AbuseIPDB » 128.1.120.222
128.1.120.222 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 23% : ?
ISP
Zenlayer Inc
Usage Type
Data Center/Web Hosting/Transit
ASN
AS62610
Domain Name
zenlayer.com
Country
๐ฉ๐ช
Germany
City
Frankfurt am Main, Hesse
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 128.1.120.222 :
This IP address has been reported a total of
6
times from
3 distinct
sources.
128.1.120.222 was first reported on
June 2nd 2026 , and the most recent report was
19 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
bigorre.org
2026-06-21 15:36:48
(19 hours ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ฉ๐ช
pltcldvlpr
2026-06-21 01:08:55
(1 day ago)
Bogus Useragent: 128.1.120.222 - - [21/Jun/2026:03:08:54 +0200] "GET /protocol?id=rp_18_90&offset=95 ...
show more
Bogus Useragent: 128.1.120.222 - - [21/Jun/2026:03:08:54 +0200] "GET /protocol?id=rp_18_90&offset=950&seq=1009 HTTP/1.1" 444 0 "-" "Opera/8.10.(X11; Linux i686; hu-HU) Presto/2.9.165 Version/11.00" asn=62610 org="Zenlayer Inc" country=IN
...
show less
Bad Web Bot
๐ฉ๐ช
london2038.com
2026-06-14 07:10:19
(1 week ago)
Connection atttempts against closed TCP ports
Jun 14 09:10:07 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x0 ...
show more
Connection atttempts against closed TCP ports
Jun 14 09:10:07 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=44264 DPT=443 WINDOW=0 RES=0x00 RST
Jun 14 09:10:11 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=44264 DPT=443 WINDOW=0 RES=0x00 RST
Jun 14 09:10:18 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=44264 DPT=443 WINDOW=0 RES=0x00 RST
show less
Port Scan
๐ฉ๐ช
london2038.com
2026-06-04 17:07:21
(2 weeks ago)
Connection atttempts against closed TCP ports
Jun 4 19:07:19 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x0 ...
show more
Connection atttempts against closed TCP ports
Jun 4 19:07:19 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=34288 DPT=443 WINDOW=0 RES=0x00 RST
Jun 4 19:07:20 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=34288 DPT=443 WINDOW=0 RES=0x00 RST
Jun 4 19:07:21 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=34288 DPT=443 WINDOW=0 RES=0x00 RST
show less
Port Scan
๐ฉ๐ช
london2038.com
2026-06-03 21:42:06
(2 weeks ago)
Connection atttempts against closed TCP ports
Jun 3 23:42:02 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x0 ...
show more
Connection atttempts against closed TCP ports
Jun 3 23:42:02 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=49812 DPT=443 WINDOW=0 RES=0x00 RST
Jun 3 23:42:03 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=49812 DPT=443 WINDOW=0 RES=0x00 RST
Jun 3 23:42:05 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x20 TTL=52 ID=0 DF PROTO=TCP SPT=49812 DPT=443 WINDOW=0 RES=0x00 RST
show less
Port Scan
๐ฉ๐ช
london2038.com
2026-06-02 16:22:07
(2 weeks ago)
Connection atttempts against closed TCP ports
Jun 2 18:22:05 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x0 ...
show more
Connection atttempts against closed TCP ports
Jun 2 18:22:05 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=48574 DPT=443 WINDOW=0 RES=0x00 RST
Jun 2 18:22:06 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=48574 DPT=443 WINDOW=0 RES=0x00 RST
Jun 2 18:22:06 BLOCK SRC=128.1.120.222 LEN=40 TOS=0x08 PREC=0x00 TTL=52 ID=0 DF PROTO=TCP SPT=48574 DPT=443 WINDOW=0 RES=0x00 RST
show less
Port Scan
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: