59.75.38.201 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 59.75.38.201 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • JARM: 2ad2ad20d2ad2ad22c2ad2ad2ad2ad15a110e3e079cba2b9e84d88fe6e1939

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10001 1012 102 1023 1024 10243 104 10554 1063 1099 110 11000 111 11210 11211 11300 11371 1153 119 1200 12000 1234 13 1337 13579 1366 1433 1471 15 16010 1604 16992 16993 17 1723 175 179 1801 18081 1883 19 19071 1925 1926 1935 195 1962 1990 2000 20000 2002 2008 20256 2048 2056 2057 2063 2081 21 21025 2121 2122 21379 2150 2154 2181 221 2221 2222 23 2323 23424 2345 2352 2375 2480 25001 25565 2560 2561 2602 2628 2650 27015 2761 2762 28017 3000 30002 30003 3001 3050 3051 3071 3073 3083 3089 3102 311 3110 3115 3116 3221 32400 3260 3268 32764 3299 3301 3306 3310 3337 3388 3389 3406 3409 35000 3541 3542 3548 3552 3557 3689 37 37215 3749 37777 3780 389 3950 3954 4000 4022 4040 4042 4043 4063 41800 4190 4242 44158 444 4443 450 4500 4506 465 4664 4782 4786 4808 4840 4848 4899 49 4911 49152 49153 4999 50000 5001 5002 5005 50050 5006 5007 5009 50100 5025 503 5090 51106 51235 515 5172 5209 5222 5269 52869 53 5357 54138 5435 554 5542 55442 55554 55580 5560 5597 5599 5601 5605 56981 5800 5858 587 5900 5901 5906 5907 5938 6000 6001 60010 6002 60030 6080 61613 61616 6264 631 636 6379 6443 6511 6580 6603 6653 666 6664 6666 6667 6789 7001 7005 7010 7071 7080 7171 7218 7444 7465 7474 7634 7657 771 777 7777 7779 789 79 7999 80 8001 8009 8010 8023 8043 8052 8060 8069 8080 8081 8083 8086 8087 8089 8090 8094 8098 8099 81 8109 8112 8123 8126 8139 8140 8159 8181 8182 8282 8291 83 8333 8334 8383 8427 8429 8433 8500 8545 8554 8575 8649 8784 88 880 8800 8806 8816 8820 8822 8828 8829 8831 8834 8880 8881 8888 9000 9001 9008 902 9025 9032 9042 9051 9080 9091 9092 9095 9100 9105 9136 9151 9191 9199 9200 9222 9295 9301 9303 9306 9309 9433 9443 9530 9600 9606 97 9704 9761 9800 9869 99 992 9944 9991 9993 9998

Map

Whois Information

  • inetnum: 59.74.0.0 - 59.76.255.255
  • netname: XAR-CERNET
  • descr: China Education and Research Network
  • descr: Xi’an Regional Network
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:27Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2023-05-26T07:44:58Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-05-26T07:45:57Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

anonymous-proxy-ip-list-2023-10-24