171.12.10.89

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
27% Elevated
161 reports
31 reporters ยท latest 1 day ago
ISP CHINANET henan province network
Usage Type Fixed Line ISP
ASN AS4134
Domain Name hntele.com
Country ๐Ÿ‡จ๐Ÿ‡ณ China
City Zhengzhou, Henan

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 171.12.10.89

This IP address has been reported a total of 161 times from 31 distinct sources. 171.12.10.89 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 2 reports; France with 1 report; Serbia with 1 report. The most common categories in these recent reports were: Port Scan 5 times; Hacking 4 times; Web App Attack 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡น๐Ÿ‡ท Domainhizmetleri.com
Source: DH Hunter (Honeypot) | Reason: TLS Handshake Probe (5701/tcp) [non-standard port]
Port Scan Hacking
๐Ÿ‡ท๐Ÿ‡ธ Smel
MH/MP Probe, Scan, Hack -
Port Scan Hacking
Anonymous
denied traffic to a honeypot network. destination port 2162.
Port Scan Hacking
Anonymous
denied traffic to a non-approved destination port. destination port 27007.
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท EvoX
๐Ÿ›ก๏ธ Honeypot [bsts-tpot-sensor]: Empty payload (likely service probe); 2333 [1] TCP
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ sukka
VLESS Client trying to do VPN Domain-Fronting with Cloudflare CDN via a WebSocket Tunnel
Hacking Web App Attack
๐Ÿ‡ง๐Ÿ‡ท SOC Blue Team
Tatic: TA0040 | Technique: T1499 | Source: SIEM | Country Destination: BR
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/10170
Port Scan
Anonymous
denied traffic to a honeypot network. destination port 10175.
Port Scan Hacking
๐Ÿ‡ญ๐Ÿ‡ฐ azminawwar
[171.12.10.89] triggered by honeypot on port [53], Timestamp [2026-07-22T09:15:16Z](no payload)
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/1200
Port Scan
๐Ÿ‡ณ๐Ÿ‡ฑ DonAtari
DShield firewall scan - TCP to port 2107
Brute-Force SSH
๐Ÿ‡ฏ๐Ÿ‡ต mkaraki
1784599139 # Service_probe # SIGNATURE_SEND # source_ip:171.12.10.89 # dst_port:2222 ...
Port Scan
Anonymous
denied traffic to a honeypot network. destination port 2068.
Port Scan Hacking
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (243 bytes of payload); 10082 [1] TCP
Port Scan

Showing 1 to 15 of 161 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ง๐Ÿ‡ช 207.175.197.92
๐Ÿ‡บ๐Ÿ‡ธ 162.216.149.117
๐Ÿ‡บ๐Ÿ‡ฟ 82.215.105.73
๐Ÿ‡ฌ๐Ÿ‡ง 77.67.26.229
๐Ÿ‡บ๐Ÿ‡ธ 68.10.53.73
๐Ÿ‡ธ๐Ÿ‡ฌ 43.133.60.94
๐Ÿ‡จ๐Ÿ‡ณ 36.150.155.62
๐Ÿ‡ฎ๐Ÿ‡ฉ 36.67.227.241
๐Ÿ‡บ๐Ÿ‡ธ 35.196.132.179
๐Ÿ‡บ๐Ÿ‡ธ 34.232.101.92
๐Ÿ‡บ๐Ÿ‡ธ 24.23.125.83
๐Ÿ‡บ๐Ÿ‡ธ 18.226.70.253
๐Ÿ‡ฐ๐Ÿ‡ท 14.32.244.233
๐Ÿ‡ฉ๐Ÿ‡ช 217.181.89.46
๐Ÿ‡ฐ๐Ÿ‡ท 217.142.141.66
๐Ÿ‡บ๐Ÿ‡ธ 199.165.159.38
๐Ÿ‡ณ๐Ÿ‡ฑ 192.253.248.251
๐Ÿ‡ฒ๐Ÿ‡พ 180.74.68.177
๐Ÿ‡ป๐Ÿ‡ณ 171.244.201.80
๐Ÿ‡จ๐Ÿ‡ณ 116.55.245.26