Originally Posted by
SkyNigger
Every window open is relevant to my WTF.
new-host:~ jstorm$ whois 42.121.12.248
#
# Query terms are ambiguous. The query is assumed to be:
# "n 42.121.12.248"
#
# Use "?" to get help.
#
#
# The following results may also be obtained via:
#
http://whois.arin.net/rest/nets;q=42...se&ext=netref2
#
NetRange: 42.0.0.0 - 42.255.255.255
CIDR: 42.0.0.0/8
OriginAS:
NetName: APNIC-42
NetHandle: NET-42-0-0-0-1
Parent:
NetType: Allocated to APNIC
Comment: This IP address range is not registered in the ARIN database.
Comment: For details, refer to the APNIC Whois Database via
Comment: WHOIS.APNIC.NET or
http://wq.apnic.net/apnic-bin/whois.pl
Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
Comment: for the Asia Pacific region. APNIC does not operate networks
Comment: using this IP address range and is not able to investigate
Comment: spam or abuse reports relating to these addresses. For more
Comment: help, refer to
http://www.apnic.net/apnic-info/whoi...e-and-spamming
RegDate: 2010-10-26
Updated: 2011-04-12
Ref:
http://whois.arin.net/rest/net/NET-42-0-0-0-1
OrgName: Asia Pacific Network Information Centre
OrgId: APNIC
Address: PO Box 3646
City: South Brisbane
StateProv: QLD
PostalCode: 4101
Country: AU
RegDate:
Updated: 2012-01-24
Ref:
http://whois.arin.net/rest/org/APNIC
ReferralServer: whois://whois.apnic.net
OrgTechHandle: AWC12-ARIN
OrgTechName: APNIC Whois Contact
OrgTechPhone: +61 7 3858 3188
OrgTechEmail:
search-apnic-not-arin@apnic.net
OrgTechRef:
http://whois.arin.net/rest/poc/AWC12-ARIN
OrgAbuseHandle: AWC12-ARIN
OrgAbuseName: APNIC Whois Contact
OrgAbusePhone: +61 7 3858 3188
OrgAbuseEmail:
search-apnic-not-arin@apnic.net
OrgAbuseRef:
http://whois.arin.net/rest/poc/AWC12-ARIN
#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at:
https://www.arin.net/whois_tou.html
#
% [whois.apnic.net node-3]
% Whois data copyright terms
http://www.apnic.net/db/dbcopyright.html
inetnum: 42.120.0.0 - 42.121.255.255
netname: ALISOFT
descr: Aliyun Computing Co., LTD
descr: 5F, Builing D, the West Lake International Plaza of S&T
descr: No.391 Wen'er Road, Hangzhou, Zhejiang, China, 310099
country: CN
A Chinese IP probing for a notoriously insecure vector for exploitation?
Yeah thats a worm at least.