AbuseIPDB » 180.173.123.113
180.173.123.113 was found in our database!
This IP was reported 82 times. Confidence of Abuse is 100%: ?
| ISP | CHINANET SHANGHAI PROVINCE NETWORK |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS4812 |
| Domain Name | chinatelecom.cn |
| Country | π¨π³ China |
| City | Shanghai, Shanghai |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 180.173.123.113:
This IP address has been reported a total of 82 times from 37 distinct sources. 180.173.123.113 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| π·πΈ Scan |
MultiHost/MultiPort Probe, Scan, Hack -
|
Port Scan Hacking | ||
| π·πΈ Smel |
SQL/MH Probe, Scan, Hack -
|
Port Scan Hacking SQL Injection | ||
| π¦πΉ begou.dev |
[Threat Intelligence] Port Scanning and/or Unauthorized access -> TCP/445
|
Port Scan | ||
| π¨π¦ smick |
Brute-force attack.
|
Brute-Force | ||
| πΊπΈ RAP |
2026-06-17 07:39:24 UTC Unauthorized activity to TCP port 1433. SQL
|
Port Scan | ||
| π¦πΉ urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| πΈπ¬ drewf.ink |
[21:09] Port scanning. Port(s) scanned: TCP/1433
|
Port Scan | ||
| π¦πΉ urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| π©πͺ iNetWorker |
trying to access non-authorized port
|
Port Scan | ||
| πΊπΈ Robert Gilliam |
Port scan / honeypot hit on ny.robgilm.com
|
Port Scan | ||
| π¬π§ gbzret4d |
Honeypot [uk-production01]: MSSQL traffic (on 1433) with username sa and empty password
|
Brute-Force | ||
| π·πΈ Smel |
SQL/MH Probe, Scan, Hack -
|
Port Scan Hacking SQL Injection | ||
| πΈπ¬ drewf.ink |
[03:45] Triggered SMB honeypot on port 445. Type: NetBIOS + SMB1. Dialect(s): NT LM 0.12
|
Hacking Exploited Host | ||
| π¦πΉ urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| π«π· geeek |
Port scanning: 445 TCP Blocked
|
Port Scan |
Showing 1 to 15 of 82 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©