This IP address has been reported a total of
31
times from
21 distinct
sources.
103.124.225.152 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Unwanted traffic detected by honeypot on August 21, 2026: port scans (1 port 23 scan and 2 port 22 s ...
show moreUnwanted traffic detected by honeypot on August 21, 2026: port scans (1 port 23 scan and 2 port 22 scans).
show less
UDP flood (DDoS) vs AS215599: 288 pkts / 0.41 MB to UDP 80 across 109 dst IP(s), 2026-08-19 21:46 to ...
show moreUDP flood (DDoS) vs AS215599: 288 pkts / 0.41 MB to UDP 80 across 109 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 288 pkts / 0.41 MB to UDP 80 across 109 dst IP(s), 2026-08-19 21:46 to ...
show moreUDP flood (DDoS) vs AS215599: 288 pkts / 0.41 MB to UDP 80 across 109 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
Blocked by UFW (TCP on 23)
Source port: 50354
TTL: 45
Packet length: 60
TOS: 0x00
This report (for ...
show moreBlocked by UFW (TCP on 23)
Source port: 50354
TTL: 45
Packet length: 60
TOS: 0x00
This report (for 103.124.225.152) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Hacking
Brute-Force
Anonymous
Distributed scraper residential proxy pool โ www.liquoroutletwinecellars.com /store/filtered/ (WineC ...
show moreDistributed scraper residential proxy pool โ www.liquoroutletwinecellars.com /store/filtered/ (WineCommerce WAF)
show less
DDOS from known (Mirai) botnet. Scraping ai1ec data from wordpress website. Using randomly generated ...
show moreDDOS from known (Mirai) botnet. Scraping ai1ec data from wordpress website. Using randomly generated user agents.
show less
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Anonymous
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.12.09 is noted in report tim ...
show moreAttempted brute force login to web vpn 1 time(s); last attempt for 2025.12.09 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
botnet
DDoS Attack
Anonymous
scanning http requests from known botnet
Web App Attack
Showing 1 to
15
of 31 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ