IP Information for 116.255.226.73

Location Asia, 🇨🇳 China
ASN AS4837 — CHINA169-BACKBONE CHINA UNICOM China169 Backbone, CN
BGP Prefix 116.255.128.0/17
Registry apnic
IP Address 116.255.226.73

IOC Matches

ID Type Tag Source Last seen Comments
288959 IP honeypot 4 2026-05-21 17:51:50
  • 2026-05-21: Observed 8 times. Targeted ports: 2202. Country: China.
  • 2026-05-20: Observed 7 times. Targeted ports: 1122. Country: China.
  • 2026-05-18: Observed 8 times. Targeted ports: 8822. Country: China.
  • 2026-05-17: Observed 8 times. Targeted ports: 2222. Country: China.
  • 2026-05-16: Observed 8 times. Targeted ports: 2122. Country: China.
  • 2026-05-15: Observed 8 times. Targeted ports: 2233. Country: China.
  • 2026-05-14: Observed 1 times. Targeted ports: 23. Country: China.
  • 2026-05-13: Observed 9 times. Targeted ports: 2223. Country: China. Alert categories: Generic Protocol Command Decode. Signatures: SURICATA STREAM Packet with invalid timestamp.
  • 2026-05-10: Observed 7 times. Targeted ports: 20022. Country: China.
  • 2026-05-09: Observed 7 times. Targeted ports: 9222. Country: China.
  • 2026-05-06: Observed 7 times. Targeted ports: 22000. Country: China.
  • 2026-04-30: Observed 8 times. Targeted ports: 2299. Country: China.
  • 2026-04-29: Observed 7 times. Targeted ports: 2288. Country: China.
  • 2026-04-27: Observed 7 times. Targeted ports: 22222. Country: China.
  • 2026-04-22: Observed 7 times. Targeted ports: 2222. Country: China.
  • 2026-03-27: Observed 8 times. Targeted ports: 2222. Country: China. Reputation: known attacker.
  • 2026-03-26: Observed 4 times. Targeted ports: 2222. Country: China. Reputation: known attacker.
  • 2026-03-18: Observed 31 times. Targeted ports: 22. Country: China. Alert categories: Misc activity. Signatures: ET INFO SSH session in progress on Expected Port. Usernames: root.

URLs on this IP

No URLs found for this IP.

Passive DNS

No pDNS records found for 116.255.226.73.

Search History

No search history for this value.

Whois

No Whois record yet. The worker will fetch it when this IP is in the queue.