Is 180.167.207.234 malicious?

IP reputation report for 180.167.207.234: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.

180.167.207.234 is listed on 50 threat intelligence sources

Detected by 50 threat intelligence sources in the isMalicious dataset — review before trusting this IP.

Threat verdict

VerdictListed on blocklists

Appears on threat intelligence blocklists — treat with caution.

Blocklist detections50 sources
Categoriesattack, abuse, proxy, malware, phishing, suspicious, bruteforce, attacks, botnet, malicious, c2
Confidence score100/100

Aggregated confidence across the sources reporting this indicator.

Last updated2026-07-05

Network & location

LocationShanghai, Shanghai, China
ISPChina Telecom (Group)
ASNAS4812 — China Telecom (Group)
Network180.167.0.0/16
CompanyCHINANET SHANGHAI PROVINCE NETWORK
InfrastructureProxy

Security posture

Open ports554, 8090

Detections

  • Duggytuxy - Blacklist Ips For Fortinet Firewall Aa.txt
  • FireHOL - Blocklist Deattack
  • FireHOL - Blocklist De Sshattack
  • FireHOL - Blocklist De Strongipsattack
  • FireHOL - Blocklist Net Uaabuse
  • FireHOL - Darklist Deattack
  • FireHOL - Firehol Level2attack
  • FireHOL - Firehol Anonymousproxy
  • FireHOL - Firehol Level4attack
  • FireHOL - Firehol Proxiesproxy
  • FireHOL - Greensnowattack
  • Opendbl Net - Blocklistde All.listmalware
  • Opendbl Net - Ipsum.listmalware
  • Romain Marcoux - Malicious Outgoing IPsphishing
  • Romain Marcoux - Malicious IPsphishing
  • Blocklist - All SSH attacks (48h)attack
  • Blocklist - All Attacks (48h)attack
  • Blocklist - All StrongIPs attacks (2 month + 5k attacks)attack
  • Greensnow - Attacks Multi-protocolsphishing
  • CyberCure Blocked URL Feedmalware
  • CyberCure Hash Feedmalware
  • CyberCure IP Feedmalware
  • IPsum Level 2suspicious
  • IPsum Level 4suspicious

+26 more sources in the full report.

Threat categories

Related malicious IPs on nearby networks