← Back to Dashboard

116.71.136.125 Threat Intelligence Report

Risk Level: CRITICAL — 126 abuse reports from 26 sources

Threat Intelligence Summary

IP address 116.71.136.125 has been flagged in 126 abuse reports across 26 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is abuseipdb blacklist, along with aggregated threat, aggressive scanner, attacks, brute force, bruteforce, malware c2, malware infrastructure, reconnaissance, scanning, ssh-bruteforce, ssh bruteforce, suspicious activity, voip attack.

This IP is geolocated in Pakistan (Dera Ismail Khan) and belongs to the network Pakistan Telecommunication Company Limited (AS17557). Reports span from 2026-01-05 to 2026-04-17.

Assessment: With 126 abuse reports, 116.71.136.125 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. The IP has been observed conducting automated SSH login attempts against internet-facing servers, a technique commonly used to gain unauthorized access to systems.

Data aggregated from 26 independent threat intelligence sources.

Geolocation

Country Pakistan
City Dera Ismail Khan
Region Khyber Pakhtunkhwa
Timezone Asia/Karachi

Threat Status

Overall Status Critical
Threat Score 100.0%
Report Count 126
Sources 26
First Seen 2026-01-05
Last Seen 2026-04-17
AI Analysis

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Pakistan Threat Intelligence → AS17557 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: