2020-04-18 10:46:35 +02:00

16 KiB


SUMMARY for cobaltstrike_servers / CVE-2020-0000

IPs       : 1275
Networks  : 731 
ASNs      : 194
Countries : 37


Top 100 ASNs

ASN_NR    |  Count | ASNName 
----------+--------+-----------------------------------
   136800 |    211 | XIAOZHIYUN1-AS-AP ICIDC NETWORK, US 
    20473 |    147 | AS-CHOOPA, US 
    37963 |    113 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN 
    16509 |    109 | AMAZON-02, US 
    14061 |    104 | DIGITALOCEAN-ASN, US 
    45090 |     79 | CNNIC-TENCENT-NET-AP Shenzhen Tencent Computer Systems Company Limited, CN 
    14618 |     62 | AMAZON-AES, US 
    45102 |     50 | CNNIC-ALIBABA-US-NET-AP Alibaba (US) Technology Co., Ltd., CN 
    25820 |     49 | IT7NET, CA 
    63949 |     34 | LINODE-AP Linode, LLC, US 
    15169 |     29 | GOOGLE, US 
     8075 |     21 | MICROSOFT-CORP-MSN-AS-BLOCK, US 
    24875 |     17 | NOVOSERVE-AS, NL 
    63473 |     15 | HOSTHATCH, US 
    22992 |     15 | SECUREWORKS, US 
   137443 |     14 | ANCHGLOBAL-AS-AP Anchnet Asia Limited, HK 
    34665 |     14 | PINDC-AS, RU 
    43350 |     13 | NFORCE, NL 
    55933 |     12 | CLOUDIE-AS-AP Cloudie Limited, HK 
    16276 |     12 | OVH, FR 
    54290 |     11 | HOSTWINDS, US 
     9009 |     11 | M247, GB 
    57043 |     10 | HOSTKEY-AS, NL 
    20860 |      9 | IOMART-AS, GB 
    11042 |      8 | NTHL, US 
    30823 |      8 | COMBAHTON combahton GmbH, DE 
   200019 |      8 | ALEXHOST, MD 
    35913 |      7 | DEDIPATH-LLC, US 
    23470 |      7 | RELIABLESITE, US 
    40065 |      7 | CNSERVERS, US 
    59253 |      7 | LEASEWEB-APAC-SIN-11 Leaseweb Asia Pacific pte. ltd., SG 
    38365 |      6 | BAIDU Beijing Baidu Netcom Science and Technology Co., Ltd., CN 
    44812 |      6 | IPSERVER-RU-NET Fiord, RU 
   206728 |      6 | MEDIALAND-AS, RU 
    49877 |      6 | RMINJINERING, RU 
    55720 |      6 | GIGABIT-MY Gigabit Hosting Sdn Bhd, MY 
    48282 |      6 | VDSINA-AS, RU 
    49505 |      6 | SELECTEL, RU 
   396362 |      6 | LEASEWEB-USA-NYC-11, US 
    43513 |      5 | NANO-AS, LV 
   133115 |      5 | HKKFGL-AS-AP HK Kwaifong Group Limited, HK 
      852 |      5 | ASN852, CA 
    45753 |      5 | NETSEC-HK NETSEC, HK 
   132203 |      5 | TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue, CN 
   210138 |      5 | FLOWSPEC-AS, UA 
   202448 |      5 | MVPS https://www.mvps.net, EU 
   132839 |      4 | POWERLINE-AS-AP POWER LINE DATACENTER, HK 
    22612 |      4 | NAMECHEAP-NET, US 
     8100 |      4 | ASN-QUADRANET-GLOBAL, US 
    61272 |      4 | IST-AS, LT 
     8987 |      4 | AMAZON EXPANSION, GB 
    44094 |      4 | WEBHOST1-AS, RU 
    58329 |      4 | RACKPLACE, DE 
    45996 |      4 | GNJ-AS-KR DAOU TECHNOLOGY, KR 
    62904 |      4 | EONIX-COMMUNICATIONS-ASBLOCK-62904, US 
   135373 |      4 | EFLYPRO-AS-AP EFLY NETWORK LIMITED, HK 
   394380 |      4 | LEASEWEB-USA-DAL-10, US 
    36352 |      4 | AS-COLOCROSSING, US 
    30083 |      4 | AS-30083-GO-DADDY-COM-LLC, US 
    64050 |      4 | BCPL-SG BGPNET Global ASN, SG 
    55990 |      3 | HWCSNET Huawei Cloud Service data center, CN 
   135377 |      3 | UHGL-AS-AP UCloud (HK) Holdings Group Limited, HK 
    60781 |      3 | LEASEWEB-NL-AMS-01 Netherlands, NL 
    50673 |      3 | SERVERIUS-AS, NL 
    30633 |      3 | LEASEWEB-USA-WDC-01, US 
   136907 |      3 | HWCLOUDS-AS-AP HUAWEI CLOUDS, HK 
   136190 |      3 | CHINATELECOM-ZHEJIANG-JINHUA-IDC JINHUA, ZHEJIANG Province, P.R.China., CN 
    35916 |      3 | MULTA-ASN1, US 
    40676 |      3 | AS40676, US 
   136933 |      3 | GIGABITBANK-AS-AP Gigabitbank Global, HK 
   134548 |      3 | DXTL-HK DXTL Tseung Kwan O Service, HK 
    51852 |      3 | PLI-AS, CH 
    21100 |      3 | ITLDC-NL, UA 
    31863 |      3 | DACEN-2, US 
    60117 |      3 | HS, AE 
    31400 |      3 | ACCELERATED-IT, DE 
    36351 |      3 | SOFTLAYER, US 
   139640 |      3 | HKNEWCLOUD-AS-AP HK NEW CLOUD TECHNOLOGY LIMITED, HK 
     8560 |      3 | ONEANDONE-AS Brauerstrasse 48, DE 
   206804 |      3 | ESTNOC-AS, EE 
    57509 |      3 | LL-INVESTMENT-LTD, BG 
    42237 |      3 | ICME, SE 
   395954 |      3 | LEASEWEB-USA-LAX-11, US 
    59371 |      3 | DNC-AS Dimension Network & Communication Limited, HK 
    18013 |      2 | ASLINE-AS-AP ASLINE LIMITED, HK 
    20278 |      2 | NEXEON, US 
     6134 |      2 | XNNET, US 
    52173 |      2 | MAKONIX, LV 
   134705 |      2 | ITACE-AS-AP Itace International Limited, HK 
     4808 |      2 | CHINA169-BJ China Unicom Beijing Province Network, CN 
     9919 |      2 | NCIC-TW New Century InfoComm Tech Co., Ltd., TW 
    16125 |      2 | CHERRYSERVERS1-AS, LT 
    38283 |      2 | CHINANET-SCIDC-AS-AP CHINANET SiChuan Telecom Internet Data Center, CN 
    35017 |      2 | SWIFTWAY-AS Netherlands, GB 
    63646 |      2 | XJKJ Beijing Xiaoju Science and Technology Co., Ltd., CN 
   132422 |      2 | TELECOM-HK Hong Kong Telecom Global Data Centre, HK 
    30860 |      2 | YURTEH-AS, UA 
     4134 |      2 | CHINANET-BACKBONE No.31,Jin-rong Street, CN 
    62370 |      2 | SNEL, NL 
   134764 |      2 | CT-FOSHAN-IDC CHINANET Guangdong province network, CN 
    49981 |      2 | WORLDSTREAM, NL 
    25369 |      2 | BANDWIDTH-AS, GB 
    57367 |      2 | ECO-ATMAN-PL ECO-ATMAN-, PL 
    63252 |      2 | NEXTFORT, US 
    26484 |      2 | IKGUL-26484, US 
    58061 |      2 | SCALAXY-AS, NL 
    63612 |      2 | XIAONIAOYUN Shenzhen Qianhai bird cloud computing Co. Ltd., CN 
    48817 |      2 | RELDAS-NET, RU 
    34224 |      2 | NETERRA-AS, BG 
     2119 |      2 | TELENOR-NEXTEL Telenor Norge AS, NO 
   398019 |      2 | DYNU, US 
     9123 |      2 | TIMEWEB-AS, RU 
    45382 |      2 | EHOSTIDC-AS-KR EHOSTICT, KR 
   137431 |      2 | RPCL-AS-AP ZORRO RITZ PUBLIC COMPANY LIMITED, MM 
     3549 |      2 | LVLT-3549, US 
    55960 |      2 | BJ-GUANGHUAN-AP Beijing Guanghuan Xinwang Digital, CN 
    46573 |      2 | LAYER-HOST, US 
   204601 |      1 | ON-LINE-DATA Server location - Netherlands, Dronten, NL 
   134762 |      1 | CHINANET-SICHUAN-CHENGDU-MAN CHINANET Sichuan province Chengdu MAN network, CN 
   209484 |      1 | ASIANET, GB 
    12876 |      1 | Online SAS, FR 
   198203 |      1 | ASN-ROUTELABEL, NL 
   134176 |      1 | RAIBOW-AS-AP Rainbow network limited, HK 
    49335 |      1 | NCONNECT-AS, RU 
    56694 |      1 | DHUB, RU 
   395839 |      1 | HOSTKEY-USA, US 
    30491 |      1 | CROWEHORWATH, US 
   197595 |      1 | OBE-EUROPE Obenetwork Europe, SE 
   133779 |      1 | HDIL-AS-AP Huayun Data International Limited, HK 
    39378 |      1 | SERVINGA, DE 
    59711 |      1 | HZ-NL-AS, GB 
    42708 |      1 | PORTLANE www.portlane.com, SE 
    34888 |      1 | SIMPLECARRER2, IT 
   202933 |      1 | CLOUDSOLUTIONS, RU 
    12083 |      1 | WOW-INTERNET, US 
    23858 |      1 | XTOM-AS-AU xTom, AU 
     4816 |      1 | CHINANET-IDC-GD China Telecom (Group), CN 
    31798 |      1 | CANAD-86-31798, CA 
   134835 |      1 | SNL-HK Starry Network Limited, HK 
    59729 |      1 | ITL-, BG 
    32097 |      1 | WII, US 
    48347 |      1 | MTW-AS, RU 
    61046 |      1 | HZ-UK-AS, GB 
    19148 |      1 | LEASEWEB-USA-PHX-11, US 
   136743 |      1 | IKGCL-AS-AP Internet Keeper Global (Group) Co., Limited, HK 
   133774 |      1 | CHINATELECOM-FUJIAN-FUZHOU-IDC1 Fuzhou, CN 
    27715 |      1 | Locaweb Serviços de Internet S/A, BR 
    58519 |      1 | CHINATELECOM-CTCLOUD Cloud Computing Corporation, CN 
   396190 |      1 | LEASEWEB-USA-SEA-10, US 
    62468 |      1 | VPSQUAN, US 
    56005 |      1 | FASTIDC Zhengzhou Fastidc Technology Co.,Ltd., CN 
   198610 |      1 | BEGET-AS, RU 
    47583 |      1 | AS-HOSTINGER, LT 
     8315 |      1 | SENTIA, NL 
   200651 |      1 | FLOKINET, SC 
      174 |      1 | COGENT-174, US 
   134542 |      1 | UNICOM-GUIAN China Unicom IP network, CN 
    45538 |      1 | ODS-AS-VN Online data services, VN 
   134520 |      1 | GIGSGIGSCLOUD-AS-AP GigsGigs Network Services, HK 
    56067 |      1 | METRABYTE-TH 453 Ladplacout Jorakhaebua, TH 
    20454 |      1 | SSASN2, US 
   133441 |      1 | CLOUDITIDC-HK CloudITIDC Global, HK 
    23724 |      1 | CHINANET-IDC-BJ-AP IDC, China Telecommunications Corporation, CN 
   139293 |      1 | UFO-AS-AP UFO Network Limited, HK 
    64022 |      1 | KAMATERAINC-AS-AP Kamatera, Inc., HK 
    49367 |      1 | ASSEFLOW Amsterdam Internet Exchange (AMS-IX), IT 
    47510 |      1 | CREXFEXPEX-RUSSIA, RU 
   136958 |      1 | UNICOM-GUANGZHOU-IDC China Unicom Guangdong IP network, CN 
    50340 |      1 | SELECTEL-MSK, RU 
   136038 |      1 | HDTIDCCLOUD-AS-AP HDTIDC LIMITED, HK 
   202425 |      1 | INT-NETWORK, SC 
    60567 |      1 | DATACLUB-, SE 
     6878 |      1 | AS6878, DE 
    58593 |      1 | BLUECLOUD Shanghai Blue Cloud Technology Co.,Ltd, CN 
   138152 |      1 | YISUCLOUDLTD-HK YISU CLOUD LTD, HK 
    57918 |      1 | ACOD-AS, RU 
    20141 |      1 | QTS-SUW1-ATL1, US 
    36436 |      1 | INFOBUNKER, US 
    38197 |      1 | SUNHK-DATA-AS-AP Sun Network (Hong Kong) Limited - HongKong Backbone, HK 
   132347 |      1 | MIKIPRO-AS-AP MikiPro Ltd, NZ 
    24000 |      1 | LIHGL-AS-AP 24.hk global BGP, HK 
    57678 |      1 | REDBYTES-AS, RU 
    58879 |      1 | ANCHNET Shanghai Anchang Network Security Technology Co.,Ltd., CN 
   133199 |      1 | SONDERCLOUDLIMITED-AS-AP SonderCloud Limited, HK 
    31815 |      1 | MEDIATEMPLE, US 
    42159 |      1 | DELTAHOST-AS, UA 
     8920 |      1 | VTC-AS Russia, Vladivostok, RU 
    58466 |      1 | CT-GUANGZHOU-IDC CHINANET Guangdong province network, CN 
    38478 |      1 | SUNNYVISION-AS-AP SunnyVision Limited, HK 
    51395 |      1 | AS-SOFTPLUS, CH 
    20326 |      1 | TERASWITCH, US 
     5650 |      1 | FRONTIER-FRTR, US 
    53755 |      1 | IOFLOOD, US 
    17444 |      1 | NWT-AS-AP AS number for New World Telephone Ltd., HK 

Top 100 Countries
Country |  Count   
--------+-----------
     US |    644 
     CN |    242 
     SC |    235 
     NL |     78 
     RU |     71 
     CA |     62 
     DE |     38 
     HK |     36 
     SG |     31 
     GB |     22 
     FR |     14 
     UA |     12 
     MD |     10 
     LV |      7 
     SE |      7 
     BG |      6 
     LT |      6 
     RO |      6 
     EU |      6 
     PA |      5 
     ZA |      4 
     KR |      4 
     PL |      3 
     MO |      2 
     TW |      2 
     CH |      2 
     MM |      2 
     BR |      1 
     EE |      1 
     IS |      1 
     NZ |      1 
     MY |      1 
     VN |      1 
     NO |      1 
     IT |      1 
     GL |      1 
     TH |      1 

Top 100 Networks
NW                |  Count | NetworkName 
------------------+--------+-----------------------------------
 156.255.128.0/17 |    204 | XIAOZHIYUN1-AS-AP ICIDC NETWORK, US  
     47.56.0.0/16 |     21 | CNNIC-ALIBABA-US-NET-AP Alibaba (US) Technology Co., Ltd., CN  
   31.220.42.0/24 |     15 | HOSTHATCH, US  
    47.100.0.0/15 |     14 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
  185.147.12.0/22 |     13 | NOVOSERVE-AS, NL  
     39.96.0.0/14 |     11 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
   31.44.184.0/24 |     10 | PINDC-AS, RU  
    34.192.0.0/12 |     10 | AMAZON-AES, US  
  167.179.64.0/18 |      9 | AS-CHOOPA, US  
    34.240.0.0/13 |      9 | AMAZON-02, US  
    34.224.0.0/12 |      8 | AMAZON-AES, US  
  206.55.102.0/23 |      8 | SECUREWORKS, US  
 209.217.224.0/19 |      8 | NTHL, US  
  78.129.128.0/17 |      8 | IOMART-AS, GB  
   101.132.0.0/16 |      7 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
  46.166.128.0/21 |      7 | NFORCE, NL  
       3.8.0.0/14 |      7 | AMAZON-02, US  
  47.244.128.0/17 |      7 | CNNIC-ALIBABA-US-NET-AP Alibaba (US) Technology Co., Ltd., CN  
  23.106.120.0/21 |      7 | LEASEWEB-APAC-SIN-11 Leaseweb Asia Pacific pte. ltd., SG  
  206.55.100.0/23 |      7 | SECUREWORKS, US  
     47.94.0.0/15 |      6 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
     13.64.0.0/11 |      6 | MICROSOFT-CORP-MSN-AS-BLOCK, US  
    18.208.0.0/13 |      6 | AMAZON-AES, US  
    120.78.0.0/16 |      6 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
   45.141.86.0/24 |      6 | MEDIALAND-AS, RU  
    47.240.0.0/17 |      6 | CNNIC-ALIBABA-US-NET-AP Alibaba (US) Technology Co., Ltd., CN  
 185.153.196.0/22 |      6 | RMINJINERING, RU  
    47.102.0.0/15 |      6 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
  45.147.228.0/22 |      5 | COMBAHTON combahton GmbH, DE  
   207.219.0.0/16 |      5 | ASN852, CA  
  149.28.192.0/19 |      5 | AS-CHOOPA, US  
   23.226.56.0/21 |      5 | XIAOZHIYUN1-AS-AP ICIDC NETWORK, US  
 112.121.172.0/24 |      5 | NETSEC-HK NETSEC, HK  
     3.120.0.0/14 |      5 | AMAZON-02, US  
     3.132.0.0/14 |      5 | AMAZON-02, US  
    47.107.0.0/16 |      5 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
    39.104.0.0/15 |      5 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
    34.208.0.0/12 |      5 | AMAZON-02, US  
     34.92.0.0/14 |      5 | GOOGLE, US  
     3.224.0.0/12 |      5 | AMAZON-AES, US  
  176.121.14.0/24 |      5 | FLOWSPEC-AS, UA  
  94.140.114.0/23 |      5 | NANO-AS, LV  
  23.254.224.0/21 |      5 | HOSTWINDS, US  
  195.54.166.0/23 |      5 | SELECTEL, RU  
   49.232.32.0/20 |      4 | CNNIC-TENCENT-NET-AP Shenzhen Tencent Computer Systems Company Limited, CN  
  149.248.48.0/20 |      4 | AS-CHOOPA, US  
  209.126.96.0/19 |      4 | AS-30083-GO-DADDY-COM-LLC, US  
    45.76.48.0/21 |      4 | AS-CHOOPA, US  
  172.241.24.0/21 |      4 | LEASEWEB-USA-DAL-10, US  
  207.148.16.0/20 |      4 | AS-CHOOPA, US  
    66.42.96.0/20 |      4 | AS-CHOOPA, US  
 173.232.144.0/22 |      4 | EONIX-COMMUNICATIONS-ASBLOCK-62904, US  
  89.105.192.0/19 |      4 | NOVOSERVE-AS, NL  
    45.77.32.0/20 |      4 | AS-CHOOPA, US  
   2a0d:7c40::/29 |      4 | HOSTWINDS, US  
     52.90.0.0/15 |      4 | AMAZON-AES, US  
    52.220.0.0/15 |      4 | AMAZON-02, US  
    18.130.0.0/16 |      4 | AMAZON-02, US  
    39.106.0.0/15 |      4 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
   63.250.42.0/24 |      4 | NAMECHEAP-NET, US  
    35.176.0.0/15 |      4 | AMAZON-02, US  
   194.26.29.0/24 |      4 | RELIABLESITE, US  
    64.227.0.0/20 |      4 | DIGITALOCEAN-ASN, US  
 144.202.112.0/20 |      4 | AS-CHOOPA, US  
  206.189.32.0/20 |      4 | DIGITALOCEAN-ASN, US  
  154.209.64.0/19 |      4 | HKNEWCLOUD-AS-AP HK NEW CLOUD TECHNOLOGY LIMITED, HK  
 103.249.106.0/24 |      4 | ANCHGLOBAL-AS-AP Anchnet Asia Limited, HK  
 104.225.232.0/21 |      4 | IT7NET, CA  
 138.128.208.0/21 |      4 | IT7NET, CA  
  195.88.208.0/23 |      3 | IPSERVER-RU-NET Fiord, RU  
 185.158.114.0/24 |      3 | IPSERVER-RU-NET Fiord, RU  
  95.179.208.0/20 |      3 | AS-CHOOPA, US  
   140.82.16.0/21 |      3 | AS-CHOOPA, US  
   45.76.192.0/19 |      3 | AS-CHOOPA, US  
    123.56.0.0/16 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
    116.62.0.0/17 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
 103.143.159.0/24 |      3 | GIGABITBANK-AS-AP Gigabitbank Global, HK  
 167.172.192.0/20 |      3 | DIGITALOCEAN-ASN, US  
   49.233.64.0/20 |      3 | CNNIC-TENCENT-NET-AP Shenzhen Tencent Computer Systems Company Limited, CN  
  103.85.255.0/24 |      3 | DNC-AS Dimension Network & Communication Limited, HK  
    140.82.0.0/20 |      3 | AS-CHOOPA, US  
      3.80.0.0/12 |      3 | AMAZON-AES, US  
    47.105.0.0/16 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
  39.108.128.0/17 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
    100.24.0.0/13 |      3 | AMAZON-AES, US  
  149.129.64.0/19 |      3 | CNNIC-ALIBABA-US-NET-AP Alibaba (US) Technology Co., Ltd., CN  
  116.62.128.0/17 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
   176.123.3.0/24 |      3 | ALEXHOST, MD  
     34.68.0.0/14 |      3 | GOOGLE, US  
 202.182.112.0/20 |      3 | AS-CHOOPA, US  
    85.93.20.0/24 |      3 | LL-INVESTMENT-LTD, BG  
 162.243.160.0/20 |      3 | DIGITALOCEAN-ASN, US  
  185.70.185.0/24 |      3 | HOSTKEY-AS, NL  
  60.163.129.0/24 |      3 | CHINATELECOM-ZHEJIANG-JINHUA-IDC JINHUA, ZHEJIANG Province, P.R.China., CN  
 185.246.130.0/23 |      3 | ICME, SE  
     47.96.0.0/15 |      3 | CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd., CN  
   45.67.229.0/24 |      3 | ALEXHOST, MD  
     3.208.0.0/12 |      3 | AMAZON-AES, US  
   103.193.4.0/22 |      3 | SOFTLAYER, US  
 185.158.249.0/24 |      3 | RACKPLACE, DE