111.201.15.248

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
53 reports
35 reporters ยท latest 1 day ago
ISP China Unicom Beijing province network
Usage Type Fixed Line ISP
ASN AS4808
Domain Name chinaunicom.cn
Country ๐Ÿ‡จ๐Ÿ‡ณ China
City Beijing, Beijing

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 111.201.15.248

This IP address has been reported a total of 53 times from 35 distinct sources. 111.201.15.248 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 22 reports; Germany with 15 reports; France with 4 reports. The most common categories in these recent reports were: Port Scan 43 times; Brute-Force 10 times; Hacking 9 times; SSH 8 times; Web App Attack 5 times; Other 4 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ณ๐Ÿ‡ฑ Tsumugi Kotobuki
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ schematics.cc
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ OceanTreasure
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan SSH Brute-Force
Anonymous
Port Scan
Anonymous
Unauthorized access (443/tcp/https)
Port Scan Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/2222 (4 or more attempts)
Port Scan
๐Ÿ‡จ๐Ÿ‡ด juan_mesa
Unauthorized connection attempts to SSH TCP/2222 on 1 MikroTik router(s) (blocked by firewall).
Port Scan SSH
๐Ÿ‡ฉ๐Ÿ‡ช Admins@FBN
FW-PortScan: Traffic Blocked srcport=53039 dstport=23
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (SSH Attack)
SSH Brute-Force
Anonymous
Repeated inbound connection attempts blocked by firewall. Observed at least twice within 24 hours.
Hacking
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/2375 (2 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-20 00:35:02 UTC Unauthorized activity to TCP port 22. SSH
SSH
๐Ÿ‡ฑ๐Ÿ‡น Selckie
fail2ban: NGINX unusual impact
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/22 (4 or more attempts)
Port Scan

Showing 1 to 15 of 53 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฉ๐Ÿ‡ช 193.124.20.238
๐Ÿ‡ฆ๐Ÿ‡ท 189.90.230.172
๐Ÿ‡ณ๐Ÿ‡ฑ 185.93.89.79
๐Ÿ‡ฆ๐Ÿ‡ท 181.20.126.55
๐Ÿ‡จ๐Ÿ‡ด 177.74.207.73
๐Ÿ‡บ๐Ÿ‡ธ 136.112.32.76
๐Ÿ‡บ๐Ÿ‡ธ 108.162.238.175
๐Ÿ‡ธ๐Ÿ‡ฌ 103.189.235.167
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.31.250.251
๐Ÿ‡จ๐Ÿ‡ฆ 85.217.149.74
๐Ÿ‡จ๐Ÿ‡ณ 49.234.191.200
๐Ÿ‡บ๐Ÿ‡ธ 47.5.147.67
๐Ÿ‡จ๐Ÿ‡ฑ 34.176.66.53
๐Ÿ‡ง๐Ÿ‡ท 34.39.199.59
๐Ÿ‡ง๐Ÿ‡ท 204.157.100.5
๐Ÿ‡ง๐Ÿ‡ช 198.235.24.253
๐Ÿ‡น๐Ÿ‡ท 195.142.175.196
๐Ÿ‡ฒ๐Ÿ‡ฝ 189.190.143.229
๐Ÿ‡ต๐Ÿ‡ฑ 188.212.135.202