← Back to Dashboard

58.228.105.192 Threat Intelligence Report

Risk Level: MEDIUM — 281 abuse reports from 3 sources

Threat Intelligence Summary

IP address 58.228.105.192 has been flagged in 281 abuse reports across 3 independent threat intelligence sources, resulting in a threat score of 49.8/100 (medium risk). The primary activity associated with this IP is aggregated threat, along with email abuse, malware c2, ssh bruteforce, unknown.

This IP is geolocated in South Korea (Yongsan-gu) and belongs to the network SK Broadband Co Ltd (AS9318). Reports span from 2023-06-09 to 2026-04-16.

Assessment: 58.228.105.192 has been reported 281 times, suggesting a pattern of moderately suspicious behavior rather than isolated incidents. The detected SSH login attempts may indicate a compromised device being used as part of a larger botnet, rather than a dedicated attacker. Monitoring is recommended; consider rate limiting if this IP contacts your systems directly.

Data aggregated from 3 independent threat intelligence sources.

Geolocation

Country South Korea
City Yongsan-gu
Region Seoul
Timezone Asia/Seoul

Threat Status

Overall Status Medium Risk
Threat Score 49.8%
Report Count 281
Sources 3
First Seen 2023-06-09
Last Seen 2026-04-16
AI Analysis

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

South Korea Threat Intelligence → AS9318 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: