AbuseIPDB » 20.118.216.53
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 20.118.216.53:
This IP address has been reported a total of 6,966 times from 517 distinct sources. 20.118.216.53 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 421 reports; Germany with 84 reports; France with 49 reports. The most common categories in these recent reports were: Port Scan 647 times; Brute-Force 95 times; Hacking 92 times; Web App Attack 48 times; SSH 16 times; Other 46 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| Anonymous |
MikroTik Enterprise Honeypot
|
Port Scan | ||
| 🇺🇸 azminawwar |
|
Port Scan Hacking | ||
| 🇺🇸 MPL |
tcp/8009 (2 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/5222 (2 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/50070 (2 or more attempts)
|
Port Scan | ||
| 🇹🇷 pashait |
Auto-blocked by Seczar SecureOps — IPS Web Attack Signature (1 events in 5min) at 2026-08-27 06:50
|
Web App Attack Bad Web Bot | ||
| 🇺🇦 class730.ua |
20.118.216.53 [27/Aug/2026:08:58:35 +0300] TCP 200 53 0 3.005
...
|
Brute-Force | ||
| 🇧🇷 diego |
|
Web App Attack | ||
| 🇧🇷 diego |
|
Hacking | ||
| 🇺🇸 MPL |
tcp/443
|
Port Scan | ||
| 🇧🇷 noconex |
|
Port Scan Brute-Force SSH | ||
| 🇳🇱 VMHeaven.io |
Blocked by UFW [3306/tcp]
Source port: 38226
TTL: 36
Packet length: 52
|
Port Scan SQL Injection | ||
| 🇺🇸 MPL |
tcp ports: 139,3306 (3 or more attempts)
|
Port Scan | ||
| 🇫🇷 vtchost.com |
|
Port Scan | ||
| 🇦🇹 Pingger Shikkoken |
|
Hacking |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩