AbuseIPDB » 59.173.111.52

59.173.111.52 was found in our database!

This IP was reported 30 times. Confidence of Abuse is 10%: ?

10%
ISP CHINANET Hubei province network
Usage Type Fixed Line ISP
ASN AS4134
Domain Name chinatelecom.cn
Country ๐Ÿ‡จ๐Ÿ‡ณ China
City Wuhan, Hubei

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 59.173.111.52:

This IP address has been reported a total of 30 times from 21 distinct sources. 59.173.111.52 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ง๐Ÿ‡ท ICS Labs
ICS Labs identified 59.173.111.52 as a malicious indicator from threat intelligence.
DDoS Attack Port Scan Hacking Brute-Force Exploited Host
๐Ÿ‡ณ๐Ÿ‡ฑ donarev419
Port scan detected on port 8887 (connection without data transfer)
Port Scan
๐Ÿ‡ง๐Ÿ‡พ StatsMe
2026-04-25T10:22:11.102800+0300 ET SCAN NMAP -sS window 1024
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/2316
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ LSPCCU
DDoS Attack Port Scan Hacking Brute-Force Web App Attack SSH
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (16 bytes of payload); 3632 [1] TCP
Port Scan
๐Ÿ‡ฌ๐Ÿ‡ง gbzret4d
Honeypot [uk-production01]: Empty payload (likely service probe); 8222 [1] TCP
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/6363 (2 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/1991
Port Scan
Anonymous
Probing to gain illegal access
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ bulkvm.com
[bulkvm.com/honeypot] SSH brute force. Port: 53262, credentials:
Brute-Force SSH
๐Ÿ‡ฉ๐Ÿ‡ช David Ferneding
Port Scan
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (243 bytes of payload); 5592 [1] TCP
Port Scan
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (243 bytes of payload); 9595 [1] TCP
Port Scan

Showing 1 to 15 of 30 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฏ๐Ÿ‡ต 92.113.142.203
๐Ÿ‡ฏ๐Ÿ‡ต 2a09:bac1:3b00:1020::2fb:3b
๐Ÿ‡น๐Ÿ‡ผ 212.115.54.84
๐Ÿ‡ช๐Ÿ‡ธ 149.91.97.132
๐Ÿ‡บ๐Ÿ‡ธ 137.184.21.179
๐Ÿ‡ฒ๐Ÿ‡พ 113.211.215.148
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.112.245.85
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.59.161.120
๐Ÿ‡ฉ๐Ÿ‡ช 79.133.51.145
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.240
๐Ÿ‡ณ๐Ÿ‡ฑ 34.178.21.247
๐Ÿ‡น๐Ÿ‡ผ 202.39.153.245
๐Ÿ‡บ๐Ÿ‡ธ 170.187.165.219
๐Ÿ‡ฎ๐Ÿ‡ณ 128.185.33.227
๐Ÿ‡ฎ๐Ÿ‡ณ 122.176.151.176
๐Ÿ‡จ๐Ÿ‡ณ 113.57.9.146
๐Ÿ‡บ๐Ÿ‡ธ 107.173.225.154
๐Ÿ‡ฏ๐Ÿ‡ต 103.163.220.50
๐Ÿ‡ฉ๐Ÿ‡ช 83.243.57.196
๐Ÿ‡ฑ๐Ÿ‡น 62.60.130.148