Is 180.167.207.234 malicious?
IP reputation report for 180.167.207.234: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.
180.167.207.234 is listed on 50 threat intelligence sources
Detected by 50 threat intelligence sources in the isMalicious dataset — review before trusting this IP.
Threat verdict
VerdictListed on blocklists
Appears on threat intelligence blocklists — treat with caution.
Blocklist detections50 sources
Categoriesattack, abuse, proxy, malware, phishing, suspicious, bruteforce, attacks, botnet, malicious, c2
Confidence score100/100
Aggregated confidence across the sources reporting this indicator.
Last updated2026-07-05
Network & location
LocationShanghai, Shanghai, China
ISPChina Telecom (Group)
ASNAS4812 — China Telecom (Group)
Network180.167.0.0/16
CompanyCHINANET SHANGHAI PROVINCE NETWORK
InfrastructureProxy
Security posture
Open ports554, 8090
Detections
- Duggytuxy - Blacklist Ips For Fortinet Firewall Aa.txt
- FireHOL - Blocklist Deattack
- FireHOL - Blocklist De Sshattack
- FireHOL - Blocklist De Strongipsattack
- FireHOL - Blocklist Net Uaabuse
- FireHOL - Darklist Deattack
- FireHOL - Firehol Level2attack
- FireHOL - Firehol Anonymousproxy
- FireHOL - Firehol Level4attack
- FireHOL - Firehol Proxiesproxy
- FireHOL - Greensnowattack
- Opendbl Net - Blocklistde All.listmalware
- Opendbl Net - Ipsum.listmalware
- Romain Marcoux - Malicious Outgoing IPsphishing
- Romain Marcoux - Malicious IPsphishing
- Blocklist - All SSH attacks (48h)attack
- Blocklist - All Attacks (48h)attack
- Blocklist - All StrongIPs attacks (2 month + 5k attacks)attack
- Greensnow - Attacks Multi-protocolsphishing
- CyberCure Blocked URL Feedmalware
- CyberCure Hash Feedmalware
- CyberCure IP Feedmalware
- IPsum Level 2suspicious
- IPsum Level 4suspicious
+26 more sources in the full report.