218.23.142.157 is from China

An Internet Protocol address (IP address 218.23.142.157) is a numerical label that is allocated to a computer (can be any electronic device) which is part of a network (CHINANET Anhui province network) that utilises the Internet Protocol. Every IP address does the following: (1) location addressing and (2) host or network interface identification.


e.g. 209.62.45.34 IPv4/IPv6 format for an IP Address, or maxmind.com for a website

Compare to another IP
IP Address:218.23.142.157
IP Address Country:  China (CN)
IP Address Region:01 Anhui
IP Address City:Bengbu
IP Postal Code
IP Address Area Code0
IP Metro Code0
IP Address Latitude:32.9407997131
IP Address Longitude:117.360801697
IP Address ISP: CHINANET Anhui province network
Organisation: CHINANET Anhui province network
IP Address Proxy:
IP Address Host:218.23.142.157
Map is loading...

We have 7 complaints about 218.23.142.157

Is 218.23.142.157 misbehaving (engaging in SPAM, brute-force, DOS attack, phishing, or other fraud? Report the abuser now!

Using Helkern Worm - filed under Port Scanning
>3 years ago
intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1494.
glupi kinez - filed under Hacking
>3 years ago
20.10.2008 1:08:17 UDP from 218.23.142.157 to local port 1434 Absent Detected: Intrusion.Win.MSSQL.worm.Helkern


hehe thats funny
attacks at 18/10/2008 19:24 .Appears in my Kaspersky 8.0 Firewall pop up. - filed under SQL Injection
>3 years ago
intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1394
218.23.142.157 - filed under Brute Force
>3 years ago
attacks all the time.Appears in my Kaspersky Firewall pop up.
10/11/2008 2:23:55 PM Intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1434. Time: 10/11/2008 2:23:55 PM the adove message appeared on my anti virus pop up - filed under Hacking
>3 years ago
10/13/2008 Intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1394. Time: 10/13/2008 9:18 am the adove message appeared on my anti virus pop up
10/11/2008 2:23:55 PM Intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1434. Time: 10/11/2008 2:23:55 PM the adove message appeared on my anti virus pop up - filed under Hacking
>3 years ago
10/13/2008 Intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1394. Time: 10/13/2008 9:18 am the adove message appeared on my anti virus pop up
hacker tried to infect my computer with a worm - filed under Hacking
>3 years ago
10/11/2008 2:23:55 PM

Intrusion.Win.MSSQL.worm.Helkern! Attacker IP address: 218.23.142.157. Protocol/service: UDP on local port 1434. Time: 10/11/2008 2:23:55 PM

the adove message appeared on my anti virus pop up
View WHOIS information for 218.23.142.157
[Querying whois.apnic.net]
[whois.apnic.net]
% [whois.apnic.net node-3]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 218.22.0.0 - 218.23.255.255
netname: CHINANET-AH
country: CN
descr: CHINANET Anhui province network
descr: Data Communication Division
descr: China Telecom
admin-c: CH93-AP
tech-c: AT318-AP
status: ALLOCATED PORTABLE
mnt-by: APNIC-HM
mnt-lower: MAINT-CHINANET-AH
changed: hm-changed@apnic.net 20060322
source: APNIC

role: ANHUI TELECOM
address: 305 Changjiang West Road
address: Hefei Anhui China
country: CN
phone: +86 0551 5185089
fax-no: +86 0551 5185500
e-mail: wanglinlin2@anhuitelecom.com
trouble: send spam reports to abuse@ah163.com
trouble: and abuse reports to abuse@ah163.com
trouble: Please include detailed information and
trouble: times in GMT+8:00
admin-c: LW604-AP
tech-c: LW604-AP
nic-hdl: AT318-AP
remarks: http://www.ah163.net
notify: wanglinlin2@anhuitelecom.com
mnt-by: MAINT-CHINANET-AH
changed: wanglinlin2@anhuitelecom.com 20060323
source: APNIC

person: Chinanet Hostmaster
nic-hdl: CH93-AP
e-mail: anti-spam@ns.chinanet.cn.net
address: No.31 ,jingrong street,beijing
address: 100032
phone: +86-10-58501724
fax-no: +86-10-58501724
country: CN
changed: dingsy@cndata.com 20070416
mnt-by: MAINT-CHINANET
source: APNIC


15 Latest Attacks
89.108.127.160 - Site is a scam - filed under Fraud
one of the sites through this host, everingame.com has defrauded hundreds of users. http://www.scamb...
1 hr 51 min  ago
114.36.160.94 - mindless stuff - filed under Spam
Hacking attemps, spaming. He has inserted himeslf into our medical servicesrecipients. It has been r...
2 hr 14 min  ago
205.186.130.61 - email hijacking - filed under Hacking
This person has been logging into my gmail account and sent out spam emails to my entire contact lis...
2 hr 14 min  ago
202.104.197.118 - Attempted login to FTP - filed under Brute Force
Brute force attempts to log into my server FTP with the username "administrator." A sim...
2 hr 43 min  ago
74.128.173.47 - Bet2day casino - filed under Spam
Same as the rest, spam mail every hour now on 3 of my emails. No way to unsubscribe and impossible t...
3 hr 41 min  ago
173.9.198.249 - website was hacked 2 days ago - filed under FTP Hacking
2 days ago from this ip several of our websites we're hacked by logging on to our ftp webhosting ac...
3 hr 53 min  ago
66.147.240.186 - This IP is trying to logon my website - filed under Brute Force
Website: http://www.iphonesp.com.br/ Page: /administrator/index.php Description: There was an unsu...
4 hr 23 min  ago
94.183.53.255 - Attacking Google account - filed under Hacking
Someone recently tried to sign in to your Google Account, XXXXX. We prevented the sign-in attempt in...
4 hr 56 min  ago
67.205.111.248 - 184.107.157.130 - filed under Hacking
this site keeps port scanning my IP addresses. i have him blocked but clearly theres a problem with...
5 hr 27 min  ago
72.21.194.32 - Risky connection blocked - filed under Malware
Looks to me like 72.21.194.32 is a server leased from Amazon's cloud services server farm by someon...
5 hr 59 min  ago
74.128.173.47 - unsubscribe bet2day from Ryan Hardy - filed under Spam
no way to unsubscribe to their unwanted mail about bet2day; looks to me a kind of spam or other non...
6 hr 34 min  ago
[00001] 2012-05-14 18:09:02 [Root]system-critical-00441: ICMP ping id=0! From 178.33.224.175 to 66.2...
7 hr 7 min  ago
Unsolicited spam from webmaster@arclip.ru -user17662 Received: from s6.cishost.ru ([92.38.199.150])...
7 hr 14 min  ago
77.78.228.62 - malware - filed under Malware
2012/05/16 20:18:16 +0300 DEOCAMDATARDS computer IP-BLOCK 77.78.228.62 (Type: incoming) 2012/05/16 2...
8 hr 14 min  ago
200.107.124.36 - spam - filed under Spam
Spam 200.107.124.36 "From rrenat31391@mail.ru Wed May 16 19:06:25 2012 DKIM-Signature: v=1; ...
8 hr 35 min  ago
More Attacks
66.35.46.195 - unauthorized connects - filed under Firewall Alert
.195 through .199, multiple port connects reported active this AM, including an FTP port. Am I corr...
>4 months ago
64.4.35.253 - Its MS - filed under Firewall Alert
This address belongs to ns1.msft.net msnhst.microsoft.com and at a guess is related to MSN messenger...
>9 months ago
222.45.112.59 - port scan attack - filed under Port Scanning
port scan...
>1 year ago
Attacker is trying to find ftp administrator password continuously. This has been going on for some...
>6 months ago
fraud@antihotmail.com ------------------------------- http://introchamp.com/wp-content/plugins/site...
>1 month ago
fraud@antihotmail.com ------------------------------ http://globeistan.com/wp-contint/save/process....
>5 months ago
190.202.117.178 - continues to attack daily - filed under Port Scanning
5/12/2010 6:47:44 PM Intrusion.Win.MSSQL.worm.Helkern! Attacker's IP address: 190.2.29.193. Protoco...
>2 years ago
221.192.199.35 - Attempt to install malware - filed under Malware
Attempting to enter several times per day. Blocked by Malwarebytes....
>1 year ago
217.136.222.63 - SSH Dictionary attack - filed under Brute Force
Repeated attempts to login with invented - bogus - credentials. Probably an unwitting participant in...
>2 years ago
fraud@antihotmail.com -------------------------------- http://turbotaxstore.com/pay-pal.com.us.cgi....
>2 months ago
178.211.55.10 - We caught this person FTP Hacking. - filed under FTP Hacking
We relayed the information to our servers ISP and reported him. Here is our data on this IP. This at...
>1 year ago
fraud@antihotmail.com ------------------------------ http://services.runescape.com.www-jagex.net/lc...
>8 months ago
74.15.174.82 - Subject: HSBC important message - filed under Spam
We recieved an e-mail that is spam that we traced back to the IP address 74.15.174.82 it tried to di...
>1 year ago
61.235.46.146 - Network Attack intrusion - filed under Firewall Alert
27/06/2010 06:04:36 pm Intrusion.Win.MSSQL.worm.Helkern UDP from 61.235.46.146 to local port 1434...
>1 year ago
fraud@antihotmail.com ------------------------------- http://www.jefcomsystems.com/server38.paypal....
>5 months ago
24.72.205.198 - Spam Mail Sender - filed under Spam
Spam Mail Sender...
>1 year ago
83.222.124.249 - Malwarebytes blocking this IP - filed under Firewall Alert
My MalwareBytes Antimallware software is blocking this IP (IP-BLOCK 83.222.124.249) (Type: outgoing)...
>7 months ago
64.187.110.50 - Possible phishing - filed under Spam
This IP is spamming and possibly phishing by using the domain name:wonderfullakes.net...
>3 years ago
46.160.85.231 - Hack Attempt - filed under Hacking
I had 4 hack attempts from this IP. Send a notice of any hack attempts to this email: admin@format-t...
>5 months ago
195.39.129.162 - NMap Null Scan - filed under Hacking
Norton blocked an intrusion from this IP address. I was using Utorrent at the time, which is probabl...
>3 years ago
212.52.153.27 - Spam mail - filed under Spam
Following mail is received from this IP no 212.52.153.27 Please check and do the needful to stop t...
>6 months ago
200.57.129.36 - fraud - filed under Fraud
attemped fraud and phishing, various emails malicious...
>2 years ago
199.27.134.19 - x0rg hack forum - filed under Hacking
This IP contains hacking material. x0rg.org hosted on this IP is hack forum , with tones of worm and...
>9 months ago
122.225.100.154 - SQL version overflow attempt - filed under SQL Injection
SQL version overflow attempt...
>1 year ago
189.19.206.152 - animal house - filed under Hacking
http://saiguru.org/test/87/tiny-18.html tiny 18, :-OO, http://computerserviceabbotsford.com/images/...
>1 year ago