Public threat report powered by InfinitSec honeypot and firewall sensors. Compare community reports on AbuseIPDB or sign in for full pivot tools (ranges, ASN, country, raw evidence).
425/ 100
Critical Risk

🇺🇸 IP Report: 20.168.11.130

11 events · 10 firewall · 1 honeypot · Confidence 35%

Country🇺🇸 US
ISP / ASN
CityPhoenix
First SeenMay 12, 2026
Last SeenJul 29, 2026, 8:18 AM
Attack Categories
honeypot_interactionport_scan
Targeted Ports
8008 ×21028 ×11931 ×12222 ×13128 ×13351 ×15903 ×17547 ×1
Event Types
closed_port_probe ×10honeypot_interaction ×1

Recent Security Events

TimeSourceTypeProtoPort
Jul 29, 2026, 8:18 AM UFW closed_port_probe TCP 8008
Jul 28, 2026, 8:23 PM UFW closed_port_probe TCP 8008
Jul 23, 2026, 2:27 PM UFW closed_port_probe TCP 5903
Jul 16, 2026, 9:08 PM UFW closed_port_probe TCP 7547
Jul 16, 2026, 4:51 PM UFW closed_port_probe TCP 3128
Jun 25, 2026, 8:36 PM UFW closed_port_probe TCP 8009
Jun 20, 2026, 1:13 AM UFW closed_port_probe TCP 9997
May 27, 2026, 8:57 AM UFW closed_port_probe TCP 1028
May 23, 2026, 12:43 AM UFW closed_port_probe TCP 3351
May 15, 2026, 6:36 AM UFW closed_port_probe TCP 1931
May 12, 2026, 5:49 AM other honeypot_interaction TCP 2222