AbuseIPDB » 223.166.22.149
223.166.22.149 was found in our database!
This IP was reported 208 times. Confidence of Abuse is 65%: ?
| ISP | CHINA UNICOM Shanghai city network |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS17621 |
| Domain Name | chinaunicom.cn |
| Country | ๐จ๐ณ China |
| City | Shanghai, Shanghai |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 223.166.22.149:
This IP address has been reported a total of 208 times from 56 distinct sources. 223.166.22.149 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ง๐พ StatsMe |
2026-04-10T11:09:52.260636+0300
ET SCAN NMAP -sS window 1024
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 6969 [1] TCP
|
Port Scan | ||
| ๐จ๐ณ ThreatBook.io |
|
Web App Attack | ||
| ๐จ๐ณ ThreatBook.io |
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/223.166.22.149
|
SSH | ||
| ๐บ๐ธ drewf.ink |
[17:40] Port scanning. Port(s) scanned: TCP/10000
|
Port Scan | ||
| ๐ฆ๐ท Bruno |
Port Scanner: 223.166.22.149
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Unauthorized traffic (16 bytes of payload); 1330 [1] TCP
|
Port Scan | ||
| ๐ฏ๐ต mkaraki |
1774789044 # Service_probe # SIGNATURE_SEND # source_ip:223.166.22.149 # dst_port:40005
...
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 11110 [1] TCP
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/9943 (2 or more attempts)
|
Port Scan | ||
| ๐ฉ๐ช centurion |
|
Port Scan | ||
| ๐ฌ๐ง gbzret4d |
Honeypot [uk-production01]: HTTP/1.1 request on 10208
GET /
Accept: */*; 10208 [1] TCP
|
Hacking Bad Web Bot | ||
| Anonymous |
|
Port Scan Brute-Force | ||
| ๐บ๐ธ MPL |
tcp/1024
|
Port Scan | ||
| ๐ณ๐ฑ soverin |
Network scan on port 80
|
Email Spam |
Showing 31 to 45 of 208 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ