69.5.20.133

Classification: Malicious

69.5.20.133 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-13. Network: AS150436 BYTEPLUS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host HoneyDB 2026-08-09 00:00:00 2026-09-13 00:00:00 attacker malicious-activity
SSH Attacker Blocklist.de 2026-07-27 14:00:31 2026-09-12 14:04:07 attacker malicious-activity
Hacking AbuseIPDB 2026-07-26 14:50:57 2026-07-27 06:00:00 attacker malicious-activity
Bruteforce AbuseIPDB 2026-07-26 07:31:18 2026-07-27 06:00:00 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-26 07:31:18 2026-07-27 06:00:00 attacker malicious-activity
Port Scanner AbuseIPDB 2026-07-26 10:12:57 2026-07-27 04:54:50 anomalous-activity attacker malicious-activity reconnaissance
HTTP Attacker AbuseIPDB 2026-07-27 01:00:26 2026-07-27 01:00:26 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-07-26 14:50:57 2026-07-26 14:50:57 anomalous-activity attacker malicious-activity

Tags

ssh bruteforce bot

Whois information

AS name
AS150436 BYTEPLUS
Registrant
BYTEPLUS
City
Jakarta
Postal code
12850
Country
ID — Indonesia 🇮🇩
First indexed
2026-07-27 14:00:31
Last updated
2026-09-13 22:01:20