118.220.222.8 Threat Intelligence - South Korea | IP Address Lookup
ipinfopage
Share on:
General
IP Address
118.220.222.8
Location
🇰🇷 Gwangmyeong, South Korea
Network
AS9318
Threat Score
35/100
Attack Intelligence
MITRE ATT&CK Techniques
T1110 - Brute Force
Noticed
12 times
Protocols Attacked
combined ssh
Countries Attacked
Finland, France, Germany, Poland, United States of America
Passive DNS
softshell.co.kr
Open Ports Detected
1521200003000338940004435000500150055433700080808088009090
Geographic Location
Country
South Korea
City
Gwangmyeong
Region
Gyeonggi-do
Coordinates
37.4796, 126.8746
Network Information
ASN
AS9318
Organization
SK Broadband Co Ltd
Network
AS9318 SK Broadband Co Ltd
WHOIS Information
inetnum
118.216.0.0 - 118.223.255.255
netname
broadNnet
descr
SK Broadband Co Ltd
admin-c
IM670-AP
tech-c
IM670-AP
country
KR
status
ALLOCATED PORTABLE
mnt-by
MNT-KRNIC-AP
mnt-irt
IRT-KRNIC-KR
last-modified
2017-02-03T00:38:18Z
irt
IRT-KRNIC-KR
address
9, Jinheung-gil, Naju-si, Jeollanam-do
e-mail
irt@nic.or.kr
abuse-mailbox
irt@nic.or.kr
person
IP Manager
phone
+82-80-828-2106
nic-hdl
IM670-AP
changed
hostmaster@nic.or.kr 20240912
Attack Logs
| Date | Target Location | Protocol | Link |
|---|---|---|---|
| 2026-08-15 | Digitaloceantoronto Combined | Multiple | View Log |
| 2026-08-15 | Toronto, Canada | SSH | View Log |
| 2026-08-11 | Toronto, Canada | SSH | View Log |
| 2026-08-11 | Digitaloceantoronto Combined | Multiple | View Log |
| 2026-08-10 | Toronto, Canada | SSH | View Log |
| 2026-08-10 | Digitaloceantoronto Combined | Multiple | View Log |
| 2026-08-09 | Toronto, Canada | SSH | View Log |
| 2026-08-09 | Digitaloceantoronto Combined | Multiple | View Log |
Disclaimer
This page contains threat intelligence information for the IPv4 address 118.220.222.8 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only, and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.