HideMyAss.com

Wednesday 18 September 2013

[Fail2Ban] SSH: banned 218.108.0.91

Hi,

The IP 218.108.0.91 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 218.108.0.91:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '218.108.0.0 - 218.109.255.255'

inetnum: 218.108.0.0 - 218.109.255.255
netname: WASU
descr: WASU TV & Communication Holding Co.,Ltd.
descr: 6/F, Jian Gong Building, NO.20 Wen San Road, Hangzhou,
descr: Zhejiang province, P.R.China 310012
country: CN
admin-c: XZ1291-AP
tech-c: TF142-AP
status: ALLOCATED PORTABLE
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-routes: MAINT-CNNIC-AP
changed: hm-changed@apnic.net 20080123
source: APNIC

person: Tao Feng
nic-hdl: TF142-AP
e-mail: fengtao@chinahcn.com
address: No.9 ShuGuang Road,HangZhou City,ZheJiang Province
phone: +86-0571-28958888-8108
fax-no: +86-0571-85214455
country: CN
changed: ipas@cnnic.cn 20100513
mnt-by: MAINT-CNNIC-AP
source: APNIC

person: Xianlong Zeng
nic-hdl: XZ1291-AP
e-mail: allon@chinahcn.com
address: No.9 ShuGuang Road,HangZhou City,ZheJiang Province
phone: +86-0571-28958852
fax-no: +86-0571-85214455
country: CN
changed: ipas@cnnic.cn 20071123
mnt-by: MAINT-CNNIC-AP
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 218.64.114.103

Hi,

The IP 218.64.114.103 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 218.64.114.103:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '218.64.114.96 - 218.64.114.127'

inetnum: 218.64.114.96 - 218.64.114.127
netname: XY-yushui-borough-agriculture-bureau
descr: Jiangxi province,xinyu city,yushui-borough-agriculture-bureau
country: CN
admin-c: XY1-AP
tech-c: WZ377-AP
changed: lixm@public1.nc.jx.cn 20041116
mnt-by: MAINT-IP-WWF
status: ASSIGNED NON-PORTABLE
source: APNIC

person: Wanshu Zhou
address: Data Communication Bureau MPT
address: 40 Xueyuan Rd.
address: Beijing China 100083
country: CN
phone: +86-10-205-3992
fax-no: +86-10-205-3994
e-mail: zhouws@public.bta.net.cn
nic-hdl: WZ377-AP
notify: zhouws@public.bta.net.cn
notify: zhang@usai.asiainfo.com
mnt-by: MAINT-NULL
changed: zhang@usai.asiainfo.com 19960115
changed: hm-changed@apnic.net 20040927
source: APNIC
changed: hm-changed@apnic.net 20111122

person: Xu Yongzhong
address: Data Communication Bireau
address: Ministry of Posts and Telecommunications
address: A12 Xin-jie-kou-wai Street
address: Beijing 100088
country: CN
phone: +86-10-62053991
fax-no: +86-10-62053995
e-mail: yzxu@publicf.bta.net.cn
nic-hdl: XY1-AP
mnt-by: MAINT-NULL
changed: hostmaster@apnic.net 19960319
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 122.224.130.147

Hi,

The IP 122.224.130.147 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 122.224.130.147:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '122.224.130.144 - 122.224.130.151'

inetnum: 122.224.130.144 - 122.224.130.151
netname: BOYI-NETWORK-LIMITED
country: CN
descr: ZHEJIANG BOYI Network Limited
descr:
admin-c: BY306-AP
tech-c: CH122-AP
status: ASSIGNED NON-PORTABLE
changed: auto-dbm@dcb.hz.zj.cn 20070807
mnt-by: MAINT-CN-CHINANET-ZJ-HZ
source: APNIC

role: CHINANET-ZJ Hangzhou
address: No.352 Tiyuchang Road,Hangzhou,Zhejiang.310003
country: CN
phone: +86-571-85157929
fax-no: +86-571-85102776
e-mail: anti_spam@mail.hz.zj.cn
remarks: send spam reports to anti_spam@mail.hz.zj.cn
remarks: and abuse reports to anti_spam@mail.hz.zj.cn
remarks: Please include detailed information and times in UTC
admin-c: CH54-AP
tech-c: CH54-AP
nic-hdl: CH122-AP
mnt-by: MAINT-CHINANET-ZJ
changed: master@dcb.hz.zj.cn 20031204
source: APNIC
changed: hm-changed@apnic.net 20111114

person: biao yang
nic-hdl: BY306-AP
e-mail: DKHXTB@MAIL.ZJ.HZ.CN
address: Hangzhou,Zhejiang.Postcode:310000
phone: +86-571-87831312
country: CN
changed: auto-dbm@dcb.hz.zj.cn 20070725
mnt-by: MAINT-CN-CHINANET-ZJ-HZ
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 204.10.37.78

Hi,

The IP 204.10.37.78 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 204.10.37.78:

[Querying whois.arin.net]
[Redirected to rwhois.ndchost.com:4321]
[Querying rwhois.ndchost.com]
[rwhois.ndchost.com]
%rwhois V-1.5:003eff:00 rwhois.ndchost.com (by Network Solutions, Inc. V-1.5.9.5)
network:Class-Name:network
network:ID:NETBLK-NDCHOST.204.10.36.0/22
network:Auth-Area:204.10.36.0/22
network:Network-Name:NDCHOST-204.10.37.64
network:IP-Network:204.10.37.64/26
network:IP-Network-Block:204.10.37.64
- 204.10.37.127
network:Organization;I:Customer Subnet (private information)
network:Tech-Contact;I:hostmaster@NDCHost.com
network:Admin-Contact;I:ADMIN446-ARIN
network:Created:20130805
network:Updated:20130805
network:Updated-By:hostmaster@ndchost.com

network:Class-Name:network
network:ID:NETBLK-NDCHOST.204.10.36.0/22
network:Auth-Area:204.10.36.0/22
network:Network-Name:NDCHOST-204.10.36.0
network:IP-Network:204.10.36.0/22
network:IP-Network-Block:204.10.36.0
- 204.10.39.255
network:Organization;I:NDCHost (Network Data Center Host, Inc)
network:Tech-Contact;I:hostmaster@ndchost.com
network:Admin-Contact;I:ADMIN446-ARIN
network:Created:20130805
network:Updated:20130805
network:Updated-By:hostmaster@ndchost.com

%referral rwhois://root.rwhois.net:4321/auth-area=.
%ok

Regards,

Fail2Ban

Tuesday 17 September 2013

[Fail2Ban] SSH: banned 213.244.81.220

Hi,

The IP 213.244.81.220 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 213.244.81.220:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '213.244.64.0 - 213.244.127.255'

inetnum: 213.244.64.0 - 213.244.127.255
descr: Palestine Telecommunications Company (PALTEL)
org: ORG-PTC2-RIPE
netname: PS-PALTEL-20010418
country: PS
admin-c: RA2887-RIPE
tech-c: RA2887-RIPE
status: ALLOCATED PA
mnt-by: RIPE-NCC-HM-MNT
mnt-lower: PALTEL-MNTNER
mnt-routes: PALTEL-MNTNER
remarks: Abuse complaints to be sent to abuse@paltel.net
source: RIPE # Filtered

organisation: ORG-PTC2-RIPE
org-name: Palestine Telecommunications Company (PALTEL)
org-type: LIR
address: Palestine Telecommunications (PALTEL) Khaled Sayeh Rafeedya St. 1570 Nablus PALESTINIAN TERRITORY, OCCUPIED
phone: +970 9 2376 225
fax-no: +970 9 2376 227
mnt-ref: PALTEL-MNTNER
mnt-ref: RIPE-NCC-HM-MNT
mnt-by: RIPE-NCC-HM-MNT
admin-c: WH185-RIPE
admin-c: RZ2064-RIPE
admin-c: RA2887-RIPE
admin-c: KA1290-RIPE
source: RIPE # Filtered

person: Ripe Admin-PALTEL
address: PALTEL HDQ
address: Rafeedya St.
address: P.O.Box 1570, Nablus,
address: Palestine.
phone: + 970 9 2376225
fax-no: + 970 9 2376227
nic-hdl: RA2887-RIPE
mnt-by: PALTEL-MNTNER
source: RIPE # Filtered

% Information related to '213.244.80.0/22AS12975'

route: 213.244.80.0/22
descr: PALTEL (Palestine Telecommunications Co.).
origin: AS12975
mnt-by: PALTEL-MNTNER
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.68.1 (WHOIS4)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 108.174.151.58

Hi,

The IP 108.174.151.58 has just been banned by Fail2Ban after
6 attempts against SSH.


Here are more information about 108.174.151.58:

[Querying whois.arin.net]
[whois.arin.net]

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#


#
# Query terms are ambiguous. The query is assumed to be:
# "n 108.174.151.58"
#
# Use "?" to get help.
#

#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=108.174.151.58?showDetails=true&showARIN=false&ext=netref2
#

NetRange: 108.174.144.0 - 108.174.159.255
CIDR: 108.174.144.0/20
OriginAS: AS35361
NetName: WWWHL-NET-01
NetHandle: NET-108-174-144-0-1
Parent: NET-108-0-0-0-0
NetType: Direct Allocation
RegDate: 2012-01-24
Updated: 2012-01-24
Ref: http://whois.arin.net/rest/net/NET-108-174-144-0-1

OrgName: World Wide Web Hosting, LLC
OrgId: WWWHL
Address: 303 S. Broadway Ste 200-341
City: Denver
StateProv: CO
PostalCode: 80209
Country: US
RegDate: 2011-08-02
Updated: 2012-01-26
Ref: http://whois.arin.net/rest/org/WWWHL

OrgNOCHandle: NOC12131-ARIN
OrgNOCName: Network Operations Center
OrgNOCPhone: +1-925-478-3115
OrgNOCEmail: support@worldwidewebhosting.com
OrgNOCRef: http://whois.arin.net/rest/poc/NOC12131-ARIN

OrgAbuseHandle: ABUSE3295-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-925-478-3115
OrgAbuseEmail: abuse@worldwidewebhosting.com
OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE3295-ARIN

OrgTechHandle: NOC12131-ARIN
OrgTechName: Network Operations Center
OrgTechPhone: +1-925-478-3115
OrgTechEmail: support@worldwidewebhosting.com
OrgTechRef: http://whois.arin.net/rest/poc/NOC12131-ARIN


#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 216.99.159.114

Hi,

The IP 216.99.159.114 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 216.99.159.114:

[Querying whois.arin.net]
[Redirected to rwhois.psychz.net:4321]
[Querying rwhois.psychz.net]
[rwhois.psychz.net]
%rwhois V-1.0,V-1.5:00090h:00 portal.psychz.net (Ubersmith RWhois Server V-2.3.0)
autharea=216.99.144.0/20
xautharea=216.99.144.0/20
network:Class-Name:network
network:Auth-Area:216.99.144.0/20
network:ID:NET-14094.216.99.159.112/29
network:Network-Name:216.99.159.112/29
network:IP-Network:216.99.159.112/29
network:IP-Network-Block:216.99.159.112
- 216.99.159.119
network:Org-Name:GCHAO LLC
network:Street-Address:1102 W 4th St
network:City:Florenco
network:State:CO
network:Postal-Code:81226
network:Country-Code:US
network:Tech-Contact:MAINT-14094.216.99.159.112/29
network:Created:20130422074039000
network:Updated:20130422074039000
network:Updated-By:abuse@psychz.net
contact:POC-Name:Network Administrator
contact:POC-Email:abuse@psychz.net
contact:POC-Phone:
contact:Tech-Name:Network Administrator
contact:Tech-Email:abuse@psychz.net
contact:Tech-Phone:
%ok

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 221.130.14.88

Hi,

The IP 221.130.14.88 has just been banned by Fail2Ban after
6 attempts against SSH.


Here are more information about 221.130.14.88:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '221.130.0.0 - 221.130.31.255'

inetnum: 221.130.0.0 - 221.130.31.255
netname: CMNET-jiangsu
descr: China Mobile Communications Corporation - jiangsu
country: CN
admin-c: TC105-AP
tech-c: TC105-AP
mnt-by: MAINT-CN-CMCC
mnt-lower: MAINT-CN-CMCC-jiangsu
remarks: ------------------------------
remarks: Please send abuse e-mail to
remarks: chentao@js.chinamobile.com
remarks: Please send probe e-mail to
remarks: chentao@js.chinamobile.com
remarks: -------------------------------
changed: weichenguang@chinamobile.com 20050309
status: ALLOCATED NON-PORTABLE
source: APNIC

person: tao chen
nic-hdl: TC105-AP
e-mail: socadmin@js.chinamobile.com
address: 81st. HuJu Road, Nanjing, P.R.China
phone: +86-13800250222
fax-no: +86-025-86668202
country: cn
changed: chentao@js.chinamobile.com 20071126
mnt-by: MAINT-CN-CMCC-JIANGSU
source: APNIC

% Information related to '221.130.0.0/15AS9808'

route: 221.130.0.0/15
descr: China Mobile communications corporation
origin: AS9808
mnt-by: MAINT-CN-CMCC
changed: hostmaster@chinamobile.com 20120215
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 114.130.138.3

Hi,

The IP 114.130.138.3 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 114.130.138.3:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '114.130.138.0 - 114.130.138.63'

inetnum: 114.130.138.0 - 114.130.138.63
netname: BORNIL-CTG-BD
descr: Bornil Network System Ltd,ISP of Bangaldesh
country: BD
admin-c: SF501-AP
tech-c: DS853-AP
status: ALLOCATED NON-PORTABLE
remarks: ** Contact tech-c first for SPAM & HACKING report **
** If tech-c does not respond, contact admin-c **
mnt-by: MAINT-MANGONET-BD
mnt-lower: MAINT-MANGONET-BD
mnt-routes: MAINT-MANGONET-BD
mnt-irt: IRT-MANGOTELESERVICE-BD
changed: shahana.ferdous@mango.com.bd 20120319
source: APNIC

irt: IRT-MANGOTELESERVICE-BD
address: 82, Mohakhali Tower,Level-12, Dhaka-1212,Bangladesh
e-mail: abuse@mango.com.bd
abuse-mailbox: abuse@mango.com.bd
admin-c: MA285-AP
tech-c: MA285-AP
mnt-by: MAINT-BD-MANGO
changed: abuse@mango.com.bd 20101127
source: APNIC

person: Debashish Sarkar
address: Bornil Network System Ltd.
6/6, Mowla Chamber (5th floor), Agrabad C/A, Chittagong, Bangladesh
country: BD
phone: +8801970900009
e-mail: debashish@bnslbd.net
nic-hdl: DS853-AP
mnt-by: MAINT-MANGONET-BD
changed: shahana.ferdous@mango.com.bd 20120319
source: APNIC

person: Shahana Ferdous
e-mail: shahana.ferdous@mango.com.bd
address: Mohakhali Tower (12th floor)
address: 82 Mohakhali C/A
address: Dhaka - 1212
address: Bangladesh
nic-hdl: SF501-AP
phone: +88-02-8814507
country: BD
mnt-by: MAINT-MANGONET-BD
changed: hm-changed@apnic.net 20100209
source: APNIC

% Information related to '114.130.128.0/18AS17806'

route: 114.130.128.0/18
descr: Route object of MANGO (Ctg) Network
origin: AS17806
country: BD
remarks: Route object of MANGO(Ctg)Network
mnt-lower: MAINT-MANGOTELESERVICE-BD
mnt-routes: MAINT-MANGOTELESERVICE-BD
mnt-by: MAINT-MANGOTELESERVICE-BD
changed: bushra.tasnim@mango.com.bd 20130115
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS3)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 42.121.122.11

Hi,

The IP 42.121.122.11 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 42.121.122.11:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '42.120.0.0 - 42.121.255.255'

inetnum: 42.120.0.0 - 42.121.255.255
netname: ALISOFT
descr: Aliyun Computing Co., LTD
descr: 5F, Builing D, the West Lake International Plaza of S&T
descr: No.391 Wen'er Road, Hangzhou, Zhejiang, China, 310099
country: CN
admin-c: ZM678-AP
tech-c: ZM877-AP
tech-c: ZM876-AP
tech-c: ZM875-AP
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-routes: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
status: ALLOCATED PORTABLE
changed: hm-changed@apnic.net 20110221
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: Shuo Yu
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022600
fax-no: +86-0571-85022600
e-mail: shuo.yus@alibaba-inc.com
e-mail: shuo.yus@aliyun-inc.com
nic-hdl: ZM678-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20110614
source: APNIC

person: Guoxin Gao
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022600
fax-no: +86-0571-85022600
e-mail: guoxin.gao@aliyun-inc.com
nic-hdl: ZM875-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20130705
source: APNIC

person: security trouble
e-mail: cloud-cc-sqcloud@list.alibaba-inc.com
address: 5th,floor,Building D,the West Lake International Plaza of S&T,391#Wen’er Road
address: Hangzhou, Zhejiang, China
phone: +86-0571-85022600
country: CN
mnt-by: MAINT-CNNIC-AP
nic-hdl: ZM876-AP
changed: ipas@cnnic.cn 20130708
source: APNIC

person: Guowei Pan
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022088-30763
fax-no: +86-0571-85022600
e-mail: guowei.pangw@alibaba-inc.com
nic-hdl: ZM877-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20130709
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 62.109.2.160

Hi,

The IP 62.109.2.160 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 62.109.2.160:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '62.109.0.0 - 62.109.7.255'

% Abuse contact for '62.109.0.0 - 62.109.7.255' is 'abuse@ispsystem.com'

inetnum: 62.109.0.0 - 62.109.7.255
netname: THEFIRST-NET
descr: TheFirst-RU clients (WebDC Msk)
org: ORG-FVDS1-RIPE
country: RU
admin-c: AB11726-RIPE
tech-c: ST6386-RIPE
status: ASSIGNED PA
mnt-by: ISPSYSTEM-MNT
mnt-irt: IRT-THEFIRST
source: RIPE # Filtered

organisation: ORG-FVDS1-RIPE
org-name: CJSC THE FIRST
org-type: OTHER
address: CJSC The First, Raduzhny 34a
address: PoBox64, Irkutsk, 664017
address: Russian Federation
abuse-mailbox: abuse@firstvds.ru
mnt-ref: THEFIRST-MNT
mnt-by: ISPSYSTEM-MNT
source: RIPE # Filtered

person: Alexandr Brukhanov
address: Raduzhny st. 34a
address: Irkutsk, 664017, Russian Federation
phone: +7 3952 525789
nic-hdl: AB11726-RIPE
mnt-by: ISPSYSTEM-MNT
source: RIPE # Filtered

person: Stas Titov
address: Raduzhny st. 34a
address: Irkutsk, 664017, Russian Federation
phone: +7 3952 525789
nic-hdl: ST6386-RIPE
mnt-by: ISPSYSTEM-MNT
source: RIPE # Filtered

% Information related to '62.109.0.0/21AS29182'

route: 62.109.0.0/21
descr: TheFirst-RU
origin: AS29182
mnt-by: THEFIRST-MNT
remarks: **************************************
remarks: * For spamming or other abuse issues *
remarks: * please send your requests to *
remarks: * abuse@firstvds.ru *
remarks: **************************************
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.68.1 (WHOIS3)

Regards,

Fail2Ban

Monday 16 September 2013

[Fail2Ban] SSH: banned 211.154.151.150

Hi,

The IP 211.154.151.150 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 211.154.151.150:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '211.154.128.0 - 211.154.159.255'

inetnum: 211.154.128.0 - 211.154.159.255
netname: ChinaMotion
country: CN
descr: China Motion Network Communication
descr: 9F,Yu Hua Industrial & Trading Building,Bao Gang Rd.
descr: Luo Hu District,Shenzhen, Guangdong Province
admin-c: BY158-AP
tech-c: BY158-AP
status: ALLOCATED PORTABLE
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
mnt-routes: MAINT-CNCGROUP-RR
changed: hm-changed@apnic.net 20060523
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: Binghua Yang
nic-hdl: BY158-AP
e-mail: cmidc@china-motion.com
address: 9F,Yu Hua Industrial & Trading Building,Bao Gang Rd.Luo
address: Hu District,Shenzhen
phone: +86-0755-82189782
fax-no: +86-755-82189789
country: CN
changed: shenzhi@cnnic.cn 20041126
changed: ipas@cnnic.net.cn 20070514
mnt-by: MAINT-CN-CMNET
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS3)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 219.239.26.4

Hi,

The IP 219.239.26.4 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 219.239.26.4:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '219.239.26.0 - 219.239.26.127'

inetnum: 219.239.26.0 - 219.239.26.127
netname: CHANG-XIN-JIA-XIN-XI-JI-SHU
country: CN
descr: Beijing CHANG XIN JIA XIN XI JI XHU CO.LTD
descr: CO.LTD
descr: Haidian Distric, Beijing
admin-c: PP40-AP
tech-c: PP40-AP
status: ASSIGNED NON-PORTABLE
changed: ipadmin@bj.datadragon.net 20040714
mnt-by: MAINT-CN-DXTNET
source: APNIC

person: Pang Patrick
nic-hdl: PP40-AP
e-mail: bill.pang@bj.datadragon.net
address: Fl./8, South Building, Bridge Mansion, No. 53
phone: +86-10-63181513
fax-no: +86-10-63181597
country: CN
changed: ipas@cnnic.net.cn 20030304
mnt-by: MAINT-CNNIC-AP
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 117.21.127.90

Hi,

The IP 117.21.127.90 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 117.21.127.90:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '117.21.0.0 - 117.21.255.255'

inetnum: 117.21.0.0 - 117.21.255.255
netname: CHINANET-JX
descr: CHINANET Jiangxi province network
descr: China Telecom
descr: No.31,jingrong street
descr: Beijing 100032
country: CN
admin-c: CH93-AP
tech-c: JN113-AP
remarks: service provider
status: ALLOCATED PORTABLE
mnt-by: APNIC-HM
mnt-lower: MAINT-IP-WWF
mnt-routes: MAINT-IP-WWF
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
changed: hm-changed@apnic.net 20070912
source: APNIC

role: JXDCB NET
address: Jiangxi telecom network operation support department
address: No.2009, Beijing East Road , nanchang,jiangxi province
country: CN
phone: +86 79186600000
e-mail: wzzx_2013@189.cn
remarks: send spam reports to wzzx_2013@189.cn
remarks: and abuse reports to wzzx_2013@189.cn
remarks: http://www.online.jx.cn
admin-c: XY1-AP
tech-c: WZ1-CN
tech-c: WW49-AP
nic-hdl: JN113-AP
notify: wzzx_2013@189.cn
mnt-by: MAINT-IP-WWF
changed: hm-changed@apnic.net 20020812
changed: chenyiq@gsta.com 20130221
source: APNIC

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS4)

Regards,

Fail2Ban

Sunday 15 September 2013

[Fail2Ban] SSH: banned 193.104.68.210

Hi,

The IP 193.104.68.210 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 193.104.68.210:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '193.104.68.0 - 193.104.68.255'

inetnum: 193.104.68.0 - 193.104.68.255
netname: KGBHOSTING
descr: KGB Hosting d.o.o.,
remarks: Kikinda, Serbia
country: RS
org: ORG-KHd1-RIPE
admin-c: VZ525-RIPE
tech-c: VZ525-RIPE
status: ASSIGNED PI
mnt-by: RIPE-NCC-END-MNT
mnt-by: ORIONTELEKOM-MNT
mnt-lower: RIPE-NCC-END-MNT
mnt-routes: ORIONTELEKOM-MNT
mnt-domains: ORIONTELEKOM-MNT
source: RIPE # Filtered

organisation: ORG-KHd1-RIPE
org-name: KGB Hosting d.o.o.
org-type: OTHER
address: Milana Sivceva 36, Kikinda, Serbia
abuse-mailbox: abuse@evovps.com
mnt-ref: ORIONTELEKOM-MNT
mnt-by: ORIONTELEKOM-MNT
source: RIPE # Filtered

person: Vladimir Zolnjan
address: Orion Telekom NOC
address: Gandijeva 76a
address: Belgrade, Serbia
phone: +381 11 2228 388
nic-hdl: VZ525-RIPE
mnt-by: ORIONTELEKOM-MNT
source: RIPE # Filtered

% Information related to '193.104.68.0/24AS9125'

route: 193.104.68.0/24
descr: KGBHOSTING pool
origin: AS9125
mnt-by: ORIONTELEKOM-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.68.1 (WHOIS3)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 207.198.118.254

Hi,

The IP 207.198.118.254 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 207.198.118.254:

[Querying whois.arin.net]
[whois.arin.net]

#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#


#
# Query terms are ambiguous. The query is assumed to be:
# "n 207.198.118.254"
#
# Use "?" to get help.
#

#
# The following results may also be obtained via:
# http://whois.arin.net/rest/nets;q=207.198.118.254?showDetails=true&showARIN=false&ext=netref2
#

Web.com, Inc. 207-198-118-0-NET (NET-207-198-118-0-1) 207.198.118.0 - 207.198.118.255
Peer 1 Dedicated Hosting 207-198-64-0-NET (NET-207-198-64-0-1) 207.198.64.0 - 207.198.127.255



#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#

Regards,

Fail2Ban

Saturday 14 September 2013

[Fail2Ban] SSH: banned 119.10.114.52

Hi,

The IP 119.10.114.52 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 119.10.114.52:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '119.10.0.0 - 119.10.127.255'

inetnum: 119.10.0.0 - 119.10.127.255
netname: XinnetIDC
country: CN
descr: XinNet Technology Corp.
descr: Sino-i Campus,No.1 Disheng West Street,Beijing Economic-Technological Development Area,
descr: Beijing,P.R.China
admin-c: ML1867-AP
tech-c: BW719-AP
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
status: ALLOCATED PORTABLE
changed: hm-changed@apnic.net 20110311
changed: ipas@cnnic.cn 20130402
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: Bin Wang
address: Sino-i Campus,No.1 Disheng West Street,Beijing Economic-Technological Development Area,
address: Beijing,P.R.China
country: CN
phone: +86-010-87128161
e-mail: wangbin@xinnet.com
nic-hdl: BW719-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20130402
source: APNIC

person: Bin Wang
address: Sino-i Campus,No.1 Disheng West Street,Beijing Economic-Technological Development Area,
address: Beijing,P.R.China
country: CN
phone: +86-010-87128161
e-mail: wangbin@xinnet.com
nic-hdl: ML1867-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20130402
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 202.165.179.171

Hi,

The IP 202.165.179.171 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 202.165.179.171:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '202.165.176.0 - 202.165.191.255'

inetnum: 202.165.176.0 - 202.165.191.255
netname: CCCNet
descr: China Communication Co., Ltd
descr: Tower F.12# Yumin Road, Chaoyang District, descr: P.R.China
country: CN
admin-c: ML1872-AP
tech-c: BW722-AP
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-routes: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
changed: hm-changed@apnic.net 20130411
status: ALLOCATED PORTABLE
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: He Xiaoyong
address: Tower 7,12# Yumin Rd,Chaoyang Dist,Beijing, P.R.China
country: CN
phone: +86-010-82253099-3317
fax-no: +86-010-82250189
e-mail: yunwei@snzo.cn
nic-hdl: BW722-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20130411
source: APNIC

person: Yan Tao
address: Tower 7,12# Yumin Rd,Chaoyang Dist,Beijing, P.R.China
country: CN
phone: +86-010-82253099-3321
fax-no: +86-010-82250189
e-mail: dbsc@snzo.cn
nic-hdl: ML1872-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20130411
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 195.191.250.186

Hi,

The IP 195.191.250.186 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 195.191.250.186:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '195.191.250.0 - 195.191.251.255'

inetnum: 195.191.250.0 - 195.191.251.255
netname: FORTIS-NET
descr: OOO "Fortis"
country: RU
org: ORG-FORT2-RIPE
admin-c: VC2936-RIPE
tech-c: AH876-RIPE
status: ASSIGNED PI
mnt-by: RIPE-NCC-END-MNT
mnt-by: SEVEREN-MNT
mnt-lower: RIPE-NCC-END-MNT
mnt-routes: SEVEREN-MNT
mnt-routes: FORT2-MNT
mnt-domains: SEVEREN-MNT
mnt-domains: FORT2-MNT
source: RIPE # Filtered

organisation: ORG-FORT2-RIPE
org-name: OOO "Fortis"
org-type: OTHER
address: 3rd Ribatskii, h.3, Lit. E
address: 192177, Russia, Saint-Petersburg
phone: +7 812 326-6999
fax-no: +7 812 326-6995
abuse-mailbox: support@fortiss.ru
admin-c: VC2936-RIPE
tech-c: AH876-RIPE
mnt-ref: SEVEREN-MNT
mnt-by: SEVEREN-MNT
source: RIPE # Filtered

person: Andrey Hotchenkov
address: 3rd Ribatskii, h.3, Lit. E
address: 192177, Russia, Saint-Petersburg
phone: +7 812 326-6999
nic-hdl: AH876-RIPE
mnt-by: SEVEREN-MNT
mnt-by: FORT2-MNT
source: RIPE # Filtered

person: Vladislav Curko
address: 3rd Ribatskii, h.3, Lit. E
address: 192177, Russia, Saint-Petersburg
phone: +7 812 326-6999
nic-hdl: VC2936-RIPE
mnt-by: SEVEREN-MNT
mnt-by: FORT2-MNT
source: RIPE # Filtered

% Information related to '195.191.250.0/24AS50717'

route: 195.191.250.0/24
descr: Fortis Datacenter
origin: AS50717
mnt-by: SEVEREN-MNT
mnt-by: FORT2-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.68.1 (WHOIS4)

Regards,

Fail2Ban

Friday 13 September 2013

[Fail2Ban] SSH: banned 125.64.93.223

Hi,

The IP 125.64.93.223 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 125.64.93.223:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '125.64.93.128 - 125.64.93.255'

inetnum: 125.64.93.128 - 125.64.93.255
netname: SC-CD-SHANGZHONGLIANG-INFO-LTD
descr: SC-CD-SHANGZHONGLIANG-INFO-LTD
descr: Deyang Sichuan
descr: PR China
country: CN
admin-c: CS408-AP
tech-c: CS408-AP
status: ASSIGNED NON-PORTABLE
mnt-by: MAINT-CHINANET-SC
changed: ipadmin@my-public.sc.cninfo.net 20070813
source: APNIC

role: CHINANET SICHUAN
address: No.72,Wen Miao Qian Str Chengdu SiChuan PR China
country: CN
phone: +86-28-86190657
fax-no: +86-25-86190641
e-mail: ipadmin@my-public.sc.cninfo.net
remarks: send anti-spam reports to anti-spam@mail.sc.cninfo.net
remarks: send abuse reports to security@mail.sc.cninfo.net
remarks: times in GMT+8
admin-c: YZ43-AP
tech-c: RL357-AP
tech-c: XS16-AP
nic-hdl: CS408-AP
remarks: noc.cd.sc.cn
notify: ipadmin@my-public.sc.cninfo.net
mnt-by: MAINT-CHINANET-SC
changed: zhangys@mail.sc.cninfo.net 20030318
source: APNIC
changed: hm-changed@apnic.net 20111114

% This query was served by the APNIC Whois Service version 1.68 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 202.102.92.8

Hi,

The IP 202.102.92.8 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 202.102.92.8:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '202.102.0.0 - 202.102.127.255'

inetnum: 202.102.0.0 - 202.102.127.255
netname: CHINANET-JS
descr: CHINANET jiangsu province network
descr: China Telecom
descr: A12,Xin-Jie-Kou-Wai Street
descr: Beijing 100088
country: CN
admin-c: CH93-AP
tech-c: CJ186-AP
mnt-by: APNIC-HM
mnt-lower: MAINT-CHINANET-JS
mnt-routes: maint-chinanet-js
changed: hostmaster@ns.chinanet.cn.net 20020209
changed: hostmaster@ns.chinanet.cn.net 20030306
changed: hm-changed@apnic.net 20040906
status: ALLOCATED PORTABLE
changed: hm-changed@apnic.net 20041210
source: APNIC

role: CHINANET JIANGSU
address: 260 Zhongyang Road,Nanjing 210037
country: CN
phone: +86-25-86588231
phone: +86-25-86588745
fax-no: +86-25-86588104
e-mail: ip@jsinfo.net
remarks: send anti-spam reports to spam@jsinfo.net
remarks: send abuse reports to abuse@jsinfo.net
remarks: times in GMT+8
admin-c: CH360-AP
tech-c: CS306-AP
tech-c: CN142-AP
nic-hdl: CJ186-AP
remarks: www.jsinfo.net
notify: ip@jsinfo.net
mnt-by: MAINT-CHINANET-JS
changed: dns@jsinfo.net 20090831
changed: ip@jsinfo.net 20090831
changed: hm-changed@apnic.net 20090901
source: APNIC
changed: hm-changed@apnic.net 20111114

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS2)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 61.167.199.232

Hi,

The IP 61.167.199.232 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 61.167.199.232:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '61.167.0.0 - 61.167.255.255'

inetnum: 61.167.0.0 - 61.167.255.255
netname: UNICOM-HL
country: CN
descr: China Unicom Heilongjiang province network
descr: China Unicom
admin-c: CH1302-AP
tech-c: LZ31-AP
status: ASSIGNED NON-PORTABLE
mnt-by: MAINT-CNCGROUP
mnt-lower: MAINT-CNCGROUP-HL
mnt-routes: MAINT-CNCGROUP-RR
mnt-irt: IRT-CU-CN
changed: hm-changed@apnic.net 20031110
changed: hm-changed@apnic.net 20040927
changed: hm-changed@apnic.net 20060124
changed: hm-changed@apnic.net 20090508
source: APNIC

irt: IRT-CU-CN
address: No.21,Jin-Rong Street
address: Beijing,100140
address: P.R.China
e-mail: zhouxm@chinaunicom.cn
abuse-mailbox: zhouxm@chinaunicom.cn
admin-c: CH1302-AP
tech-c: CH1302-AP
mnt-by: MAINT-CNCGROUP
changed: zhouxm@chinaunicom.cn 20101110
changed: hm-changed@apnic.net 20101116
source: APNIC

person: ChinaUnicom Hostmaster
nic-hdl: CH1302-AP
e-mail: abuse@cnc-noc.net
address: No.21,Jin-Rong Street
address: Beijing,100033
address: P.R.China
phone: +86-10-66259764
fax-no: +86-10-66259764
country: CN
changed: abuse@cnc-noc.net 20090408
mnt-by: MAINT-CNCGROUP
source: APNIC

person: Liu Zhiyong
nic-hdl: LZ31-AP
e-mail: gaobh@mail.hl.cn
address: Data Communication Bureau of HLJ
phone: +86-451-542931
country: CN
changed: gaobh@mail.hl.cn 20030801
mnt-by: MAINT-CNCGROUP-HL
source: APNIC

% Information related to '61.167.0.0/16AS4837'

route: 61.167.0.0/16
descr: CNC Group CHINA169 Heilongjiang Province Network
country: CN
origin: AS4837
mnt-by: MAINT-CNCGROUP-RR
changed: abuse@cnc-noc.net 20060118
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS3)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 42.121.111.136

Hi,

The IP 42.121.111.136 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 42.121.111.136:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '42.120.0.0 - 42.121.255.255'

inetnum: 42.120.0.0 - 42.121.255.255
netname: ALISOFT
descr: Aliyun Computing Co., LTD
descr: 5F, Builing D, the West Lake International Plaza of S&T
descr: No.391 Wen'er Road, Hangzhou, Zhejiang, China, 310099
country: CN
admin-c: ZM678-AP
tech-c: ZM877-AP
tech-c: ZM876-AP
tech-c: ZM875-AP
mnt-by: MAINT-CNNIC-AP
mnt-lower: MAINT-CNNIC-AP
mnt-routes: MAINT-CNNIC-AP
mnt-irt: IRT-CNNIC-CN
status: ALLOCATED PORTABLE
changed: hm-changed@apnic.net 20110221
source: APNIC

irt: IRT-CNNIC-CN
address: Beijing, China
e-mail: ipas@cnnic.cn
abuse-mailbox: ipas@cnnic.cn
admin-c: IP50-AP
tech-c: IP50-AP
auth: # Filtered
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.cn 20110428
source: APNIC

person: Shuo Yu
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022600
fax-no: +86-0571-85022600
e-mail: shuo.yus@alibaba-inc.com
e-mail: shuo.yus@aliyun-inc.com
nic-hdl: ZM678-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20110614
source: APNIC

person: Guoxin Gao
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022600
fax-no: +86-0571-85022600
e-mail: guoxin.gao@aliyun-inc.com
nic-hdl: ZM875-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20130705
source: APNIC

person: security trouble
e-mail: cloud-cc-sqcloud@list.alibaba-inc.com
address: 5th,floor,Building D,the West Lake International Plaza of S&T,391#Wen’er Road
address: Hangzhou, Zhejiang, China
phone: +86-0571-85022600
country: CN
mnt-by: MAINT-CNNIC-AP
nic-hdl: ZM876-AP
changed: ipas@cnnic.cn 20130708
source: APNIC

person: Guowei Pan
address: 5F, Builing D, the West Lake International Plaza of S&T
address: No.391 Wen'er Road, Hangzhou City
address: Zhejiang, China, 310099
country: CN
phone: +86-0571-85022088-30763
fax-no: +86-0571-85022600
e-mail: guowei.pangw@alibaba-inc.com
nic-hdl: ZM877-AP
mnt-by: MAINT-CNNIC-AP
changed: ipas@cnnic.net 20130709
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS4)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 80.241.16.10

Hi,

The IP 80.241.16.10 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 80.241.16.10:

[Querying whois.ripe.net]
[whois.ripe.net]
% This is the RIPE Database query service.
% The objects are in RPSL format.
%
% The RIPE Database is subject to Terms and Conditions.
% See http://www.ripe.net/db/support/db-terms-conditions.pdf

% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.

% Information related to '80.241.16.0 - 80.241.16.127'

% Abuse contact for '80.241.16.0 - 80.241.16.127' is 'abuse@upc.at'

inetnum: 80.241.16.0 - 80.241.16.127
netname: CATV_SERVER
descr: CATV Server Net
country: AT
admin-c: MP13024-RIPE
tech-c: MP13024-RIPE
status: ASSIGNED PA
mnt-by: CATV-KABEL-MNT
source: RIPE # Filtered

person: Matthias Poettinger
address: iCable Service GmbH
address: Inn 9
address: A-4632, Pichl bei Wels
address: Austria
phone: +43724242820
nic-hdl: MP13024-RIPE
source: RIPE # Filtered

% Information related to '80.241.16.0/20AS39210'

route: 80.241.16.0/20
descr: AT-CATVNET-80-241-16-0-20
origin: AS39210
mnt-by: CATV-KABEL-MNT
source: RIPE # Filtered

% This query was served by the RIPE Database Query Service version 1.68.1 (WHOIS2)

Regards,

Fail2Ban

Thursday 12 September 2013

[Fail2Ban] SSH: banned 221.130.60.93

Hi,

The IP 221.130.60.93 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 221.130.60.93:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '221.130.48.0 - 221.130.111.255'

inetnum: 221.130.48.0 - 221.130.111.255
netname: CMNET-jiangsu
descr: China Mobile Communications Corporation - jiangsu
country: CN
admin-c: TC105-AP
tech-c: TC105-AP
mnt-by: MAINT-CN-CMCC
mnt-lower: MAINT-CN-CMCC-jiangsu
remarks: ------------------------------
remarks: Please send abuse e-mail to
remarks: chentao@js.chinamobile.com
remarks: Please send probe e-mail to
remarks: chentao@js.chinamobile.com
remarks: -------------------------------
changed: weichenguang@chinamobile.com 20050317
status: ALLOCATED NON-PORTABLE
source: APNIC

person: tao chen
nic-hdl: TC105-AP
e-mail: socadmin@js.chinamobile.com
address: 81st. HuJu Road, Nanjing, P.R.China
phone: +86-13800250222
fax-no: +86-025-86668202
country: cn
changed: chentao@js.chinamobile.com 20071126
mnt-by: MAINT-CN-CMCC-JIANGSU
source: APNIC

% Information related to '221.130.0.0/15AS9808'

route: 221.130.0.0/15
descr: China Mobile communications corporation
origin: AS9808
mnt-by: MAINT-CN-CMCC
changed: hostmaster@chinamobile.com 20120215
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS4)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 221.131.113.111

Hi,

The IP 221.131.113.111 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 221.131.113.111:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '221.131.64.0 - 221.131.191.255'

inetnum: 221.131.64.0 - 221.131.191.255
netname: CMNET-jiangsu
descr: China Mobile Communications Corporation - jiangsu
country: CN
admin-c: TC105-AP
tech-c: TC105-AP
mnt-by: MAINT-CN-CMCC
mnt-lower: MAINT-CN-CMCC-jiangsu
remarks: ------------------------------
remarks: Please send abuse e-mail to
remarks: chentao@js.chinamobile.com
remarks: Please send probe e-mail to
remarks: chentao@js.chinamobile.com
remarks: -------------------------------
changed: weichenguang@chinamobile.com 20050811
status: ALLOCATED NON-PORTABLE
source: APNIC

person: tao chen
nic-hdl: TC105-AP
e-mail: socadmin@js.chinamobile.com
address: 81st. HuJu Road, Nanjing, P.R.China
phone: +86-13800250222
fax-no: +86-025-86668202
country: cn
changed: chentao@js.chinamobile.com 20071126
mnt-by: MAINT-CN-CMCC-JIANGSU
source: APNIC

% Information related to '221.130.0.0/15AS9808'

route: 221.130.0.0/15
descr: China Mobile communications corporation
origin: AS9808
mnt-by: MAINT-CN-CMCC
changed: hostmaster@chinamobile.com 20120215
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 184.154.117.210

Hi,

The IP 184.154.117.210 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 184.154.117.210:

[Querying whois.arin.net]
[Redirected to rwhois.singlehop.net:4321]
[Querying rwhois.singlehop.net]
[rwhois.singlehop.net]
%rwhois V-1.5:003eff:00 rwhois.singlehop.com (by Network Solutions, Inc. V-1.5.9.5)
network:Class-Name:network
network:ID:ORG-SINGL-8.184-154-117-208/29
network:Auth-Area:184.154.0.0/16
network:IP-Network:184.154.117.208/29

network:Organization:Onit Solutions LLC
network:Street-Address:8753 Yates Dr. Ste 225C
network:City:Westminster
network:State:CO
network:Postal-Code:80031
network:Country-Code:US
network:Tech-Contact;I:NETWO1546-ARIN
network:Admin-Contact;I:NETWO1546-ARIN
network:Abuse-Contact;I:ABUSE2492-ARIN
network:Created:20121030
network:Updated:20121030

%ok

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 139.210.100.66

Hi,

The IP 139.210.100.66 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 139.210.100.66:

[Querying whois.arin.net]
[Redirected to whois.apnic.net]
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '139.208.0.0 - 139.215.255.255'

inetnum: 139.208.0.0 - 139.215.255.255
netname: UNICOM-JL
descr: China Unicom Jilin province network
descr: China Unicom
descr: No.21,Jin-Rong Street,
descr: Beijing 100033
country: CN
admin-c: CH1302-AP
tech-c: WT92-AP
remarks: service provider
mnt-by: APNIC-HM
mnt-lower: MAINT-CNCGROUP
mnt-lower: MAINT-CNCGROUP-JL
mnt-routes: MAINT-CNCGROUP-RR
status: ALLOCATED PORTABLE
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
changed: hm-changed@apnic.net 20110303
mnt-irt: IRT-CU-CN
source: APNIC

irt: IRT-CU-CN
address: No.21,Jin-Rong Street
address: Beijing,100140
address: P.R.China
e-mail: zhouxm@chinaunicom.cn
abuse-mailbox: zhouxm@chinaunicom.cn
admin-c: CH1302-AP
tech-c: CH1302-AP
mnt-by: MAINT-CNCGROUP
changed: zhouxm@chinaunicom.cn 20101110
changed: hm-changed@apnic.net 20101116
source: APNIC

person: ChinaUnicom Hostmaster
nic-hdl: CH1302-AP
e-mail: abuse@cnc-noc.net
address: No.21,Jin-Rong Street
address: Beijing,100033
address: P.R.China
phone: +86-10-66259764
fax-no: +86-10-66259764
country: CN
changed: abuse@cnc-noc.net 20090408
mnt-by: MAINT-CNCGROUP
source: APNIC

person: Wang Tiegang
nic-hdl: WT92-AP
e-mail: jhli_jl@sina.cn
address: NO.3535,Renmin Street, ChangChun ,
address: Jilin province , 130021 , P.R. China
phone: +86-431-5560792
fax-no: +86-431-5560816
country: CN
changed: jhli_jl@mail.jl.cn 20060626
mnt-by: MAINT-CNCGROUP-JL
changed: hm-changed@apnic.net 20120528
source: APNIC

% Information related to '139.208.0.0/13AS4837'

route: 139.208.0.0/13
descr: China Unicom Jilin Province Network
country: CN
origin: AS4837
mnt-by: MAINT-CNCGROUP-RR
changed: abuse@cnc-noc.net 20110323
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (WHOIS1)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 218.203.55.49

Hi,

The IP 218.203.55.49 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 218.203.55.49:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '218.203.0.0 - 218.203.95.255'

inetnum: 218.203.0.0 - 218.203.95.255
netname: CMNET-heilongjiang
descr: China Mobile Communications Corporation - heilongjiang
country: CN
admin-c: HL349-AP
tech-c: HL349-AP
mnt-by: MAINT-CN-CMCC
mnt-lower: MAINT-CN-CMCC-heilongjiang
remarks: ------------------------------
remarks: Please send abuse e-mail to
remarks: lihonglei@hl.chinamobile.com
remarks: Please send probe e-mail to
remarks: lihonglei@hl.chinamobile.com
remarks: -------------------------------
changed: weichenguang@chinamobile.com 20050309
status: ALLOCATED NON-PORTABLE
source: APNIC

person: honglei li
nic-hdl: HL349-AP
e-mail: lihonglei@hl.chinamobile.com
address: No. 70, WenChang Street, NangGang Dist., HarBin, China
phone: +86-451 -82668013
fax-no: +86-0451-82668059
country: cn
changed: weichenguang@chinamobile.com 20040625
mnt-by: MAINT-CN-CMCC-HEILONGJIANG
source: APNIC

% Information related to '218.200.0.0/14AS9808'

route: 218.200.0.0/14
descr: China Mobile communications corporation
origin: AS9808
mnt-by: MAINT-CN-CMCC
changed: hostmaster@chinamobile.com 20120215
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban

[Fail2Ban] SSH: banned 58.215.43.234

Hi,

The IP 58.215.43.234 has just been banned by Fail2Ban after
5 attempts against SSH.


Here are more information about 58.215.43.234:

[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

% Information related to '58.208.0.0 - 58.223.255.255'

inetnum: 58.208.0.0 - 58.223.255.255
netname: CHINANET-JS
descr: CHINANET jiangsu province network
descr: China Telecom
descr: A12,Xin-Jie-Kou-Wai Street
descr: Beijing 100088
country: CN
admin-c: CH93-AP
tech-c: CJ186-AP
mnt-by: APNIC-HM
mnt-lower: MAINT-CHINANET-JS
mnt-routes: MAINT-CHINANET-JS
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
status: ALLOCATED PORTABLE
changed: hm-changed@apnic.net 20050624
source: APNIC

role: CHINANET JIANGSU
address: 260 Zhongyang Road,Nanjing 210037
country: CN
phone: +86-25-86588231
phone: +86-25-86588745
fax-no: +86-25-86588104
e-mail: ip@jsinfo.net
remarks: send anti-spam reports to spam@jsinfo.net
remarks: send abuse reports to abuse@jsinfo.net
remarks: times in GMT+8
admin-c: CH360-AP
tech-c: CS306-AP
tech-c: CN142-AP
nic-hdl: CJ186-AP
remarks: www.jsinfo.net
notify: ip@jsinfo.net
mnt-by: MAINT-CHINANET-JS
changed: dns@jsinfo.net 20090831
changed: ip@jsinfo.net 20090831
changed: hm-changed@apnic.net 20090901
source: APNIC
changed: hm-changed@apnic.net 20111114

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC

% This query was served by the APNIC Whois Service version 1.68 (UNDEFINED)

Regards,

Fail2Ban