This IP address has been reported a total of
68
times from
41 distinct
sources.
31.148.206.199 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
denied traffic to a honeypot network. destination port 23.
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show moreMozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less
UDP flood (DDoS) vs AS215599: 483 pkts / 0.69 MB to UDP 8443 across 159 dst IP(s), 2026-08-19 21:46 ...
show moreUDP flood (DDoS) vs AS215599: 483 pkts / 0.69 MB to UDP 8443 across 159 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
UDP flood (DDoS) vs AS215599: 483 pkts / 0.69 MB to UDP 8443 across 159 dst IP(s), 2026-08-19 21:46 ...
show moreUDP flood (DDoS) vs AS215599: 483 pkts / 0.69 MB to UDP 8443 across 159 dst IP(s), 2026-08-19 21:46 to 2026-08-20 00:36 CEST. No legitimate service on these UDP ports (7-day baseline 0 GB/day). Carpet-bombing of a /24, likely botnet-compromised host. Evidence: sFlow + hardware ACL counters.
show less
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less
Honeypot [fra-de-honeypot]: Unauthorized connection attempt detected on 23/TELNET
Reported by DisPai ...
show moreHoneypot [fra-de-honeypot]: Unauthorized connection attempt detected on 23/TELNET
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less
[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN s ...
show more[v6-22] Firewall dropped 4 unsolicited packet(s) proto=tcp to port(s) 22 from 31.148.206.199 โ WAN scan (automated sensor)
show less