103.57.248.129
Classification: Malicious
103.57.248.129 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-27. Network: AS9009 Edis GmbH.
Current activity
- Known attacker โ Seen launching attacks over the Internet.
- Known scanner โ Seen scanning hosts over the Internet.
- VPN node โ Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2026-08-06 14:00:16 | 2026-08-27 14:00:06 | attacker malicious-activity | |
| VPN | IPWhois.io | 2026-08-06 00:02:28 | 2026-08-06 00:02:28 | anonymization vpn | |
| Mail Spammer | Barracuda | 2026-08-06 00:02:28 | 2026-08-06 00:02:28 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-08-04 23:24:04 | 2026-08-05 23:08:24 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-08-04 23:24:04 | 2026-08-05 23:08:24 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-08-05 14:50:29 | 2026-08-05 14:50:29 | anomalous-activity attacker malicious-activity reconnaissance | |
| Malicious Host | HoneyDB | 2026-08-05 00:00:00 | 2026-08-05 00:00:00 | attacker malicious-activity |
Tags
ssh bruteforce botWhois information
- AS name
- AS9009 Edis GmbH
- Registrant
- Edis GmbH
- City
- Hong Kong
- Country
- HK โ Hong Kong ๐ญ๐ฐ
- First indexed
- 2026-08-06 00:02:27
- Last updated
- 2026-08-27 14:00:06