AbuseIPDB » 220.197.85.50
220.197.85.50 was found in our database!
This IP was reported 57 times. Confidence of Abuse is 72%: ?
| ISP | China Unicom |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS4837 |
| Domain Name | chinaunicom.cn |
| Country | ๐จ๐ณ China |
| City | Guiyang, Guizhou |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 220.197.85.50:
This IP address has been reported a total of 57 times from 25 distinct sources. 220.197.85.50 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ท๐ธ Scan |
MultiHost/MultiPort Probe, Scan, Hack -
|
Port Scan Hacking | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Large payload (1388 bytes); 7823 [1] TCP
|
Hacking | ||
| ๐บ๐ธ MPL |
tcp/2013 (2 or more attempts)
|
Port Scan | ||
| ๐ฎ๐ณ [email protected] |
MikroTik Enterprise Honeypot
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 7130 [1] TCP
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/9191 (2 or more attempts)
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: HTTP/1.1 request on 6305
GET /
Accept: */*; 6305 [1] TCP
|
Web App Attack | ||
| ๐ฌ๐ง Net Storm |
|
Port Scan Brute-Force IoT Targeted | ||
| ๐บ๐ธ MPL |
tcp/7090 (2 or more attempts)
|
Port Scan | ||
| ๐ต๐ฑ sefinek.net |
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/9200 (2 or more attempts)
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 49158 [1] TCP
|
Port Scan | ||
| ๐บ๐ธ sukka |
VLESS Client trying to do VPN Domain-Fronting with Cloudflare CDN via a WebSocket Tunnel
|
Hacking Web App Attack | ||
| ๐ฉ๐ช Admins@FBN |
FW-PortScan: Traffic Blocked srcport=50937 dstport=10131
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 13380 [1] TCP
|
Port Scan |
Showing 1 to 15 of 57 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ