114.104.153.51

Classification: Malicious

114.104.153.51 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-12. Network: AS4134 CHINANET anhui province network.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Blocklist.de 2019-11-25 07:05:52 2026-09-12 12:00:19 attacker malicious-activity
IMAP Attacker Blocklist.de 2021-02-16 04:49:25 2026-08-26 11:00:25 attacker malicious-activity
Mail Spammer Barracuda 2024-11-07 15:23:55 2026-08-13 16:06:03 attacker malicious-activity
Bruteforce AbuseIPDB 2026-01-22 06:55:21 2026-08-13 06:26:01 attacker malicious-activity
Hacking AbuseIPDB 2026-02-02 07:04:02 2026-08-13 05:54:54 attacker malicious-activity
Malicious Host AbuseIPDB 2026-02-08 20:13:00 2026-08-13 00:55:53 attacker compromised malicious-activity
Mail Spammer AbuseIPDB 2026-02-02 07:04:02 2026-08-12 16:18:09 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-01-27 06:35:37 2026-08-12 04:13:46 attacker malicious-activity
Port Scanner AbuseIPDB 2026-01-22 06:55:21 2026-08-11 20:25:12 anomalous-activity attacker malicious-activity reconnaissance
IMAP Attacker AbuseIPDB 2026-03-08 18:17:42 2026-08-07 19:28:50 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-03-01 23:11:11 2026-08-07 07:55:25 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-05-07 00:04:54 2026-08-05 18:43:03 anomalous-activity attacker malicious-activity
Phishing AbuseIPDB 2026-05-07 00:04:54 2026-08-05 18:43:03 malicious-activity phishing
SIP Attacker AbuseIPDB 2026-05-08 12:57:32 2026-08-01 19:58:27 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-01-21 13:44:16 2026-07-17 10:16:03 attacker malicious-activity
Known Attacker AbuseIPDB 2026-05-11 18:11:22 2026-06-09 10:31:18 attacker malicious-activity
DNS Compromise AbuseIPDB 2026-05-11 18:11:22 2026-05-11 18:11:22 compromised
DNS Poisoning AbuseIPDB 2026-05-11 18:11:22 2026-05-11 18:11:22 compromised
Suspicious Host AbuseIPDB 2025-01-01 10:28:30 2026-04-30 23:38:15 anomalous-activity
Proxy FireHOL 2023-02-05 18:18:33 2024-09-03 06:40:49 anonymization
Bruteforce login attacker Blocklist.de 2023-02-02 02:10:08 2023-02-03 02:16:45 malicious-activity
HTTP Attacker Blocklist.de 2023-02-02 01:53:51 2023-02-03 01:56:07 malicious-activity
HTTP Spammer StopForumSpam.com 2022-07-25 03:52:28 2022-07-25 03:52:28 malicious-activity

Tags

mail spam attacker imap pop3 sasl bot anonymization login bruteforce joomla wordpress apache ddos rfi abuse

Whois information

AS name
AS4134 CHINANET anhui province network
AS registry
apnic
AS date
2008-05-16 00:00:00
AS CIDR
114.104.0.0/14
CIDR
114.104.0.0/14
Registrant
CHINANET anhui province network
Address
No.31 ,jingrong street,beijing 100032
City
Hefei
Postal code
230031
Country
CN — China 🇨🇳
Contact email
[email protected], [email protected]
First indexed
2019-11-25 07:05:52
Last updated
2026-09-12 12:00:19

Malicious IPs in the same CIDR

114.107.254.83 114.106.136.189 114.104.226.14 114.106.130.17 114.106.147.1 114.106.135.60 114.106.172.91 114.106.172.61 114.104.226.231 114.104.153.51 114.106.173.160 114.104.188.248 114.106.171.23 114.104.135.164 114.106.135.18 114.106.136.206 114.106.147.134 114.106.134.115 114.106.134.52 114.106.135.227 114.106.171.75 114.106.170.219 114.106.173.254 114.106.136.171 114.106.172.102