This IP address has been reported a total of
81
times from
52 distinct
sources.
193.148.56.120 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Detected by router-side syslog over 72h. 150 inbound firewall DROPs (150 TCP) across 150 distinct de ...
show moreDetected by router-side syslog over 72h. 150 inbound firewall DROPs (150 TCP) across 150 distinct destination port(s). Top targets: TCP/10001=1, TCP/10002=1, TCP/10134=1. First seen 2026-08-10T08:34Z, last seen 2026-08-10T10:16Z. Categories: Port Scan.
show less
Port Scan
Anonymous
Blocked by os-abuseipdb; 8 hits, proto=tcp, ports=5914,5947,5970,5978,5980,5983,6697,7415
Port Scan
Hacking
Anonymous
Blocked by os-abuseipdb; 11 hits, proto=tcp, ports=5915,5932,5942,5971,5998,6020,6080,6081,6633,6667 ...
show moreBlocked by os-abuseipdb; 11 hits, proto=tcp, ports=5915,5932,5942,5971,5998,6020,6080,6081,6633,6667,9999
show less
Port scan: 150 blocked connection attempts to ports 5500,5800,5900,5901,5902,5903,5904,5905,5906,590 ...
show morePort scan: 150 blocked connection attempts to ports 5500,5800,5900,5901,5902,5903,5904,5905,5906,5907 (dropped by our geo-firewall).
show less
Generic malicious activity: ALERT: External connection attempt to messaging/IRC service ports... | P ...
show moreGeneric malicious activity: ALERT: External connection attempt to messaging/IRC service ports... | Port: 6667 | Proto: TCP | Location: Singapore, Singapore
show less
Port Scan
Hacking
Anonymous
Detected by router-side syslog over 72h. 150 inbound firewall DROPs (150 TCP) across 150 distinct de ...
show moreDetected by router-side syslog over 72h. 150 inbound firewall DROPs (150 TCP) across 150 distinct destination port(s). Top targets: TCP/10001=1, TCP/10002=1, TCP/10134=1. First seen 2026-08-10T08:34Z, last seen 2026-08-10T10:16Z. Categories: Port Scan.
show less
Automatically generated from firewall_v2 logs on SID:VTMI1
Category: Port Scan
Occurrences: 97
Un ...
show moreAutomatically generated from firewall_v2 logs on SID:VTMI1
Category: Port Scan
Occurrences: 97
Unique Ports: 97
Destination Ports:
5988, 5920, 5959, 5928, 5929, 6000, 5993, 5940, 10348, 5955, 5902, 5800, 5979, 5978, 5904, 5967, 6005, 5939, 6653, 5911, 5958, 6633, 5984, 5969, 5973, 5936, 5905, 5994, 6482, 10002, 5947, 7415, 6161, 6003, 5933, 5921, 6022, 5915, 5997, 6500, 5945, 62
First Seen:
2026-08-10 20:10 UTC
Last Seen:
2026-08-10 21:10 UTC
show less
Port Scan
Anonymous
Detected by router-side syslog over 72h. 144 inbound firewall DROPs (144 TCP) across 144 distinct de ...
show moreDetected by router-side syslog over 72h. 144 inbound firewall DROPs (144 TCP) across 144 distinct destination port(s). Top targets: TCP/10001=1, TCP/10002=1, TCP/10134=1. First seen 2026-08-10T08:34Z, last seen 2026-08-10T10:10Z. Categories: Port Scan.
show less
Auto-blocked by Seczar SecureOps β High-Risk Port Probe (admin-managed entries) β VNC (3 events in 1 ...
show moreAuto-blocked by Seczar SecureOps β High-Risk Port Probe (admin-managed entries) β VNC (3 events in 10min) at 2026-08-09 02:13
show less
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show moreUFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=193.148.56.120; proto=TCP; source_port=61000; target_port=7000; flags=SYN
show less