218.78.104.180
Classification: Malicious
218.78.104.180 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS4811 CHINANET Shanghai province network.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
- IoT threat — Seen attacking IoT devices.
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | CIArmy | 2026-06-28 20:13:04 | 2026-09-02 20:04:09 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-07-07 11:25:07 | 2026-08-28 09:18:30 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-07-07 11:25:04 | 2026-08-28 09:18:29 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-06-28 11:48:34 | 2026-08-11 15:07:59 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-06-23 23:23:19 | 2026-08-10 06:37:56 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-06-23 23:23:19 | 2026-08-10 06:37:56 | attacker compromised malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-06-22 10:32:13 | 2026-08-10 06:37:56 | anomalous-activity attacker malicious-activity reconnaissance | |
| Proxy | AbuseIPDB | 2026-06-26 12:32:07 | 2026-08-09 04:01:01 | anonymization proxy | |
| Hacking | AbuseIPDB | 2026-06-23 05:45:21 | 2026-08-07 10:51:49 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-08-04 00:39:18 | 2026-08-04 00:39:18 | attacker malicious-activity | |
| IoT Attacker | AbuseIPDB | 2026-08-04 00:39:18 | 2026-08-04 00:39:18 | iot malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-07-01 03:40:01 | 2026-08-03 11:53:44 | anomalous-activity attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-07-31 19:32:07 | 2026-07-31 19:32:07 | attacker malicious-activity | |
| HTTP bot | Blocklist.de | 2026-07-30 08:00:56 | 2026-07-30 08:00:56 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-07-17 07:00:25 | 2026-07-17 07:00:25 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-07-15 21:52:33 | 2026-07-17 05:55:57 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-07-10 09:01:19 | 2026-07-10 09:01:19 | malicious-activity phishing |
Tags
apache ddos rfi attacker spam bruteforce botWhois information
- AS name
- AS4811 CHINANET Shanghai province network
- Registrant
- CHINANET Shanghai province network
- City
- Shanghai
- Postal code
- 200001
- Country
- CN — China 🇨🇳
- First indexed
- 2026-06-28 20:13:04
- Last updated
- 2026-09-02 20:04:09