AbuseIPDB » 120.48.4.164
120.48.4.164 was found in our database!
This IP was reported 306 times. Confidence of Abuse is 79%: ?
| ISP | Beijing Baidu Netcom Science and Technology Co., Ltd. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS38365 |
| Domain Name | baidu.com |
| Country | ๐จ๐ณ China |
| City | Beijing, Beijing |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 120.48.4.164:
This IP address has been reported a total of 306 times from 23 distinct sources. 120.48.4.164 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ซ๐ฎ ValtonTahiri |
|
Port Scan Brute-Force | ||
| ๐ฉ๐ช Freenex1911 |
2026-05-21T03:54:14Z - RDP login from 120.48.4.164 failed multiple times.
|
Brute-Force | ||
| ๐ฏ๐ต knock |
Knock-Knock honeypot brute-force: RDP (137 total hits)
|
Brute-Force | ||
| ๐บ๐ธ Neosmith20 |
Knock-Knock honeypot brute-force: RDP (60 total hits)
|
Brute-Force | ||
| ๐บ๐ธ ShadowWhisperer |
intrusion - rdp [remote]
|
Brute-Force Hacking | ||
| ๐ซ๐ท โจ |
|
SSH Brute-Force | ||
| ๐จ๐ญ TOCE |
30 hits seen on 2026-05-20, ports 3389 (RDP) on a honeypot from www.toce.ch
|
Brute-Force | ||
| ๐บ๐ธ ShadowWhisperer |
intrusion - remote [vnc, remote]
|
Brute-Force Hacking | ||
| ๐ณ๐ฑ knock |
Knock-Knock honeypot brute-force: RDP (163 total hits)
|
Brute-Force | ||
| ๐บ๐ธ Neosmith20 |
Knock-Knock honeypot brute-force: RDP (55 total hits)
|
Brute-Force | ||
| ๐ฏ๐ต knock |
Knock-Knock honeypot brute-force: RDP (132 total hits)
|
Brute-Force | ||
| ๐ณ๐ฑ knock |
Knock-Knock honeypot brute-force: RDP (161 total hits)
|
Brute-Force | ||
| ๐จ๐ญ TOCE |
28 hits seen on 2026-05-19, ports 3389 (RDP) on a honeypot from www.toce.ch
|
Brute-Force | ||
| ๐บ๐ธ ShadowWhisperer |
intrusion - remote [vnc, remote]
|
Brute-Force Hacking | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/global-exclusion-high.
|
Port Scan Brute-Force SSH |
Showing 121 to 135 of 306 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ