This IP address has been reported a total of
18
times from
10 distinct
sources.
112.1.79.2 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot [nx-infrastructure]: MSSQL traffic (on 1433) without login credentials
Reported by: Justin ...
show moreHoneypot [nx-infrastructure]: MSSQL traffic (on 1433) without login credentials
Reported by: Justin F.
show less
Rule : MSSQLSERVER
Rule: MSSQLSERVER
Event: MSSQLSERVER
UserAccount : sa
sa Reason: Password did ...
show moreRule : MSSQLSERVER
Rule: MSSQLSERVER
Event: MSSQLSERVER
UserAccount : sa
sa Reason: Password did not match that for the login provided. [CLIENT: 112.1.79.2]
show less
Firewall - Suricata IDS [Priority 2 - High]: ET CINS Active Threat Intelligence Poor Reputation IP g ...
show moreFirewall - Suricata IDS [Priority 2 - High]: ET CINS Active Threat Intelligence Poor Reputation IP group 153
show less
06/11/2026-06:41:21.868067 src=112.1.79.2 dst=5.175.170.171:1433 proto=6 msg=ET SCAN Suspicious inbo ...
show more06/11/2026-06:41:21.868067 src=112.1.79.2 dst=5.175.170.171:1433 proto=6 msg=ET SCAN Suspicious inbound to MSSQL port 1433
show less
06/10/2026-08:43:54.623643 src=112.1.79.2 dst=5.175.170.42:1433 proto=6 msg=ET SCAN Suspicious inbou ...
show more06/10/2026-08:43:54.623643 src=112.1.79.2 dst=5.175.170.42:1433 proto=6 msg=ET SCAN Suspicious inbound to MSSQL port 1433
show less
06/09/2026-06:33:57.335027 src=112.1.79.2 dst=5.175.170.113:1433 proto=6 msg=ET SCAN Suspicious inbo ...
show more06/09/2026-06:33:57.335027 src=112.1.79.2 dst=5.175.170.113:1433 proto=6 msg=ET SCAN Suspicious inbound to MSSQL port 1433
show less
SQL Injection
Showing 1 to
15
of 18 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ