59.75.40.196 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 59.75.40.196 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • JARM: 2ad2ad20d2ad2ad22c2ad2ad2ad2ad15a110e3e079cba2b9e84d88fe6e1939

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 1023 1024 10243 10250 1027 1029 104 10443 10554 1099 11 11000 11112 11210 11211 113 11300 1153 119 1200 12000 1234 13 1400 143 1471 15 1521 1599 16030 1604 16993 17 17000 1723 1741 175 179 18245 19 19071 1911 1926 1935 195 1950 1962 20 2000 2002 2003 2008 20256 20547 2067 2077 2081 2082 2086 2087 21 21025 2126 21379 2181 221 2211 2221 23 2323 2332 23424 2345 2375 24 2404 2480 25 25001 25105 2549 2550 2555 25565 2558 2598 264 27015 2762 28015 28017 3000 30003 3001 3050 3063 3085 3086 3107 311 3114 3128 31337 3260 3268 3269 3270 3299 3301 3306 3311 3388 3389 3408 3498 35000 3541 3542 3551 3559 3561 37 37215 3749 37777 3780 3790 389 3950 4000 4040 4063 4064 41800 4242 4282 4321 4369 44158 443 4433 444 4443 44818 4500 4506 4567 4664 47990 4840 4848 4899 4911 49152 5000 50000 5004 5005 50050 5006 5007 50070 5010 50100 502 5025 503 51235 5172 5201 5269 52869 53 5357 54138 5432 5443 55000 554 55442 55443 55553 55554 55580 5604 5607 5800 587 58749 5900 5901 5906 5938 5984 5985 6000 60001 6001 60010 6002 60030 6009 6080 61613 62078 631 636 6443 6512 6590 6600 6633 6653 6666 6667 6668 6697 685 7014 7017 7071 7171 7218 7443 7444 7474 7547 7548 7634 7657 7676 771 7777 7779 7887 789 80 800 8001 8008 8009 8012 8036 8045 8049 8055 8060 8080 8083 8085 8087 8088 8089 8090 8095 81 8100 8105 8112 8123 8126 8139 8140 8181 82 8200 8236 8252 8291 83 8333 8334 84 8414 8415 8443 8500 8554 8575 8649 8728 873 88 8800 8801 8812 8816 8834 8836 8837 8838 8855 8856 8869 8880 8887 9000 9001 9004 9005 9009 9016 9018 902 9022 9025 9036 9042 9051 9095 9100 9101 9151 9191 9200 9211 9219 9220 9306 9310 9418 9595 9600 9761 9869 9876 992 9944 995 9981 9988 9994 9998 9999

Map

Whois Information

  • inetnum: 59.74.0.0 - 59.76.255.255
  • netname: XAR-CERNET
  • descr: China Education and Research Network
  • descr: Xi’an Regional Network
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:27Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2023-05-26T07:44:58Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-05-26T07:45:57Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

anonymous-proxy-ip-list-2023-10-31 anonymous-proxy-ip-list-2023-11-01