47.98.177.61 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 47.98.177.61 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Potentially Malicious Host 🟡 45/100
Host and Network Information
-
Tags: awsindia, awsjap, bruteforce, cyber security, ioc, malicious, Nextray, phishing, redis, Scanner, scanning, smtp, ssh, tcp, Webattack
-
View other sources: Spamhaus VirusTotal
- Country: China
- Network:
- Noticed: 46 times
- Protocols Attacked: redis
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, India, Japan, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
Open Ports Detected
10001 10134 102 1025 1080 10911 1099 11210 11211 11300 1200 1414 143 1433 14344 15 1515 1521 1599 1604 16993 179 1800 1801 18081 18245 1883 19 19000 195 1962 2000 2003 2020 20547 2058 2066 2083 2087 21 21379 2154 221 2222 22556 23023 2376 2455 25001 2549 25565 2557 2628 27015 2761 2762 28015 2806 3001 3073 31337 31822 32022 32422 3260 3268 3269 32764 3299 3306 3310 33722 33822 34322 34622 34722 35000 3780 3790 3791 38222 38522 38622 4000 4063 4064 41522 41622 42122 4242 42422 42522 42622 42922 43 43422 4369 43922 44122 44322 444 4444 44822 4500 46022 46122 46322 46422 47022 47222 47322 47922 48022 48222 4840 48822 49122 49222 49322 49622 50000 5001 5007 5009 50100 5025 51322 515 51522 51622 51722 5201 52122 52322 52422 52722 52822 53 53022 53322 54122 5435 548 54922 55000 55222 55322 55553 55622 55822 56122 56422 56722 56922 57122 5858 58722 58922 593 5938 6001 6002 6036 61613 61616 62078 63210 63256 63260 6379 6633 6653 666 6666 6668 70 7005 7071 7090 7218 7548 7778 789 8018 8083 8087 8107 8140 8181 8291 8405 8575 8814 8834 8885 8889 8935 9002 9095 9151 9208 9221 9300 9306 9443 9876 9943 9998 9999
CVEs Detected
CVE-2007-2768 CVE-2008-3844 CVE-2016-20012 CVE-2017-15906 CVE-2018-15473 CVE-2018-15919 CVE-2018-20685 CVE-2019-6109 CVE-2019-6110 CVE-2019-6111 CVE-2020-14145 CVE-2020-15778 CVE-2021-36368 CVE-2021-41617 CVE-2023-38408 CVE-2023-48795 CVE-2023-51385 CVE-2023-51767
Map
Whois Information
- NetRange: 47.98.0.0 - 47.112.255.255
- CIDR: 47.100.0.0/14, 47.98.0.0/15, 47.104.0.0/13, 47.112.0.0/16
- NetName: APNIC
- NetHandle: NET-47-98-0-0-1
- Parent: NET47 (NET-47-0-0-0-0)
- NetType: Early Registrations, Transferred to APNIC
- OriginAS:
- Organization: Asia Pacific Network Information Centre (APNIC)
- RegDate: 2015-04-01
- Updated: 2015-04-01
- Ref: https://rdap.arin.net/registry/ip/47.98.0.0
- OrgName: Asia Pacific Network Information Centre
- OrgId: APNIC
- Address: PO Box 3646
- City: South Brisbane
- StateProv: QLD
- PostalCode: 4101
- Country: AU
- RegDate:
- Updated: 2012-01-24
- Ref: https://rdap.arin.net/registry/entity/APNIC
- OrgAbuseHandle: AWC12-ARIN
- OrgAbuseName: APNIC Whois Contact
- OrgAbusePhone: +61 7 3858 3188
- OrgAbuseEmail: search-apnic-not-arin@apnic.net
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
- OrgTechHandle: AWC12-ARIN
- OrgTechName: APNIC Whois Contact
- OrgTechPhone: +61 7 3858 3188
- OrgTechEmail: search-apnic-not-arin@apnic.net
- OrgTechRef: https://rdap.arin.net/registry/entity/AWC12-ARIN
Links to attack logs
awsjap-redis-bruteforce-ip-list-2022-03-21 ****** ****** awsindia-redis-bruteforce-ip-list-2022-03-21 awsjap-redis-bruteforce-ip-list-2022-03-11 awsindia-redis-bruteforce-ip-list-2022-04-06 ****** ******
Share on: