42.185.57.172

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
106 reports
44 reporters Β· latest 2 days ago
ISP CHINANET HEILONGJIANG PROVINCE NETWORK
Usage Type Fixed Line ISP
ASN AS4134
Domain Name chinatelecom.cn
Country πŸ‡¨πŸ‡³ China
City Harbin, Heilongjiang

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 42.185.57.172

This IP address has been reported a total of 106 times from 44 distinct sources. 42.185.57.172 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 52 reports; Germany with 17 reports; France with 13 reports. The most common categories in these recent reports were: Port Scan 98 times; Brute-Force 16 times; Hacking 15 times; IoT Targeted 7 times; Exploited Host 1 time; Other 2 times.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡¦πŸ‡· Bruno
Port Scanner: 42.185.57.172
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-19 14:02:23 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-19 10:48:40 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡«πŸ‡· EDSL
[SRV-VPN1] Blocked by SysWarden Firewall (Telnet IoT Attack)
Brute-Force IoT Targeted Port Scan
πŸ‡ΊπŸ‡Έ mibbsdevs
(ric-sv) CoffeePot: Connection attempt detected on closed service bait ports (22/23/3306/3389/5432).
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-19 04:26:21 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡ΊπŸ‡Έ xmission.com
Port Scan Hacking Brute-Force
πŸ‡ΊπŸ‡Έ RAP
2026-09-18 22:08:51 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp/23 (2 or more attempts)
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-18 18:41:59 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡©πŸ‡ͺ Jochen Pretli
connection to honeypot
Email Spam Port Scan
πŸ‡«πŸ‡· security.rdmc.fr
Port Scan Attack proto:TCP src:35667 dst:23
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-18 14:34:03 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πŸ‡¦πŸ‡Ή hxsain
Port Scan IoT Targeted
Anonymous
Port Scan IoT Targeted

Showing 1 to 15 of 106 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡ΉπŸ‡­ 203.150.107.87
πŸ‡³πŸ‡± 109.160.32.36
πŸ‡·πŸ‡Ί 212.164.26.25
πŸ‡«πŸ‡· 185.177.72.67
πŸ‡©πŸ‡ͺ 178.105.200.202
πŸ‡ΊπŸ‡Έ 162.216.149.48
πŸ‡¨πŸ‡¦ 159.203.33.46
πŸ‡ΊπŸ‡Έ 152.32.208.150
πŸ‡ΈπŸ‡¬ 139.99.69.82
πŸ‡ΊπŸ‡Έ 104.28.196.78
πŸ‡΅πŸ‡° 103.174.5.91
πŸ‡¨πŸ‡³ 58.19.142.130
πŸ‡ΈπŸ‡¬ 47.128.120.240
πŸ‡³πŸ‡± 45.148.10.240
πŸ‡³πŸ‡± 45.148.10.152
πŸ‡ΊπŸ‡Έ 45.146.55.154
πŸ‡―πŸ‡΅ 34.97.0.63
πŸ‡²πŸ‡° 31.11.108.159
πŸ‡ΊπŸ‡Έ 23.94.155.18
πŸ‡¨πŸ‡³ 222.219.131.47