AbuseIPDB » 220.197.85.48
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 220.197.85.48:
This IP address has been reported a total of 82 times from 39 distinct sources. 220.197.85.48 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 24 reports; Germany with 9 reports; United Kingdom of Great Britain and Northern Ireland with 7 reports. The most common categories in these recent reports were: Port Scan 43 times; Hacking 16 times; Bad Web Bot 5 times; Web App Attack 3 times; Brute-Force 3 times; Other 3 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇰🇷 winter |
Connection attemp from 220.197.85.48 to port 22
|
Brute-Force SSH | ||
| 🇺🇸 MPL |
tcp/1080
|
Port Scan | ||
| 🇹🇷 han35 |
ProtocolSecure WAF: Tehdit seviyesi HOSTILE: Dağıtık saldırı parmak izi (threat_score=210)
|
Bad Web Bot DDoS Attack | ||
| Anonymous |
|
Port Scan | ||
| 🇩🇪 kingjan1999 |
|
Port Scan | ||
| 🇺🇸 donarev419 |
Connection to port 9530 with data transfer.
Data preview: USER anonymous
|
Port Scan Hacking | ||
| 🇺🇸 MPL |
tcp/60010 (2 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/8800
|
Port Scan | ||
| 🇲🇳 Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 7474 [1] TCP
|
Port Scan | ||
| 🇬🇧 sandra361 |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/8080 (2 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/2541 (2 or more attempts)
|
Port Scan | ||
| 🇬🇧 sandra361 |
|
Port Scan | ||
| 🇫🇷 EvoX |
🛡️ Honeypot [bsts-tpot-sensor]: HTTP/1.1 request on 19080
GET /
Accept: */*; 19080 [1] TCP
|
Hacking Bad Web Bot | ||
| 🇺🇸 MPL |
tcp/8161 (2 or more attempts)
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩