59.82.58.127 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 59.82.58.127 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Country: China
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: SSH
  • Passive DNS Results: ha.futurehotel.com uai.lydaas.com tao.cn.zb.v4.aserver.alibabacorp.com.gds.alibabadns.com xtianlang.com z-real.com.cn d.design fliggy.net juantuanzhang.com wapa.tmallyp.com taoshushenqi.com tbsqxpev.com wt.taobao.com iyrzcyil.com mmcops.com tlksdojj.com oshxagta.com mxuxkzvj.com mezrqrch.com u.design rmdmhqdg.com diantaoshare.com ntjclevq.com oqoveeqb.com clvolvgu.com hvdjxzlj.com zrbrmtuw.com qaxjpgzp.com cf.aliyun.com.gds.alibabadns.com tmhuaarz.com yrdaskgb.com fusion.design sergouzi.com oihiutbp.com zituydyr.com kovwxyaj.com tgdfutmk.com szplmmfs.com iqplqylz.com skmlscob.com qeguoezg.com mspsdpla.com kiuefmuh.com liglmvpn.com lbtxulvl.com xwrxgkhg.com adttzkhj.com xlnqeywz.com zvnstvyt.com pcphvlht.com odalwhiy.com uczklpna.com ukldhugr.com bljezpnh.com alibabafonts.com sboiwoco.com umlcmeed.com omihpcwc.com hyarzbkv.com anhyzhen.com nmbbrudw.com kovjwili.com dktfwxhk.com klndaqdk.com fkqwgtuz.com lyjrbwva.com dekrwasb.com tcgf-digitalcore.com weexapp.com diantaoshare.cn dualstack-zb-443.alibaba.alibaba-inc.com.gds.alibabadns.com zb-443.alibaba.alibaba-inc.com.gds.alibabadns.com kyxingyuan.com tooseeeart.com wapa.tianmallyp.com zhuangjiaju.zhuangjiaju.top ts.api.chenggua.com tzdf.cc ding.design miaozhen.atm.youku.com orange-class.com unifycarbon.com zhongcarbon.com tmallgenie.com alltan.cn shejijia.com yuanjingss.com yuanjingio.com homearch.com homearch.cn homearch.com.cn api.chenggua.com aookaa.com.cn aookaa.com aookaa.cn aookaa.net koubeiren.com uai-oxs.xixikf.cn mefenlife.com uaioxs.xixikf.cn uai.xixikf.cn jingcainewsk.com dchain.10219.com ays.cn rextech.cn

Malware Detected on Host

Count: 4 d8735f5f0489e5c28311414bf38200eaa3d65e15a570b8e6da0d2d31b6e7a7f2 aa9afaa3bb970911d579f8e1d84170cc9176857840744ae46ff9ed7de0f61e68 2bc4464359ce2a51272b472f6632e4c5cca12bacee0e35cffbea5a890ca87c94 3cfb829d87af2ce33e6fb1398aca0a8bd2f5a5e3a4e27caaa97b149bedd8c6b0

Open Ports Detected

135 18074 2083 21289 3009 443 4444 80 9999

Map

Whois Information

  • inetnum: 59.82.0.0 - 59.82.255.255
  • netname: ALIBABA-CN-NET
  • descr: Hangzhou Alibaba Advertising Co.,Ltd.
  • descr: No.699, Wangshang RD., Hangzhou, China
  • country: CN
  • admin-c: ZM678-AP
  • tech-c: ZM877-AP
  • tech-c: ZM876-AP
  • abuse-c: AC1601-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-CNNIC-AP
  • mnt-irt: IRT-ALIBABA-CN-NET-CN
  • mnt-lower: MAINT-CNNIC-AP
  • mnt-routes: MAINT-CNNIC-AP
  • last-modified: 2023-11-28T00:58:21Z
  • irt: IRT-ALIBABA-CN-NET-CN
  • address: No.699, Wangshang RD., Hangzhou, China
  • e-mail: didong.jc@alibaba-inc.com
  • abuse-mailbox: didong.jc@alibaba-inc.com
  • admin-c: ZM678-AP
  • tech-c: ZM678-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-09-05T23:38:38Z
  • role: ABUSE CNNICCN
  • country: ZZ
  • address: Beijing, China
  • phone: +000000000
  • e-mail: ipas@cnnic.cn
  • admin-c: IP50-AP
  • tech-c: IP50-AP
  • nic-hdl: AC1601-AP
  • abuse-mailbox: ipas@cnnic.cn
  • mnt-by: APNIC-ABUSE
  • last-modified: 2024-07-30T11:55:46Z
  • person: Shuo Yu
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022600
  • e-mail: anti-spam@list.alibaba-inc.com
  • nic-hdl: ZM678-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2021-04-13T23:21:57Z
  • person: security trouble
  • e-mail: abuse@alibaba-inc.com
  • address: Hangzhou, Zhejiang, China
  • phone: +86-0571-85022600
  • country: CN
  • mnt-by: MAINT-CNNIC-AP
  • nic-hdl: ZM876-AP
  • last-modified: 2025-07-01T07:06:11Z
  • person: Guowei Pan
  • address: 5F, Builing D, the West Lake International Plaza of S&T
  • address: No.391 Wen’er Road, Hangzhou City
  • address: Zhejiang, China, 310099
  • country: CN
  • phone: +86-0571-85022088-30763
  • fax-no: +86-0571-85022600
  • e-mail: abuse@alibaba-inc.com
  • nic-hdl: ZM877-AP
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2025-07-01T07:05:46Z
  • route: 59.82.58.0/24
  • origin: AS37963
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:17:12Z
  • route: 59.82.58.0/24
  • origin: AS45102
  • descr: China Internet Network Information Center
  • mnt-by: MAINT-CNNIC-AP
  • last-modified: 2020-02-18T01:19:05Z

Links to attack logs

****** ****** ******

Share on: