← Back to Dashboard

78.128.112.114 Threat Intelligence Report

Risk Level: CRITICAL — 705 abuse reports from 3 sources

Threat Intelligence Summary

IP address 78.128.112.114 has been flagged in 705 abuse reports across 3 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is malware c2, along with rdp bruteforce, suspicious activity.

This IP is geolocated in Bulgaria and belongs to the network 4 Vendeta Ltd (AS208637). Reports span from 2025-08-14 to 2026-03-31.

Assessment: With 705 abuse reports, 78.128.112.114 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. The activity pattern and multi-source corroboration indicate this is a genuine threat that warrants immediate blocking at the firewall level.

Data aggregated from 3 independent threat intelligence sources.

Geolocation

Country Bulgaria
ISP/ASN 4 Vendeta Ltd
Timezone Europe/Sofia

Threat Status

Overall Status Critical
Threat Score 100.0%
Report Count 705
Sources 3
First Seen 2025-08-14
Last Seen 2026-03-31

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Bulgaria Threat Intelligence → AS208637 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: