AbuseIPDB » 104.199.6.237
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 104.199.6.237:
This IP address has been reported a total of 19 times from 17 distinct sources. 104.199.6.237 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Netherlands with 3 reports; United States of America with 3 reports; Germany with 2 reports. The most common categories in these recent reports were: Port Scan 14 times; Hacking 7 times; Brute-Force 3 times; IoT Targeted 1 time; Exploited Host 1 time; Other 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇳🇱 i-turnradio.nl |
2026-09-08 11:24:23 +02:00 - Unsolicited TCP connection to a port honeypot; probing port 445.
|
Port Scan | ||
| 🇺🇸 withfallback.com |
Attempt to connect to Java debugger (JDWP)
|
Port Scan | ||
| 🇩🇪 guldkage |
Unauthorized connection attempt detected from IP address 104.199.6.237 to port 445 (ger-02) [SMB]
|
Exploited Host | ||
| Anonymous |
389/tcp (1 or more attempts)
|
Port Scan | ||
| 🇳🇱 Nerdscave Hosting |
|
Brute-Force Port Scan Hacking | ||
| 🇨🇦 alexbfr |
Fail2Ban report from custom-honeypot; automated SMB honeypot detection.
|
Hacking | ||
| 🇳🇱 donarev419 |
Connection to port 636 with data transfer.
Data preview: �
|
Port Scan Hacking | ||
| 🇧🇷 Host One |
Detected by T-Pot honeypot: behavioral attack detected
|
Port Scan SSH | ||
| 🇸🇬 drewf.ink |
[04:44] Triggered SMB honeypot. Type: SMB2/3. Dialect(s): SMB 2.0.2
|
Hacking | ||
| 🇵🇱 bart@ |
|
Port Scan | ||
| 🇺🇸 donarev419 |
|
Port Scan Hacking | ||
| 🇹🇼 kk_it_man |
honey catch
|
Port Scan | ||
| 🇫🇷 Coco Bongo |
1788840938 - 09/08/2026 06:15:38 Host: 104.199.6.237/104.199.6.237 Port: 445 TCP Blocked
...
|
Port Scan | ||
| 🇦🇹 begou.dev |
[Threat Intelligence] Port Scanning and/or Unauthorized access -> TCP/636
|
Port Scan | ||
| 🇺🇸 drewf.ink |
[03:40] Triggered SMB honeypot. Type: SMB2/3. Dialect(s): SMB 2.0.2
|
Hacking |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩