AbuseIPDB » 212.5.48.202
212.5.48.202 was found in our database!
This IP was reported 231 times. Confidence of Abuse is 84%: ?
| ISP | Sofia Connect EAD |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS47872 |
| Domain Name | sofia-connect.net |
| Country | ๐ง๐ฌ Bulgaria |
| City | Sofia, Sofia-Capital |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 212.5.48.202:
This IP address has been reported a total of 231 times from 57 distinct sources. 212.5.48.202 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐บ๐ธ drewf.ink |
[03:30] Attempted telnet login with credentials default:d*****t
|
Brute-Force IoT Targeted | ||
| ๐บ๐ธ RAP |
2026-08-24 00:21:27 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐ฆ๐ท Bruno |
Port Scanner: 212.5.48.202
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/23 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/23 (6 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ cwytech |
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/pf-geofence-high.
|
Hacking | ||
| ๐บ๐ธ RAP |
2026-08-21 23:28:04 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| Anonymous |
denied Telnet access attempt. destination port 23.
|
Port Scan Brute-Force | ||
| ๐บ๐ธ IndigoRidge |
Knock-Knock TNET honeypot activity; time=2026-08-21 01:17:20; username=admin
|
Brute-Force | ||
| ๐ซ๐ท Zkillu |
|
DDoS Attack Exploited Host | ||
| ๐ซ๐ท dmallet |
|
DDoS Attack Exploited Host | ||
| ๐บ๐ธ RAP |
2026-08-18 21:22:07 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐บ๐ธ kosada.com |
Web bot: DDoS
|
DDoS Attack Bad Web Bot | ||
| ๐ฆ๐น urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:46588 dst:23
|
Port Scan |
Showing 1 to 15 of 231 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ