IPMediumSignal 23/100
47.93.36.57
Location
Beijing, BJ
ASN
AS37963
Aliyun Computing Co., LTD
First Seen
Jul 18, 2022
Last Seen
Apr 11, 2026
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
23%
Signal Score
23 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
China
RegionBeijing, BJ
ASNAS37963
OrganizationAliyun Computing Co., LTD
Feed Intelligence Summary
12 reports23% confidence
12
Source reports
23%
Confidence score
Category tags
abuseactive scanactive scanningaerospace & defenseapacheapache attackerasiaattackaustraliaauto-generated securityautomotive manufacturingbad reputationbotnetbotnet activitybrute forcebrute force attackchinacivil servicescncommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingcyber securitydata exfiltrationdata store exposureddosdefensedefense contractingdefense logisticsdefense systemsdefense technologydenial of servicedistributed attackselectronics manufacturingexploitation activitygovernment technologyidentity & access exploitationindicatorindustrial automationindustrial iotindustrial productioninjection activityiociot securitymalicious activitymalicious softwaremalwaremanufacturing technologymilitary operationsnational securitynetworknetwork attacksnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynextrayoceaniapassword attacksphishingphishing attackprocess injectionprocess manufacturingpublic administrationpublic infrastructurepublic policyquality controlreconnaissanceregulatory agenciesresearchedscansecurity operationssocial engineeringssh attacksupply chain attacksupply chain managementt1016t1040t1046t1055t1071.001t1083t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1589t1595t1595.001t1595.002t1595.003tcp scanningtelecommunicationsthreat actorthreat intelligencetor nodeunauthorized accessvoip
Activity Timeline
Apr 11Apr 11
Threat Activity Heatmap
· Peak: 2026-04-11LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
23
SIGNAL
Signal Score
23%
Confidence
12
Reports
First seenJul 18, 2022
Last seenApr 11, 2026
GeolocationCN
CountryChina
LocationBeijing, BJ
ASNAS37963
OrgAliyun Computing Co., LTD
Coords39.9285, 116.3850
VirusTotal
Not checked
WHOIS
- description
- IPV4 hosts detected performing scans on production environment located in Australia.
- raw
- inetnum: 47.92.0.0 - 47.95.255.255 netname: ALISOFT descr: Aliyun Computing Co., LTD descr: 5F, Builing D, the West Lake International Plaza of S&T descr: No.391 Wen'er Road, Hangzhou, Zhejiang, China, 310099 country: CN admin-c: ZM1015-AP tech-c: ZM877-AP tech-c: ZM876-AP tech-c: ZM875-AP abuse-c: AC1601-AP status: ALLOCATED PORTABLE mnt-by: MAINT-CNNIC-AP mnt-irt: IRT-ALISOFT-CN last-modified: 2023-11-28T00:58:17Z source: APNIC irt: IRT-ALISOFT-CN address: No.391 Wen'er Road, Hangzhou, Zhejiang, China, 310099 e-mail: [email protected] abuse-mailbox: [email protected] auth: # Filtered admin-c: ZM877-AP tech-c: ZM877-AP mnt-by: MAINT-CNNIC-AP last-modified: 2021-09-05T23:38:36Z source: APNIC role: ABUSE CNNICCN country: ZZ address: Beijing, China phone: +000000000 e-mail: [email protected] admin-c: IP50-AP tech-c: IP50-AP nic-hdl: AC1601-AP remarks: Generated from irt object IRT-CNNIC-CN abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2024-07-30T11:55:46Z source: APNIC person: Li Jia address: NO.969 West Wen Yi Road, Yu Hang District, Hangzhou country: CN phone: +86-0571-85022088 e-mail: [email protected] nic-hdl: ZM1015-AP mnt-by: MAINT-CNNIC-AP last-modified: 2025-07-01T07:12:42Z source: APNIC person: Guoxin Gao address: 5F, Builing D, the West Lake International Plaza of S&T address: No.391 Wen'er Road, Hangzhou City address: Zhejiang, China, 310099 country: CN phone: +86-0571-85022600 fax-no: +86-0571-85022600 e-mail: [email protected] nic-hdl: ZM875-AP mnt-by: MAINT-CNNIC-AP last-modified: 2014-07-30T01:56:01Z source: APNIC person: security trouble e-mail: [email protected] address: 5th,floor,Building D,the West Lake International Plaza of S&T,391#Wen??r Road address: Hangzhou, Zhejiang, China phone: +86-0571-85022600 country: CN mnt-by: MAINT-CNNIC-AP nic-hdl: ZM876-AP last-modified: 2025-07-01T07:06:11Z source: APNIC person: Guowei Pan address: 5F, Builing D, the West Lake International Plaza of S&T address: No.391 Wen'er Road, Hangzhou City address: Zhejiang, China, 310099 country: CN phone: +86-0571-85022088-30763 fax-no: +86-0571-85022600 e-mail: [email protected] nic-hdl: ZM877-AP mnt-by: MAINT-CNNIC-AP last-modified: 2025-07-01T07:05:46Z source: APNIC route: 47.92.0.0/14 descr: Hangzhou Alibaba Advertising Co.,Ltd. country: CN origin: AS37963 mnt-by: MAINT-CNNIC-AP last-modified: 2019-08-07T23:28:06Z source: APNIC route: 47.92.0.0/14 descr: Alibaba (US) Technology Co., Ltd. country: CN origin: AS45102 mnt-by: MAINT-CNNIC-AP last-modified: 2019-08-07T23:28:04Z source: APNIC
- references
- https://redpiranha.net
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 3 years ago · Last seen 2 months ago
Appeared in 12 threat reports