Geolocation, network attribution and threat signals for any IPv4 address. Backed by 6 honeypots and a dozen public blocklists.
200 queries / day · free
status ● operational
Result for
156.240.120.78
AS55967 BAIDU Beijing Baidu Netcom Science and Technology Co., Ltd., CN🇿🇦 South Africa
Suspicious
82 / 100
Reputation score
Reputation signals
1 of 6 categories triggered
Web spam
Clean
No match · Comment & forum spam blocklists (StopForumSpam, NOC forum networks).
Web attacks
Clean
No match · IP observed in web exploit attempts and DShield /24 lists.
Botnet C2
Clean
No match · C2 indicators from ccabuse and feodotracker.
Email spam
Clean
No match · Spamhaus DROP / EDROP listings.
Brute force
Detected
Captured by SSHD honeypot in last 24 h.
DDoS source
Clean
No match · Recent amplification or volumetric activity.
Network usage
probe @ 23 May 2026 14:02 UTC
Routabletrue
Hosting providerfalse
Pingable (ICMP)true
Tor exit nodefalse
Web serverfalse
Open proxy / VPNfalse
Bogon (unroutable)false
Country🇿🇦 ZA
Recommended actions
based on detected signals
BLOCK
Block traffic
Drop traffic from this IP at your firewall / edge.
BLOCK
Block account registrations
Prevent sign-ups from this address.
BLOCK
Block comments & forms
Block forum, comment and contact-form submissions.
Why:
Likely malicious traffic from blacklisted IP addresses.
.htaccessnginxiptables
# Outpost · block 156.240.120.78 (suspicious · 82/100)
# 1 reputation signal detected
Require all granted
Require not ip156.240.120.78# or block the entire /24:Require not ip156.240.120.0/24
Raw response
application/json · cached 60s
{
"ip": "156.240.120.78",
"reverse": false,
"as_number": "55967",
"as_name": "BAIDU Beijing Baidu Netcom Science and Technology Co., Ltd., CN",
"country_code": "ZA",
"country": "South Africa",
"usage": {
"is_pingable": true,
"is_webserver": false,
"is_routable": true,
"is_tor": false,
"is_proxy": false,
"is_hosting": false,
"is_bogon": false
},
"reputation": {
"web_spam": false,
"web_attacks": false,
"botnet": false,
"email_spam": false,
"brute_force": true,
"details": "IP being used by web or sshd password guessing / brute force attempts.",
"ddos": false
},
"recommendations": {
"block_traffic": true,
"block_registrations": true,
"block_comments": true,
"details": "Likely malicious traffic from blacklisted IP addresses."
}
}