Arescom, Inc. — 2 prefixes (MA-L)
Summary
- // what this is
- Arescom is registered to MAC prefix
00:60:6Cand 1 more in the IEEE OUI database. When a device's MAC address begins with00:60:6C, that block was registered by Arescom — the OUI identifies the maker of the network hardware, which is not always the brand on the device. - // analyst note
- Both Arescom OUI blocks (00:60:6C, 00:05:D8) are ordinary dedicated single-company MA-L registrations, not shared IEEE-RA bases. A MAC on either block reliably identifies legacy Arescom DSL/broadband CPE; given the vendor has been inactive since roughly 2010 and two of its named products carry unauthenticated-access CVEs, a live sighting today is a strong candidate for old, unmaintained, still-exposed management-interface hardware rather than an actively administered device.
About this vendor.
A MAC address starting with 00:60:6C or 00:05:D8 belongs to Arescom, Inc., typically seen on DSL/broadband customer-premise equipment such as the NetDSL modem-router line and the CDS 6000 DSL Service Platform. Arescom was a Silicon Valley networking vendor; the two prefixes trace to different registrant addresses in the IEEE MA-L registry, one styled "ARESCOM" and the other "Arescom, Inc.", consistent with the company's documented office history.
Founded in 1996, Arescom built DSL/broadband CPE for telecom carriers, ISPs, hotels, and SOHO users across the US, Asia, and Europe. Its Hospitality Network (AHN) division supplied turnkey high-speed internet to hotels via the CDS 6000 platform, and the company's own profile also lists 802.11 wireless broadband access products.
Arescom appears to be defunct. As of an August 2026 check, arescom.com 307-redirects to a GoDaddy domain-for-sale parking page, and a search-indexed summary of a third-party page states the company was no longer in business as of 2010 — that page itself returned HTTP 403 on direct fetch, so this detail is corroborated rather than independently read verbatim.
Two dated CVEs name Arescom products directly: CVE-2002-0255 (NetDSL 800 requires no authentication by default, CVSSv2 base 10.0, remote DoS or reconfiguration) and CVE-2002-0256 (NetDSL 1000 telnet service crashable by a remote connection flood, CVSSv2 base 5.0). No malware or trojan association is recorded for the vendor as of an August 2026 NVD search; a live sighting today is more likely old, unmaintained hardware than an actively administered device.
IEEE's public OUI registry publishes no assignment or registration date for either block — its columns are only Registry, Assignment, Organization Name, and Organization Address. A third-party tool shows "22 April 1998" for 00:60:6C and "04 June 2001" for 00:05:D8; these are database artifacts from that tool, not IEEE facts.
- IEEE assignment
- 00:60:6C → "ARESCOM", San Jose, CA, US; 00:05:D8 → "Arescom, Inc.", Fremont, CA, US [Confirmed] — the IEEE MA-L registry 00606C, the IEEE MA-L registry 0005D8
- Registry / block size
- Both MA-L (24-bit OUI); no MA-M or MA-S sub-allocations found for this registrant [Confirmed] — the IEEE MA-L registry 00606C, the IEEE MA-L registry 0005D8. NOTE: IEEE's public OUI data publishes NO assignment/registration date (the IEEE MA-L registry columns are only Registry, Assignment, Organization Name, Organization Address); a third-party tool's dates for both prefixes are database artifacts, not IEEE facts.
- HQ / country
- 3541 Gateway Blvd., Fremont, CA 94538, US (registry address for 00:05:D8, the company's later office); 2833 Junction Ave., Ste #206, San Jose, CA 95134, US (registry address for 00:60:6C, an earlier office) — both match the company's documented history[Confirmed] — the IEEE MA-L registry; https://www.hospitalitynet.org/organization/17005411/arescom
- Company status
- arescom.com now 307-redirects to a GoDaddy domain-for-sale parking page, directly observed as of an August 2026 check; a search-indexed summary of a third-party page separately reports the company was no longer in business as of 2010 (that page returned HTTP 403 on direct fetch, so this specific detail rests on a summary, not a verbatim read) [Confirmed for the domain-parking observation; Likely for the 2010 date] — https://www.arescom.com, https://forsale.godaddy.com/forsale/www.arescom.com, https://www.computerhope.com/comp/arescom.htm
- Device types
- DSL/broadband customer-premise equipment — modem-routers, DSL Service Platforms, and 802.11 wireless broadband access gear [Confirmed] — https://www.hospitalitynet.org/organization/17005411/arescom
- Notable products
- NetDSL 800, NetDSL 1000, CDS 6000 DSL Service Platform, Hospitality Network (AHN) [Confirmed] — https://www.hospitalitynet.org/organization/17005411/arescom; https://nvd.nist.gov/vuln/detail/CVE-2002-0255; https://nvd.nist.gov/vuln/detail/CVE-2002-0256
- Verified sample prefixes (both MA-L, Arescom's entire known IEEE footprint)
- 00:60:6C, 00:05:D8 [Confirmed] — the IEEE MA-L registry, https://maclookup.app/macaddress/00606c, https://maclookup.app/macaddress/0005d8
- Historic block
- none found — no pre-1996 or additional OUI assignment to this registrant was located [Confirmed absence, checked the IEEE MA-L registry/mam.csv/oui36.csv] — the IEEE MA-L registry, the IEEE MA-M registry, the IEEE MA-S registry
- Special note
- Arescom carries a documented security-disclosure history on named products — see JSON special_note for the full breakdown, including two NVD-confirmed CVEs and a corroborating default-credentials finding [Confirmed for the 2 NVD IDs; Likely for the default-credentials corroboration] — https://nvd.nist.gov/vuln/detail/CVE-2002-0255, https://nvd.nist.gov/vuln/detail/CVE-2002-0256, https://www.defaultcredentials.org/en/credentials/arescom-router
- Analyst note
- Both Arescom OUI blocks are ordinary dedicated single-company MA-L registrations, not shared IEEE-RA bases; a MAC on either 00:60:6C or 00:05:D8 reliably identifies legacy Arescom DSL/broadband CPE. Given the vendor's inactive status and two unauthenticated-access CVEs on named products, a live sighting today is a strong candidate for old, unmaintained, still-exposed hardware rather than an actively administered device.[Confirmed] — the IEEE MA-L registry; https://nvd.nist.gov/vuln/detail/CVE-2002-0255