59.75.40.111 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 59.75.40.111 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • JARM: 2ad2ad20d2ad2ad22c2ad2ad2ad2ad15a110e3e079cba2b9e84d88fe6e1939

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10001 102 1023 10243 10250 1029 10443 10554 110 11000 1111 11112 11210 11211 1153 1200 12000 13 1311 1337 13579 1366 1400 14147 14265 1433 1471 1521 16010 16030 1604 16992 16993 17 1723 1741 175 179 1801 18081 18245 1830 1883 19 19000 19071 1911 1925 1926 1935 195 2000 20000 2003 2008 20256 20547 2057 2063 2067 2081 2082 2086 2087 21 2100 21379 2154 2181 2202 23 2323 23424 2345 2375 2382 2404 25 25001 25105 2548 2550 2556 25565 264 27015 2709 2761 2762 28017 3000 30002 3001 3005 3058 3066 3073 3081 3083 3088 3097 3105 311 3116 3128 31337 32400 3260 3268 3269 3306 33060 3310 3388 3389 3407 3410 3498 35000 3503 3522 3541 3542 3551 3552 3554 3561 3689 3749 37777 3780 3790 3791 3793 389 4022 4040 4042 4063 4064 4100 4242 427 4369 443 4430 4433 444 4443 4500 4506 4782 4786 47990 4808 4840 4848 4899 49 4911 49152 49153 5000 50000 5001 5005 50050 5006 5007 50070 5009 50100 5050 5080 5090 51106 51235 5150 5201 5222 5269 52869 53 5357 54138 5443 548 55442 55443 5555 55553 55554 55580 5560 5590 5593 5596 5601 56981 5800 5858 587 58749 5906 5985 5986 60001 6001 60010 60030 6004 6080 61613 61616 62078 6262 631 636 6512 6580 6633 6653 666 6664 6666 6667 6668 6697 70 7003 7171 7443 7465 7474 7548 7654 7657 789 79 7989 80 8000 8009 8010 8019 8021 8026 8033 8060 8069 8080 8081 8082 8085 8086 8089 8090 8099 81 8110 8112 8123 8139 8140 8143 8190 82 8200 8291 83 8333 84 8403 8404 8416 8423 8431 8432 8443 8447 8500 8554 8575 8728 873 8765 8766 8784 8787 8790 88 880 8800 8810 8816 8826 8846 8847 8848 8860 8871 9000 9001 9002 9009 9018 902 9040 9042 9048 9049 9084 9089 9090 9092 9095 9097 9099 91 9100 9104 9110 9119 9151 9160 9191 9200 9295 9306 9311 9445 9530 9550 9595 9600 9761 9869 990 992 993 9943 9944 9981 999 9999

Map

Whois Information

  • inetnum: 59.74.0.0 - 59.76.255.255
  • netname: XAR-CERNET
  • descr: China Education and Research Network
  • descr: Xi’an Regional Network
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:27Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2023-05-26T07:44:58Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-05-26T07:45:57Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

anonymous-proxy-ip-list-2023-11-02