59.75.40.248 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 59.75.40.248 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • JARM: 2ad2ad20d2ad2ad22c2ad2ad2ad2ad15a110e3e079cba2b9e84d88fe6e1939

  • View other sources: Spamhaus VirusTotal

  • Country: China
  • Network: AS4538 china education and research network center
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy

Open Ports Detected

10000 1024 10243 10250 1027 10443 10554 1099 110 111 11210 11211 113 11371 1153 119 12000 1234 13 1311 1337 13579 1388 1400 14147 14265 143 1471 15 1521 1599 16010 16030 1604 1660 16992 16993 17 179 1801 18081 1883 19 19000 19071 1911 1925 1926 195 1962 2000 20000 2020 2021 2022 20256 20547 2065 2081 2082 2083 2086 2087 21025 2121 2122 21379 2154 2181 2222 225 23 23023 2323 23424 2345 2375 2376 2455 2480 25 25001 25105 25565 26 2602 264 2650 27015 2761 28017 2985 3000 30002 30003 3001 3002 3052 3067 3074 3092 3100 3106 3108 3115 3119 3128 32400 3260 3269 32764 3299 3301 3306 33060 3311 3389 3403 3405 3409 3412 35000 3503 3541 3542 3551 3568 3689 37215 3749 3780 389 4000 4010 41800 4242 427 4282 43 4321 4369 443 4433 444 4443 44818 4500 4505 4506 4646 465 4782 4786 4848 49 491 4911 49152 49153 4949 5000 50000 5001 5005 50050 5006 5007 50070 50100 502 51106 51235 515 5190 5201 5222 52869 53 54138 5432 5435 548 55000 554 55442 5555 55553 55554 5560 5591 5597 5605 5673 56981 5801 5858 5900 5901 5984 5986 6000 60001 6001 60010 6002 60030 6080 61616 62078 631 636 6379 6443 6511 6633 6653 666 6667 6668 6748 6887 70 7002 7071 7171 7218 7401 7474 7510 7547 7634 7654 7657 7676 771 772 7777 7779 789 79 80 8000 8005 8008 8010 8011 8020 8022 8029 8035 8047 805 8060 8069 8080 8086 8089 8090 8092 8098 81 8111 8112 8123 8140 8181 8182 82 8251 8291 83 8333 84 8401 8410 8415 8418 8427 843 8443 8500 8554 8622 8663 8700 8728 873 8767 8788 88 8800 8806 8834 8838 8841 8846 8849 8850 8880 8888 8889 8969 8989 9000 9002 9009 902 9029 9037 9040 9042 9047 9051 9080 9090 9091 9098 9100 9102 9111 9160 9191 9200 9204 9207 9212 9295 9302 9305 9306 9389 9418 9443 9530 9595 9600 9606 9761 98 9800 9869 990 992 993 9943 9944 995 9950 9966 9981 9992 9997

Map

Whois Information

  • inetnum: 59.74.0.0 - 59.76.255.255
  • netname: XAR-CERNET
  • descr: China Education and Research Network
  • descr: Xi’an Regional Network
  • country: CN
  • admin-c: CER-AP
  • tech-c: CER-AP
  • abuse-c: AC1685-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: APNIC-HM
  • mnt-lower: MAINT-CERNET-AP
  • mnt-routes: MAINT-CERNET-AP
  • mnt-irt: IRT-CERNET-AP
  • last-modified: 2020-09-03T09:16:27Z
  • irt: IRT-CERNET-AP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • phone: +86-10-62784301
  • fax-no: +86-10-62785933
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2023-05-26T07:44:58Z
  • role: ABUSE CERNETAP
  • address: Network Research Center,
  • address: Main Bldg, Tsinghua Univ
  • address: Beijing 100084, China
  • country: ZZ
  • phone: +86-10-62784301
  • e-mail: [email protected]
  • admin-c: CER-AP
  • tech-c: CER-AP
  • nic-hdl: AC1685-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2023-05-26T07:45:57Z
  • role: CERNET Helpdesk
  • address: CERNET Center
  • address: Beijing 100084, China
  • country: CN
  • phone: +86-10-6278-4049
  • fax-no: +86-10-6278-5933
  • e-mail: [email protected]
  • admin-c: XL1-CN
  • tech-c: SZ2-AP
  • nic-hdl: CER-AP
  • mnt-by: MAINT-CERNET-AP
  • last-modified: 2020-09-03T09:14:12Z

Links to attack logs

anonymous-proxy-ip-list-2023-10-25