120.48.192.124

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
75 reports
60 reporters ยท latest 1 hour ago
ISP Beijing Baidu Netcom Science and Technology Co., Ltd.
Usage Type Data Center/Web Hosting/Transit
ASN AS38365
Domain Name baidu.com
Country ๐Ÿ‡จ๐Ÿ‡ณ China
City Guangzhou, Guangdong

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 120.48.192.124

This IP address has been reported a total of 75 times from 60 distinct sources. 120.48.192.124 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 16 reports; United States of America with 10 reports; France with 8 reports. The most common categories in these recent reports were: SSH 58 times; Brute-Force 50 times; Port Scan 18 times; Hacking 5 times; Web App Attack 2 times; Other 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ฉ๐Ÿ‡ช ghostwarriors
Unauthorized connection attempt detected, SSH Brute-Force
Brute-Force Port Scan SSH
๐Ÿ‡ฉ๐Ÿ‡ช Ilop
[hp-100] 4 unsolicited packets to honeypot ports 22 (OCI DShield sensor)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช ryzenx3d
Automated report from an SSH honeypot: successful password authentication
Brute-Force
๐Ÿ‡ซ๐Ÿ‡ท Kejult
Port Scan
๐Ÿ‡จ๐Ÿ‡ญ m_vlasov
SSH/Telnet honeypot: 0 login attempts, 2 sessions, 0 shell commands.
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช localhost-admin
Unauthorized connection attempt detected, SSH Brute-Force
Brute-Force SSH
๐Ÿ‡ง๐Ÿ‡ช sid3windr
SSH port scan (Tarpitted for 20s, wasted 16B)
Port Scan SSH
๐Ÿ‡ง๐Ÿ‡ฌ MazenHost
Brute-Force SSH
๐Ÿ‡ฒ๐Ÿ‡พ dchu096
Brute-Force SSH
๐Ÿ‡ซ๐Ÿ‡ท Kejult
Hacking SSH
๐Ÿ‡บ๐Ÿ‡ธ adnscom.net
IPS trigger: Brute force SSH scanning/attack
Brute-Force SSH
๐Ÿ‡ซ๐Ÿ‡ฎ FlamingMojo
Cowrie Honeypot: Unauthorised SSH/Telnet login attempt with user "root" at 2026-10-05T00:55:33Z
Brute-Force SSH
๐Ÿ‡ฉ๐Ÿ‡ช IloGus
SSH abuse or brute-force attack detected by Fail2Ban in ssh jail
Brute-Force SSH
๐Ÿ‡ซ๐Ÿ‡ท EvoX
๐Ÿ›ก๏ธ Honeypot [bsts-tpot-sensor]: Empty payload (likely service probe); 22222 [1] TCP
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช Shadowcloud
Unauthorized SSH connection attempt detected / 3 attempts (via Fail2Ban)
Port Scan Brute-Force SSH

Showing 1 to 15 of 75 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡บ๐Ÿ‡ธ 216.180.246.82
๐Ÿ‡ง๐Ÿ‡ท 205.210.31.223
๐Ÿ‡ณ๐Ÿ‡ฑ 193.47.62.69
๐Ÿ‡ง๐Ÿ‡ท 187.0.233.25
๐Ÿ‡จ๐Ÿ‡ณ 171.34.139.222
๐Ÿ‡ญ๐Ÿ‡ฐ 162.158.193.115
๐Ÿ‡บ๐Ÿ‡ธ 139.144.239.185
๐Ÿ‡จ๐Ÿ‡ณ 47.96.114.41
๐Ÿ‡ฟ๐Ÿ‡ฒ 41.63.16.65
๐Ÿ‡จ๐Ÿ‡ณ 223.76.108.98
๐Ÿ‡ฎ๐Ÿ‡ฉ 203.175.125.203
๐Ÿ‡น๐Ÿ‡ณ 197.8.213.29
๐Ÿ‡บ๐Ÿ‡ธ 185.243.5.243
๐Ÿ‡ฉ๐Ÿ‡ช 185.220.101.154
๐Ÿ‡ญ๐Ÿ‡ฐ 162.158.114.175
๐Ÿ‡จ๐Ÿ‡ณ 150.158.151.75
๐Ÿ‡ฆ๐Ÿ‡ท 138.204.159.188
๐Ÿ‡จ๐Ÿ‡ณ 115.190.229.117
๐Ÿ‡ณ๐Ÿ‡ฑ 109.107.186.106
๐Ÿ‡ง๐Ÿ‡ฉ 103.159.2.113