AbuseIPDB » 121.41.109.48
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 121.41.109.48:
This IP address has been reported a total of 354 times from 95 distinct sources. 121.41.109.48 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 188 reports; Germany with 38 reports; France with 33 reports. The most common categories in these recent reports were: Port Scan 285 times; SSH 54 times; Hacking 44 times; Brute-Force 39 times; Web App Attack 22 times; Other 16 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇬🇧 andypiper |
CrowdSec ban for AbuseIPDB Top List
|
Brute-Force Web App Attack | ||
| 🇵🇱 rafamiga |
fail2ban/ufw - Port scan detected.
...
|
Port Scan | ||
| 🇦🇹 urnilxfgbez |
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan | ||
| 🇧🇷 noconex |
|
Port Scan Brute-Force SSH | ||
| 🇺🇸 MPL |
tcp/2222 (2 or more attempts)
|
Port Scan | ||
| 🇫🇷 hxsain |
|
Port Scan | ||
| 🇩🇪 iNetWorker |
trying to access non-authorized port
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/80 (2 or more attempts)
|
Port Scan | ||
| 🇫🇷 security.rdmc.fr |
Port Scan Attack proto:TCP src:52685 dst:23
|
Port Scan | ||
| 🇺🇸 RAP |
2026-08-31 04:33:21 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| 🇺🇸 COMPLEX |
Unsolicited TCP traffic | Action: DROP | Port 23
|
Brute-Force | ||
| 🇫🇷 EDSL |
[SRV-VPN1] Blocked by SysWarden Firewall (SSH Attack)
|
SSH Brute-Force Port Scan | ||
| 🇳🇱 Ilop |
|
Port Scan | ||
| 🇩🇪 Tamsweb |
Unauthorized connection attempt or scan from 121.41.109.48 on port 23
...
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/22 (2 or more attempts)
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩