AbuseIPDB » 204.16.112.187

204.16.112.187 was found in our database!

This IP was reported 13 times. Confidence of Abuse is 68%: ?

68%
ISP Cable & Wireless Antigua and Barbuda Ltd
Usage Type Fixed Line ISP
ASN AS14813
Domain Name candw.ag
Country ๐Ÿ‡ฆ๐Ÿ‡ฌ Antigua and Barbuda
City Saint John's, Saint John Parish

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 204.16.112.187:

This IP address has been reported a total of 13 times from 11 distinct sources. 204.16.112.187 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ฆ๐Ÿ‡น urnilxfgbez
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช andrepcg
Port scanning (204.16.112.187 -> :23)
Port Scan Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ wbsouza
CrowdSec: infra/ssh22-probe โ€” automated firewall drops on self-hosted IDS sensor
SSH Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ NetVexor
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan Hacking Brute-Force
Anonymous
Network service scanning detected by FortiGate; source quarantined.
Port Scan
๐Ÿ‡ฆ๐Ÿ‡น urnilxfgbez
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท zulzeen
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (Telnet IoT Attack)
IoT Targeted Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 23,22 (8 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-08-31 13:25:49 UTC Unauthorized activity to TCP port 22. SSH
SSH
Anonymous
denied Telnet access attempt. destination port 23.
Port Scan Brute-Force
Anonymous
Repeated unauthorized connection attempts to restricted service observed.
Port Scan Hacking Brute-Force Bad Web Bot Web App Attack SSH
๐Ÿ‡บ๐Ÿ‡ธ cwytech
Fleet-wide ban from the Ghostfleet ๐Ÿ‘ป. Triggered by scenario: cwy/pf-geofence-high.
Hacking
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/23 (4 or more attempts)
Port Scan

Showing 1 to 13 of 13 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ณ๐Ÿ‡ฑ 2a00:1450:4013:c20::120
๐Ÿ‡ณ๐Ÿ‡ฑ 185.223.235.16
๐Ÿ‡บ๐Ÿ‡ธ 142.251.107.102
๐Ÿ‡ณ๐Ÿ‡ฑ 81.19.216.87
๐Ÿ‡ฌ๐Ÿ‡ง 5.252.83.159
๐Ÿ‡บ๐Ÿ‡ธ 216.180.246.242
๐Ÿ‡ง๐Ÿ‡ช 198.235.24.224
๐Ÿ‡ฌ๐Ÿ‡ง 195.206.182.206
๐Ÿ‡บ๐Ÿ‡ธ 194.104.8.53
๐Ÿ‡ฌ๐Ÿ‡ง 193.176.29.9
๐Ÿ‡ฌ๐Ÿ‡ง 193.32.209.238
๐Ÿ‡ง๐Ÿ‡ท 186.216.49.94
๐Ÿ‡ฒ๐Ÿ‡ฉ 178.168.86.103
๐Ÿ‡ฎ๐Ÿ‡ณ 161.248.37.160
๐Ÿ‡ญ๐Ÿ‡ฐ 156.225.1.102
๐Ÿ‡ง๐Ÿ‡พ 86.57.172.107
๐Ÿ‡ธ๐Ÿ‡ฌ 47.82.201.62
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.59
๐Ÿ‡ฌ๐Ÿ‡ง 5.226.140.3
๐Ÿ‡ฟ๐Ÿ‡ผ 197.221.232.44