61.218.134.112 Threat Intelligence and Host Information

Share on:

General

This page was generated as a result of this host being detected actively attacking or scanning another host. See below for information related to the host network, location, number of days noticed, protocols attacked and other information including reverse DNS and whois.

Possibly Malicious Host 🟢 17/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country:
  • Network:
  • Noticed: 28 times
  • Protcols Attacked: mssql
  • Passive DNS Results: 168house.com.tw lerich.shop tenlead.net 168topceo.shop nbm.tw 168shopmall.com xn–168-6y1go17cxqap94cd0o28v.com xn–9cs167disg38u.com tv.168line.com xn–15qz7h53av2jpme39pul7bbpptic.com xn–15q40loup0xytwj9qbs2v.com xn–yfr679b9gec0e7pf8oa12fd54aijwwufosg.com xn–cvq61mewa586cnwmq2oep2ansjhpf.com xn–15qw0ryoebxzwidwxs.com xn–9iqy04alm2a2bz.shop xn–9iqy04alm2a2bz.com xn–168–2f5fs7kx0k37ujd863a179cxqfst5afyc2xs.com 168office.shop xn–168-lq6e63gm4z1f4a.com 0939276276.etmall.shop xn–nyq8xs6h4rbg5ia008dnoao3g4y0abyhrs0aa524xmsx6x7ao2d.com xn–fiqx7c9x6btubkb.com xn–czru2d71eq54ajvl.com 168twcn.shop hibal.shop xn–168-u10e991awplumap3fh89a6m3agggqjw5v9d.com 168happy.org xn–fiqs6enfv6ee9b1waf59ao6tbnnkt7b28i2kt69g4sam20g.com 168eat.shop 168520.shop twcn.shop twbest.shop xn–4gqy0b598a0z5b2rat9l7of.com xn–168-jl9do9ung918am3jtr7abq7acqf.com 168elife.net xn–ndsr8xe8plhv.com 368.168app.com.tw 168free-ad.com ad180.168wechat.com www.168care.net 0982150222.169.com.tw xn–pruvitnow-8z0oujx57ber5amt9dchubux8a4tv8rb2z3e.com xn–v-nj2by0isqdp3odklv59c.com 168care.net miracllife.org lohas.health99.net www.168line.com 2019.bestceo.org 25178.tw 168line.com xn–rlst9o2t7bb5e.org xn–3pr50kq6mk6ezn9d.com gego-tv.com 168group.org 167.com.tw a1638.org xn–3xt150arih1ubh0np9ky8d7zvgpf.com xn–nyqs3ei7gj1co7ecv2a8tmqkuov6c.com xn–0hvv3nvwf4wakwx84e90dhwuxhs.com ad-news.net www.anycan.org etmall.org

Malware Detected on Host

Count: 2

Map

Whois Information

  • inetnum: 61.216.0.0 - 61.219.255.255
  • netname: HINET-NET
  • descr: Data Communication Business Group,
  • descr: Chunghwa Telecom Co.,Ltd.
  • descr: No.21, Sec.1, Xinyi Rd., Taipei City
  • descr: 10048, Taiwan
  • country: TW
  • admin-c: HN27-AP
  • tech-c: HN27-AP
  • abuse-c: AT939-AP
  • status: ALLOCATED PORTABLE
  • mnt-by: MAINT-TW-TWNIC
  • mnt-irt: IRT-TWNIC-AP
  • last-modified: 2021-11-04T00:48:53Z
  • irt: IRT-TWNIC-AP
  • address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan
  • e-mail: [email protected]
  • abuse-mailbox: [email protected]
  • admin-c: TWA2-AP
  • tech-c: TWA2-AP
  • mnt-by: MAINT-TW-TWNIC
  • last-modified: 2021-11-04T00:59:51Z
  • role: ABUSE TWNICAP
  • address: 3F., No. 123, Sec. 4, Bade Rd., Songshan Dist., Taipei 105, Taiwan
  • country: ZZ
  • phone: +000000000
  • e-mail: [email protected]
  • admin-c: TWA2-AP
  • tech-c: TWA2-AP
  • nic-hdl: AT939-AP
  • abuse-mailbox: [email protected]
  • mnt-by: APNIC-ABUSE
  • last-modified: 2021-11-04T01:00:32Z
  • person: HINET Network-Adm
  • address: CHTD, Chunghwa Telecom Co., Ltd.
  • address: No. 21, Sec. 21, Hsin-Yi Rd.,
  • address: Taipei Taiwan 100
  • country: TW
  • phone: +886 2 2322 3495
  • phone: +886 2 2322 3442
  • phone: +886 2 2344 3007
  • fax-no: +886 2 2344 2513
  • fax-no: +886 2 2395 5671
  • e-mail: [email protected]
  • nic-hdl: HN27-AP
  • mnt-by: MAINT-TW-TWNIC
  • last-modified: 2011-08-22T06:04:01Z
  • inetnum: 61.218.134.0 - 61.218.134.255
  • netname: HINET-NET
  • descr: Chunghwa Telecom Co.,Ltd.
  • descr: No.21-3, Sec. 1, Xinyi Rd., Taipei 10048, Taiwan, R.O.C.
  • descr: Taipei Taiwan
  • country: TW
  • admin-c: HN184-TW
  • tech-c: HN184-TW
  • mnt-by: MAINT-TW-TWNIC
  • changed: [email protected] 20010117
  • status: ASSIGNED NON-PORTABLE
  • person: HINET Network-Adm
  • address: CHTD, Chunghwa Telecom Co., Ltd.
  • address: Data-Bldg. 6F, No. 21, Sec. 1, Hsin-Yi Rd.,
  • address: Taipei Taiwan
  • country: TW
  • phone: +886-2-2322-3495
  • fax-no: +886-2-2344-2513
  • e-mail: [email protected]
  • nic-hdl: HN184-TW
  • changed: [email protected] 20130307

Links to attack logs

nmap-scanning-list-2020-10-18 nmap-scanning-hosts-2020-09-28 dosing-mssql-bruteforce-ip-list-2021-02-23 nmap-scanning-list-2020-11-12