General Information

Submitter Diversity: Very High
Risk (0-10)details: 6
IP Address (click for more detail): 118.194.236.134
Hostname: 118.194.236.134
Country:  HK
ASN: 135377
AS Name:  UCLOUD-HK-AS-AP - UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED, HK
Network:  118.194.236.0/24 (118.194.236.0-118.194.236.255) 118.194.237.0
Reports: 5074
Targets: 637
First Reported: 2023-08-31
Most Recent Report: 2026-10-02
Comment: - none -
Abuse Contact for AS135377: [email protected]
Links to articles about the IP from rosti.bin.re

Note: We update the data once an hour. To refresh the data, click here. Not all source IPs in our database are "attackers". There are a few common false positives. For example, hosts that participate in P2P networks, mail servers, load balancers and DNS servers are some of the most common issues. For details, click on the number of reports. Clicking on the number of reports may allow you to conclude if a report is a false positive or not. Scroll down for information from other data feeds.

SSH/Telnet Logs

no ssh logs.

Web Honeypot Logs

Date Reports Different URLs Different User Agents
2026-09-18653
2026-09-13853
2026-08-15662
2026-08-0312063
2026-06-28883
2026-06-171253
2026-06-031484
2026-06-02883
2026-05-271263
2026-05-23653
2026-04-18653
2026-04-132284
2026-04-07653
2026-03-3010263

For more details about the web honeypot, see the Weblogs Page. Do not use these reports to identify IP addresses as "bad" for now.

External Threat Feeds

This data was retrieved from various external data feeds.

First Seen Last Seen Feed
2024-11-192026-10-01Port 21 Scanner
2023-12-042026-10-01Port 22 Scanner
2024-05-202026-10-01Port 25 Scanner
2024-08-022026-10-01Port 443 Scanner
2024-08-022026-10-01Port 80 Scanner
2024-08-022026-10-01Apache Web Server Scanner
2023-08-312026-10-01CI Army List
Check Threatstop for more data link arrow