124.31.104.9
| ISP | CHINANET Xizang(Tibet) province network |
|---|---|
| Usage Type | Mobile ISP |
| ASN | AS4134 |
| Domain Name | chinatelecom.cn |
| Country | ๐จ๐ณ China |
| City | Lhasa, Tibet |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 124.31.104.9
This IP address has been reported a total of 106 times from 41 distinct sources. 124.31.104.9 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 3 reports; Mongolia with 2 reports; Turkey with 2 reports. The most common categories in these recent reports were: Port Scan 7 times; Hacking 2 times; Brute-Force 2 times; SSH 1 time; Bad Web Bot 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| Anonymous |
denied traffic to a honeypot network. destination port 1129.
|
Port Scan Hacking | ||
| ๐ฉ๐ช pltcldvlpr |
|
Bad Web Bot | ||
| ๐ฉ๐ช _ArminS_ |
SP-Scan 32564:6379 detected 2026.10.04 23:47:38
blocked until 2026.11.23 15:50:25
|
Port Scan | ||
| ๐น๐ท Domainhizmetleri.com |
Source: DH Hunter (Honeypot) | Reason: TLS Handshake Probe (12226/tcp) [non-standard port]
|
Port Scan Hacking | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 10371 [1] TCP
|
Port Scan | ||
| ๐ฏ๐ต HeliJP |
Unauthorized connection attempt from IP address 124.31.104.9 on port 587
|
Port Scan Brute-Force | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Unauthorized traffic (16 bytes of payload); 7788 [1] TCP
|
Port Scan | ||
| ๐ฆ๐บ LiftUp Hosting |
Honeypot hit: Empty payload (likely service probe); 1311 [1] TCP
|
Port Scan | ||
| ๐น๐ท Squearex |
Automated ban by SCUMUnified Shield. Honeypot Trap Triggered (Decoy Port 6379)
|
Brute-Force SSH | ||
| ๐ฉ๐ช Admins@FBN |
FW-PortScan: Traffic Blocked srcport=40503 dstport=1900
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/20014 (2 or more attempts)
|
Port Scan | ||
| ๐ฉ๐ช Admins@FBN |
FW-PortScan: Traffic Blocked srcport=50393 dstport=8182
|
Port Scan | ||
| Anonymous |
Suspicious or malicious traffic has been detected
|
Web App Attack | ||
| ๐บ๐ธ xmission.com |
|
Port Scan | ||
| ๐ซ๐ท EvoX |
๐ก๏ธ Honeypot [bsts-tpot-hive]: Empty payload (likely service probe); 50000 [1] TCP
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ