59.75.40.18 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 59.75.40.18 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • JARM: 2ad2ad20d2ad2ad22c2ad2ad2ad2ad15a110e3e079cba2b9e84d88fe6e1939

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 10001 102 1023 1024 1026 104 10443 10554 11 110 113 11300 11371 1153 119 1200 12000 1234 13 1311 1337 1400 14147 14265 1433 1471 15 1521 1599 16010 16030 1604 16992 16993 17 1741 1801 18081 18245 1883 19 19071 1911 1925 1926 1947 1962 20000 2002 2008 20256 20547 2081 2082 2086 2087 2095 21025 2121 21379 2154 2201 2222 2225 23 23023 2323 2332 23424 2375 2376 2404 2443 2455 2480 25 25001 25105 2550 2569 2570 2601 2602 264 2761 2762 28015 28017 2985 3000 30003 3001 3057 3058 3086 3088 3092 3094 3109 3110 3117 3128 31337 32400 3268 3269 32764 3299 3301 33060 3310 3389 3403 3412 35000 3522 3551 37215 3749 37777 3780 3790 389 4000 4010 4022 4042 4064 41800 4242 43 4321 4369 44158 443 4433 444 44818 4500 4506 4523 4545 4550 4567 4646 465 4782 4786 47990 4840 4848 4899 49 4949 5000 50000 5001 5005 50050 5006 5007 5009 5010 502 5025 503 5050 5070 5090 51106 51235 515 5172 5201 5222 5280 52869 54138 5431 5432 5454 548 55000 554 5542 55442 555 55554 5560 5592 5593 5594 5601 5603 5605 5607 5673 56981 5800 5801 5858 5901 5906 5909 5938 5984 5985 5986 6000 6001 60010 6002 60030 6080 61613 61616 62078 631 636 6379 6443 6601 6622 6633 6653 6664 6666 6667 6668 685 70 7001 7003 7071 7080 7171 7218 7401 7443 7474 7657 7676 7700 771 7777 789 79 7989 80 8000 8001 8005 8008 8009 8010 8014 8016 8022 8026 8030 8038 8048 806 8060 8064 8069 8080 8085 8086 8087 8089 8098 8099 81 8102 8106 8108 8110 8123 8126 8139 8140 8181 82 8200 83 8333 84 8411 8413 8420 8428 8433 8443 8500 8545 8575 8649 8728 873 8779 8782 8789 88 8800 8802 8815 8830 8832 8834 8839 8842 8849 8856 8880 8889 9000 9005 902 9020 9027 9034 9046 9051 9070 9080 9090 9098 9103 9105 9106 9109 9151 9160 9191 9206 9211 9214 9295 9306 9418 9433 9443 95 9530 9595 9600 9761 9765 9800 9869 99 990 992 993 9943 995 9992 9998 9999

Map

Whois Information

  • inetnum: 59.74.0.0 - 59.76.255.255
  • netname: XAR-CERNET
  • descr: China Education and Research Network
  • descr: Xi’an Regional Network
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:27Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2023-05-26T07:44:58Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-05-26T07:45:57Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

anonymous-proxy-ip-list-2023-10-30