AbuseIPDB » 182.138.158.148
182.138.158.148 was found in our database!
This IP was reported 505 times. Confidence of Abuse is 70%: ?
| ISP | CHINANET Sichuan province network |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS4134 |
| Domain Name | sctel.com.cn |
| Country | π¨π³ China |
| City | Chengdu, Sichuan |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 182.138.158.148:
This IP address has been reported a total of 505 times from 116 distinct sources. 182.138.158.148 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| πΊπΈ RAP |
2026-06-05 09:27:21 UTC Unauthorized activity to TCP port 3306.
|
Port Scan | ||
| π¬π§ PeravixGroup |
|
Hacking Exploited Host | ||
| π«π· ELYAZ |
(y3) Failed access -byebye- from 182.138.158.148 (CN/China/-): (CF_ENABLE)
|
Hacking | ||
| π¬π§ PeravixGroup |
|
Port Scan Bad Web Bot | ||
| πΊπΈ MPL |
tcp/8086 (2 or more attempts)
|
Port Scan | ||
| π¬π§ PeravixGroup |
|
Hacking Exploited Host | ||
| π¬π§ PeravixGroup |
|
Hacking Exploited Host | ||
| πΊπΈ MPL |
tcp/8129 (2 or more attempts)
|
Port Scan | ||
| π©πͺ David Ferneding |
|
Port Scan | ||
| π―π΅ mkaraki |
1779483218 # Service_probe # SIGNATURE_SEND # source_ip:182.138.158.148 # dst_port:443
...
|
Port Scan | ||
| π©πͺ guldkage |
Unauthorized connection attempt detected from IP address 182.138.158.148 to port 21 (ger-02) [FTP]
|
Exploited Host | ||
| π²π³ Public CSIRT/CC of Mongolia |
Honeypot hit: Unauthorized traffic (16 bytes of payload); 11467 [1] TCP
|
Port Scan | ||
| π©πͺ femboy.cat |
Port scan to tcp/2002 from 182.138.158.148
|
Brute-Force | ||
| πΏπ¦ slartybartfast69420blazit |
Fail2ban picked up 182.138.158.148 attacking nginx
|
Web App Attack | ||
| πΏπ¦ slartybartfast69420blazit |
Fail2ban picked up 182.138.158.148 attacking nginx
|
Web App Attack |
Showing 1 to 15 of 505 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©