HideMyAss.com

Thursday, 4 September 2014

[Fail2Ban] SSH: banned 211.144.65.56

Hi,

The IP 211.144.65.56 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 211.144.65.56:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '211.144.64.0 - 211.144.95.255'

inetnum: 211.144.64.0 - 211.144.95.255
netname: COLNET
descr: Oriental Cable Network Co., Ltd.
descr: No. 2860, Jinke Road, Zhangjiang Hi-tech Area
descr: Shanghai, P.R.China
country: CN
admin-c: ML1887-AP
tech-c: YY135-AP
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-routes: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
status: ALLOCATED PORTABLE
changed: ipas@cnnic.cn 20130514
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
remarks: Please note that CNNIC is not an ISP and is not
remarks: empowered to investigate complaints of network abuse.
remarks: Please contact the tech-c or admin-c of the network.
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: Cheng Zhou
address: NO 2860,jinke RD, pudong new area
address: Shanghai, P.R.China, 201203
country: CN
phone: +86-021-51196000-61328
fax-no: +86-021-51196000-61339
e-mail: zhoucheng@scn.com.cn
nic-hdl: ML1887-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20130514
source: APNIC

person: Yuening Yin
nic-hdl: YY135-AP
e-mail: antispam_y@scn.com.cn
address: NO 2860,jinke RD, pudong new area
address: Shanghai, P.R.China, 201203
phone: +86-021-51196000-61323
fax-no: +86-021-51196000-61339
country: CN
changed: ipas@cnnic.net.cn 20060725
mnt-by: MAINT-CNNIC-AP
source: APNIC

% Information related to '211.144.64.0/19AS4837'

route: 211.144.64.0/19
descr: CNC Group CHINA169 Hubei Province network
descr: Addresses from CNNIC(COLNET)
country: CN
origin: AS4837
mnt-by: MAINT-CNCGROUP-RR
changed: abuse@cnc-noc.net 20081128
source: APNIC

% Information related to '0.0.0.0 - 255.255.255.255'

inetnum: 0.0.0.0 - 255.255.255.255
netname: IANA-BLK
descr: The whole IPv4 address space
country: EU # Country is really world wide
org: ORG-IANA1-AFRINIC
admin-c: IANA1-AFRINIC
tech-c: IANA1-AFRINIC
status: ALLOCATED UNSPECIFIED
remarks: The country is really worldwide.
remarks: This address space is assigned at various other places in
remarks: the world and might therefore not be in the RIPE database.
mnt-by: AFRINIC-HM-MNT
mnt-lower: AFRINIC-HM-MNT
changed: ***@ripe.net 20010529
changed: ***@ripe.net 20020625
changed: ***@ripe.net 20031014
changed: ***@ripe.net 20040422
changed: ***@ripe.net 20040504
changed: ***@afrinic.net 20050205
remarks: data has been transferred from RIPE Whois Database 20050221
source: AFRINIC

organisation: ORG-IANA1-AFRINIC
org-name: Internet Assigned Numbers Authority
org-type: IANA
country: EU # Country is really worldwide
address: see http://www.iana.org
remarks: The IANA allocates IP addresses and AS number blocks to RIRs
remarks: see http://www.iana.org/ipaddress/ip-addresses.htm
remarks: and http://www.iana.org/assignments/as-numbers
e-mail
: ***@ripe.net
admin-c: IANA1-AFRINIC
tech-c: IANA1-AFRINIC
mnt-ref: AFRINIC-HM-MNT
mnt-by: AFRINIC-HM-MNT
changed: ***@ripe.net 20040417
changed: ***@afrinic.net 20050205
remarks: data has been transferred from RIPE Whois Database 20050221
source: AFRINIC

role: Internet Assigned Numbers Authority
address: see http://www.iana.org.
e-mail: ***@ripe.net
admin-c: IANA1-AFRINIC
tech-c: IANA1-AFRINIC
nic-hdl: IANA1-AFRINIC
remarks: For more information on IANA services
remarks: go to IANA web site at http://www.iana.org.
mnt-by: AFRINIC-DB-MNT
changed: ***@afrinic.net 20050101
changed: ***@afrinic.net 20050205
remarks: data has been transferred from RIPE Whois Database 20050221
source: AFRINIC

% This query was served by the APNIC Whois Service version 1.69.1-APNICv1r0 (WHOIS2)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 106.240.247.220

Hi,

The IP 106.240.247.220 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 106.240.247.220:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[Redirected to whois.nic.or.kr]
[Querying whois.nic.or.kr]
[whois.nic.or.kr]
query : 106.240.247.220


# KOREAN(UTF8)

조회하ì&lsqauo;  IPv4주소ëŠ" 한국인터넷진흥원으로부터 아래의 관리대행자에게 í• ë&lsqauo;¹ë˜ì—ˆìœ¼ë©°, í• ë&lsqauo;¹ ì •ë³´ëŠ" ë&lsqauo;¤ìŒê³¼ 같습ë&lsqauo;ˆë&lsqauo;¤.

[ 네트워크 í• ë&lsqauo;¹ ì •ë³´ ]
IPv4주소 : 106.240.0.0 - 106.255.255.255 (/12)
서비스명 : BORANET
기관명 : 주ì&lsqauo;íšŒì‚¬ 엘지유í"ŒëŸ¬ìŠ¤
기관고유번호 : ORG572
주소 : 서울특별ì&lsqauo;œ ì¤'구 소ì›"ë¡œ2길 30 (남대문로5ê°€)
우편번호 : 100-095
í• ë&lsqauo;¹ì¼ìž : 20110329

[ IPv4주소 책임자 정보 ]
이름 : IP주소관리자
ì „í™"번호 : +82-2-6928-3087
전자우편 : ipadm@lguplus.co.kr

[ IPv4주소 ë&lsqauo;´ë&lsqauo;¹ìž ì •ë³´ ]
이름 : IP주소관리자
ì „í™"번호 : +82-2-6928-3087
전자우편 : ipadm@lguplus.co.kr

[ 스팸 해킹 ë&lsqauo;´ë&lsqauo;¹ìž ì •ë³´ ]
이름 : Network Abuse ë&lsqauo;´ë&lsqauo;¹ìž
ì „í™"번호 : +82-2-2089-0101
전자우편 : security@bora.net

--------------------------------------------------------------------------------

조회하ì&lsqauo;  IPv4주소에 대한 위 관리대행자의 사용자 í• ë&lsqauo;¹ì •ë³´ê°€ 존재하지 않습ë&lsqauo;ˆë&lsqauo;¤.


# ENGLISH

KRNIC is not an ISP but a National Internet Registry similar to APNIC.

[ Network Information ]
IPv4 Address : 106.240.0.0 - 106.255.255.255 (/12)
Service Name : BORANET
Organization Name : LG DACOM Corporation
Organization ID : ORG572
Address : 827, Seoul Jung-gu Sowol-ro 2-gil
Zip Code : 100-095
Registration Date : 20110329

[ Admin Contact Information ]
Name : IP Administrator
Phone : +82-2-6928-3087
E-Mail : ipadm@lguplus.co.kr

[ Tech Contact Information ]
Name : IP ADMIN
Phone : +82-2-6928-3087
E-Mail : ipadm@lguplus.co.kr

[ Network Abuse Contact Information ]
Name : Network Abuse
Phone : +82-2-2089-0101
E-Mail : security@bora.net


- KISA/KRNIC Whois Service -

Regards,

Fail2Ban