This IP address has been reported a total of
15
times from
13 distinct
sources.
114.130.168.242 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 3
reports;
France
with 2
reports;
Germany
with 1
report.
The most common categories in these recent reports were:
Bad Web Bot
4
times;
Port Scan
2
times;
DDoS Attack
2
times;
Hacking
1
time;
Exploited Host
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show moreMozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 21753) to a p ...
show more๐ก๏ธ Honeypot [bsts-tpot-sensor]: Unsolicited SMB connection (dst port 445/tcp, src port 21753) to a passive honeypot sensor. No legitimate SMB service is exposed here; this traffic is consistent with automated internet-wide scanning or exploitation attempts targeting SMB (e.g. EternalBlue-class vulnerabilities).
show less
Aug 30 09:40:03 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f ...
show moreAug 30 09:40:03 sthoyer kernel: [IPTables-Block] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=114.130.168.242 DST=173.212.223.67 LEN=52 TOS=0x00 PREC=0x00 TTL=115 ID=42303 DF PROTO=TCP SPT=10792 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
Anonymous
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in printer-friendly.asp
show less
(smtpauth) Failed SMTP AUTH login from 114.130.168.242 (BD/Bangladesh/-): 5 in the last 3600 secs; P ...
show more(smtpauth) Failed SMTP AUTH login from 114.130.168.242 (BD/Bangladesh/-): 5 in the last 3600 secs; Ports: 25,465,587; Direction: 0; Trigger: LF_SMTPAUTH; Logs: 2026-03-29 07:35:55 dovecot_plain authenticator failed for H=(5D07V5) [114.130.168.242]:26206: 535 Incorrect authentication data ([email protected])
2026-03-29 07:36:01 dovecot_login authenticator failed for H=(5D07V5) [114.130.168.242]:26206: 535 Incorrect authentication data ([email protected])
2026-03-29 07:53:21 dovecot_plain authenticator failed for H=(JKJEX) [114.130.168.242]:26252: 535 Incorrect authentication data ([email protected])
2026-03-29 07:53:28 dovecot_login authenticator failed for H=(JKJEX) [114.130.168.242]:26252: 535 Incorrect authentication data ([email protected])
2026-03-29 07:53:46 dovecot_plain authenticator failed for H=(L7V1JJ7) [114.130.168.242]:26218: 535 Incorrect authentication data ([email protected])
show less
Blocked by UFW (TCP on 587)
Source port: 46549
TTL: 104
Packet length: 52
TOS: 0x08
This report (fo ...
show moreBlocked by UFW (TCP on 587)
Source port: 46549
TTL: 104
Packet length: 52
TOS: 0x08
This report (for 114.130.168.242) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less