AbuseIPDB » 158.23.48.109
158.23.48.109 was found in our database!
This IP was reported 32 times. Confidence of Abuse is 67%: ?
| ISP | Microsoft Singapore Pte. Ltd. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS8075 |
| Domain Name | microsoft.com |
| Country | ๐ฒ๐ฝ Mexico |
| City | Santiago de Queretaro, Queretaro |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 158.23.48.109:
This IP address has been reported a total of 32 times from 21 distinct sources. 158.23.48.109 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐น๐ท Detmach |
|
Brute-Force | ||
| ๐จ๐ญ TOCE |
30 hits seen on 2026-06-14, ports 1433 (MSSQL) on a honeypot from www.toce.ch
|
Port Scan | ||
| Anonymous |
RdpGuard detected brute-force attempt on MS-SQL
|
Brute-Force | ||
| ๐ซ๐ท โจ |
|
Port Scan Brute-Force | ||
| ๐ซ๐ท โจ |
|
Port Scan Brute-Force | ||
| ๐ซ๐ท โจ |
|
Port Scan Brute-Force | ||
| ๐ซ๐ท โจ |
|
Port Scan Brute-Force | ||
| Anonymous |
RdpGuard detected brute-force attempt on MS-SQL
|
Brute-Force | ||
| ๐จ๐ฟ Petr Dub |
Brute-force attack on MS SQL server, port 1433.
|
Brute-Force | ||
| ๐ซ๐ท zulzeen |
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (RDP/VNC Attack)
|
Brute-Force | ||
| ๐ซ๐ท zulzeen |
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (RDP/VNC Attack)
|
Brute-Force | ||
| ๐ธ๐ฌ drewf.ink |
[21:20] Port scanning. Port(s) scanned: TCP/3389
|
Port Scan | ||
| ๐ธ๐ฌ drewf.ink |
[20:10] Port scanning. Port(s) scanned: TCP/3389
|
Port Scan | ||
| ๐บ๐ธ knock |
Knock-Knock honeypot brute-force: RDP (3 total hits)
|
Brute-Force | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/global-exclusion-high.
|
Port Scan Brute-Force SSH |
Showing 1 to 15 of 32 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ