person: Guoxin Gao
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022600
- fax-no: +86-0571-85022600
- e-mail: anti-spam@list.alibaba-inc.com
- nic-hdl: ZM875-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2014-07-30T01:56:01Z
- person: security trouble
- e-mail: abuse@alibaba-inc.com
- address: Hangzhou, Zhejiang, China
- phone: +86-0571-85022600
- country: CN
- mnt-by: MAINT-CNNIC-AP
- nic-hdl: ZM876-AP
- last-modified: 2025-07-01T07:06:11Z
- person: Guowei Pan
- address: 5F, Builing D, the West Lake International Plaza of S&T
- address: No.391 Wen’er Road, Hangzhou City
- address: Zhejiang, China, 310099
- country: CN
- phone: +86-0571-85022088-30763
- fax-no: +86-0571-85022600
- e-mail: abuse@alibaba-inc.com
- nic-hdl: ZM877-AP
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2025-07-01T07:05:46Z
- route: 47.92.0.0/14
- descr: Hangzhou Alibaba Advertising Co.,Ltd.
- country: CN
- origin: AS37963
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2019-08-07T23:28:06Z
- route: 47.92.0.0/14
- descr: Alibaba (US) Technology Co., Ltd.
- country: CN
- origin: AS45102
- mnt-by: MAINT-CNNIC-AP
- last-modified: 2019-08-07T23:28:04Z
Links to attack logs
****** dotoronto-redis-bruteforce-ip-list-2021-03-31 ****** ******
Share on: