AbuseIPDB » 27.18.249.138
27.18.249.138 was found in our database!
This IP was reported 56 times. Confidence of Abuse is 100%: ?
| ISP | CHINANET Hubei province network |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS4134 |
| Domain Name | chinatelecom.cn |
| Country | ๐จ๐ณ China |
| City | Wuhan, Hubei |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 27.18.249.138:
This IP address has been reported a total of 56 times from 23 distinct sources. 27.18.249.138 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฆ๐น urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:37914 dst:23
|
Port Scan | ||
| ๐บ๐ธ Xarcotic |
SSH login on honeypot.
|
Brute-Force SSH | ||
| ๐บ๐ธ MPL |
tcp/23 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-06-12 07:10:52 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐ฌ๐ง PeravixGroup |
|
IoT Targeted Brute-Force | ||
| ๐บ๐ธ RAP |
2026-06-11 20:25:10 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/23 (4 or more attempts)
|
Port Scan | ||
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:42791 dst:23
|
Port Scan | ||
| ๐ฌ๐ง PeravixGroup |
|
IoT Targeted Brute-Force | ||
| ๐บ๐ธ RAP |
2026-06-10 12:13:38 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐ฏ๐ต knock |
Knock-Knock honeypot brute-force: Telnet (48 total hits)
|
Brute-Force | ||
| ๐ฌ๐ง PeravixGroup |
|
IoT Targeted Brute-Force | ||
| ๐บ๐ธ MPL |
tcp/23 (4 or more attempts)
|
Port Scan | ||
| ๐ง๐พ sashan |
|
Port Scan |
Showing 1 to 15 of 56 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ