This IP address has been reported a total of
19
times from
16 distinct
sources.
115.246.239.27 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Auto-blocked by Seczar SecureOps โ Database Service Brute Force (6 events in 5min) at 2026-06-15 21: ...
show moreAuto-blocked by Seczar SecureOps โ Database Service Brute Force (6 events in 5min) at 2026-06-15 21:13
show less
Unauthorized attempt on debian [1433/tcp]
Source port: 30775
TTL: 110
Packet length: 52
TOS: 0x08
h ...
show moreUnauthorized attempt on debian [1433/tcp]
Source port: 30775
TTL: 110
Packet length: 52
TOS: 0x08
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
Honeypot hit: MSSQL traffic (on 1433) without login credentials
Reported by: https://github.com/sefi ...
show moreHoneypot hit: MSSQL traffic (on 1433) without login credentials
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Suricata Detected 126 attacks from 115.246.239.27.; ET SCAN Suspicious inbound to MSSQL port 1433; I ...
show moreSuricata Detected 126 attacks from 115.246.239.27.; ET SCAN Suspicious inbound to MSSQL port 1433; IP: 115.246.239.27; Ports: 63155; Direction: to_server; Trigger: SCAN; Category: Potentially Bad Traffic; Severity: 2
show less
OpenCanary honeypot hit on port 1433 (no legitimate service runs there); logtype 9001. Automated rep ...
show moreOpenCanary honeypot hit on port 1433 (no legitimate service runs there); logtype 9001. Automated report.
show less
Honeypot [nx-infrastructure]: MSSQL traffic (on 1433) without login credentials
Reported by: Justin ...
show moreHoneypot [nx-infrastructure]: MSSQL traffic (on 1433) without login credentials
Reported by: Justin F.
show less
06/10/2026-08:59:12.361346 src=115.246.239.27 dst=5.175.170.216:1433 proto=6 msg=ET SCAN Suspicious ...
show more06/10/2026-08:59:12.361346 src=115.246.239.27 dst=5.175.170.216:1433 proto=6 msg=ET SCAN Suspicious inbound to MSSQL port 1433
show less
06/09/2026-07:26:33.006626 src=115.246.239.27 dst=5.175.170.179:1433 proto=6 msg=ET SCAN Suspicious ...
show more06/09/2026-07:26:33.006626 src=115.246.239.27 dst=5.175.170.179:1433 proto=6 msg=ET SCAN Suspicious inbound to MSSQL port 1433
show less
SQL Injection
Showing 1 to
15
of 19 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ