AbuseIPDB » 180.158.52.59

180.158.52.59 was found in our database!

This IP was reported 19 times. Confidence of Abuse is 58%: ?

58%
ISP CHINANET SHANGHAI PROVINCE NETWORK
Usage Type Fixed Line ISP
ASN AS4812
Domain Name chinatelecom.cn
Country πŸ‡¨πŸ‡³ China
City Shanghai, Shanghai

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 180.158.52.59:

This IP address has been reported a total of 19 times from 13 distinct sources. 180.158.52.59 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡·πŸ‡Έ Scan
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan Hacking
πŸ‡ΊπŸ‡Έ cwytech
Fleet-wide ban from the Ghostfleet πŸ‘». Triggered by scenario: cwy/global-exclusion-high.
Hacking
πŸ‡«πŸ‡· zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (SMB/Possible Ransomware Attack)
Hacking Brute-Force
πŸ‡«πŸ‡· zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (SMB/Possible Ransomware Attack)
Hacking Brute-Force
πŸ‡«πŸ‡· sthoyer.de
Port Scan
πŸ‡³πŸ‡± EGP Abuse Dept
Unsolicited connection to port 445
Port Scan Hacking
πŸ‡«πŸ‡· Entalpi.net
Tried to hit sensible closed port commonly used in attacks
Port Scan Hacking
πŸ‡ΊπŸ‡Έ Cyber Crusader
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
Port Scan Hacking Brute-Force
πŸ‡©πŸ‡ͺ Tsumugi Kotobuki
Port Scan Hacking
πŸ‡«πŸ‡· geeek
Port scanning: 445 TCP Blocked
Port Scan
πŸ‡«πŸ‡· zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (SMB/Possible Ransomware Attack)
Hacking Brute-Force
πŸ‡©πŸ‡ͺ Justin F. | AS204464
Honeypot [nx-infrastructure]: SMB traffic on port 445 Reported by: Justin F.
Hacking
πŸ‡©πŸ‡ͺ IP Analyzer
Unauthorized connection attempt from IP address 180.158.52.59 on Port 445(SMB)
Port Scan
πŸ‡«πŸ‡· zulzeen
[incypit-web] Blocked by SysWarden Firewall [GEO] (SMB/Possible Ransomware Attack)
Hacking Brute-Force
Anonymous
Unauthorized access (445/tcp/microsoft-ds)
Port Scan

Showing 1 to 15 of 19 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡³πŸ‡± 185.242.226.19
πŸ‡¨πŸ‡³ 58.222.72.182
πŸ‡«πŸ‡· 51.254.130.161
πŸ‡ΊπŸ‡Έ 4.246.135.193
πŸ‡«πŸ‡· 193.251.86.36
πŸ‡§πŸ‡· 187.108.1.135
πŸ‡­πŸ‡° 118.193.44.22
πŸ‡¨πŸ‡³ 117.72.212.5
πŸ‡»πŸ‡³ 103.200.25.198
πŸ‡³πŸ‡± 91.92.42.34
πŸ‡ΊπŸ‡Έ 74.125.113.155
πŸ‡ΊπŸ‡Έ 71.77.109.51
πŸ‡©πŸ‡ͺ 69.5.169.36
πŸ‡¨πŸ‡³ 60.25.68.82
πŸ‡ΊπŸ‡Έ 57.151.106.164
πŸ‡§πŸ‡ͺ 198.235.24.179
πŸ‡ΊπŸ‡Έ 192.169.201.223
πŸ‡§πŸ‡· 179.182.75.68
πŸ‡§πŸ‡· 179.179.199.69
πŸ‡¨πŸ‡¦ 168.138.90.7