AbuseIPDB » 201.3.225.21
201.3.225.21 was found in our database!
This IP was reported 17 times. Confidence of Abuse is 65%: ?
This address is a Tor exit node. Neither the owner nor the provider are directly behind the offending action.
| ISP | ipbnb |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS48031 |
| Hostname(s) |
vm23382.bit.hosting |
| Domain Name | ipbnb.com |
| Country | π΅π± Poland |
| City | Gdynia, Pomerania |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 201.3.225.21:
This IP address has been reported a total of 17 times from 14 distinct sources. 201.3.225.21 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| Anonymous |
Bot / scanning and/or hacking attempts: GET /wp-login.php HTTP/1.1, POST /wp-login.php HTTP/1.1
|
Hacking Web App Attack | ||
| π¦πΊ QT |
Unauthorised WordPress admin login attempted at 2026-08-16 03:16:32 +1000
|
Web App Attack | ||
| πΊπΈ nationaleventpros.com |
WordPress login attempt
|
Brute-Force | ||
| πΊπΈ nationaleventpros.com |
WordPress login attempt
|
Brute-Force | ||
| Anonymous |
Forum/form spam
|
Web Spam | ||
| πΊπΈ TPI-Abuse |
|
Brute-Force Bad Web Bot Web App Attack | ||
| π¨π¦ polycoda |
AutoBlock: π WordPress Login Brute Force (40X) (Non Decay-Based)
|
Brute-Force Web App Attack | ||
| π³π± knock |
Knock-Knock honeypot brute-force: proto8 (5 total hits)
|
Brute-Force | ||
| π©πͺ big-cloud.nl |
Try to access /xmlrpc.php
|
Web App Attack | ||
| π©πͺ grassau.com |
(wordpress) Failed wordpress login from 201.3.225.21 (PL/Poland/-/-/vm23382.bit.hosting)
|
Brute-Force | ||
| π«π· dynamix |
Multiple WAF Violations
|
Web App Attack | ||
| π«π· dynamix |
WordPress XMLRPC Brute Force Attack
|
Brute-Force Web App Attack | ||
| π¬π§ consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| Anonymous |
|
Web App Attack Hacking SQL Injection | ||
| πΈπͺ vaia.cloud |
crowdsecurity/http-admin-interface-probing
|
Brute-Force Web App Attack |
Showing 1 to 15 of 17 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown π©