AbuseIPDB » 148.227.69.28
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 148.227.69.28:
This IP address has been reported a total of 10 times from 10 distinct sources. 148.227.69.28 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 3 reports; France with 2 reports; Germany with 1 report. The most common categories in these recent reports were: Port Scan 4 times; Brute-Force 2 times; SSH 2 times; Web App Attack 1 time; Bad Web Bot 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| Anonymous |
denied SSH access attempt. destination port 22.
|
Port Scan Brute-Force SSH | ||
| 🇹🇷 SeczarSecureOps |
|
Web App Attack | ||
| 🇫🇷 gianluca.demartino75 |
|
Brute-Force SSH | ||
| 🇺🇸 MPL |
tcp ports: 22,23 (2 or more attempts)
|
Port Scan | ||
| 🇫🇷 security.rdmc.fr |
Port Scan Attack proto:TCP src:57589 dst:23
|
Port Scan | ||
| 🇺🇸 RAP |
2026-08-22 12:14:31 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| 🇺🇸 gui-ying233 |
|
Bad Web Bot | ||
| 🇨🇦 polycoda |
🥶 Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
|
DDoS Attack | ||
| 🇨🇳 ThreatBook.io |
ThreatBook Intelligence: Edu more details on http://threatbook.io/ip/148.227.69.28
|
SSH | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack |
Showing 1 to 10 of 10 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩