AbuseIPDB » 220.250.11.159
220.250.11.159 was found in our database!
This IP was reported 92 times. Confidence of Abuse is 57%: ?
| ISP | Fuzhou city, fujian provincial network of CNCGROUP |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS4837 |
| Domain Name | wo.com.cn |
| Country | π¨π³ China |
| City | Shanghai, Shanghai |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 220.250.11.159:
This IP address has been reported a total of 92 times from 24 distinct sources. 220.250.11.159 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| π¬π§ gbzret4d |
Honeypot [uk-production01]: Unauthorized traffic (16 bytes of payload); 12380 [1] TCP
|
Port Scan | ||
| πΊπΈ sumnone |
Port probing on unauthorized port 18000
|
Port Scan Hacking Exploited Host | ||
| Anonymous |
PROTO=TCP DPT=3052
|
Port Scan Hacking | ||
| πΊπΈ RAP |
2026-06-13 01:35:13 UTC Unauthorized activity to TCP port 3306.
|
Port Scan | ||
| π©πͺ femboy.cat |
Port scan to tcp/30001 from 220.250.11.159
|
Brute-Force | ||
| π¬π§ PeravixGroup |
|
Hacking Exploited Host | ||
| πΊπΈ xmission.com |
|
Port Scan | ||
| πΊπΈ MPL |
tcp/12202
|
Port Scan | ||
| πΊπΈ [email protected] |
Ports: 3390. Proto: TCP. Observations: 1
|
Port Scan | ||
| π¨π³ ThreatBook.io |
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/220.250.11.159
|
SSH | ||
| π¬π§ PeravixGroup |
|
IoT Targeted Hacking | ||
| π¬π§ venus.launch.bz |
(gohttpua) Bad UA Go-http-client from 220.250.11.159 (CN/China/-)
|
Hacking | ||
| π²π³ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 8504 [1] TCP
|
Port Scan | ||
| πΊπΈ sumnone |
Port probing on unauthorized port 2048
|
Port Scan Hacking Exploited Host | ||
| π¬π§ PeravixGroup |
HoneyPot hit - Aaran.cloud | Web Scan | web exploitation | USER anonymous
|
Web App Attack |
Showing 1 to 15 of 92 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©