218.78.104.180

Classification: Malicious

218.78.104.180 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS4811 CHINANET Shanghai province network.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.
  • IoT threat — Seen attacking IoT devices.
  • Open proxy — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-06-28 20:13:04 2026-09-02 20:04:09 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-07-07 11:25:07 2026-08-28 09:18:30 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-07-07 11:25:04 2026-08-28 09:18:29 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-06-28 11:48:34 2026-08-11 15:07:59 attacker malicious-activity
Bruteforce AbuseIPDB 2026-06-23 23:23:19 2026-08-10 06:37:56 attacker malicious-activity
Malicious Host AbuseIPDB 2026-06-23 23:23:19 2026-08-10 06:37:56 attacker compromised malicious-activity
Port Scanner AbuseIPDB 2026-06-22 10:32:13 2026-08-10 06:37:56 anomalous-activity attacker malicious-activity reconnaissance
Proxy AbuseIPDB 2026-06-26 12:32:07 2026-08-09 04:01:01 anonymization proxy
Hacking AbuseIPDB 2026-06-23 05:45:21 2026-08-07 10:51:49 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-08-04 00:39:18 2026-08-04 00:39:18 attacker malicious-activity
IoT Attacker AbuseIPDB 2026-08-04 00:39:18 2026-08-04 00:39:18 iot malicious-activity
HTTP Scrapper AbuseIPDB 2026-07-01 03:40:01 2026-08-03 11:53:44 anomalous-activity attacker malicious-activity
Mail Spammer AbuseIPDB 2026-07-31 19:32:07 2026-07-31 19:32:07 attacker malicious-activity
HTTP bot Blocklist.de 2026-07-30 08:00:56 2026-07-30 08:00:56 attacker malicious-activity
HTTP Attacker Blocklist.de 2026-07-17 07:00:25 2026-07-17 07:00:25 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-15 21:52:33 2026-07-17 05:55:57 attacker malicious-activity
Phishing AbuseIPDB 2026-07-10 09:01:19 2026-07-10 09:01:19 malicious-activity phishing

Tags

apache ddos rfi attacker spam bruteforce bot

Whois information

AS name
AS4811 CHINANET Shanghai province network
Registrant
CHINANET Shanghai province network
City
Shanghai
Postal code
200001
Country
CN — China 🇨🇳
First indexed
2026-06-28 20:13:04
Last updated
2026-09-02 20:04:09