AbuseIPDB » 131.196.12.144
131.196.12.144 was found in our database!
This IP was reported 39 times. Confidence of Abuse is 81%: ?
| ISP | NEGOCIOS Y TELEFONIA NEDETEL S.A. |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS52468 |
| Hostname(s) |
144-12-196-131.ufinetlatam.net.ec |
| Domain Name | nedetel.net |
| Country | ๐ช๐จ Ecuador |
| City | Guayaquil, Guayas |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 131.196.12.144:
This IP address has been reported a total of 39 times from 29 distinct sources. 131.196.12.144 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐น๐ท Domainhizmetleri.com |
Source: DH Hunter (Honeypot) | Reason: Telnet Login Attempt (23/tcp)
|
Port Scan SSH | ||
| ๐ฌ๐ง essinghigh |
IPS Detection: 131.196.12.144 -> DPT: 23
|
Port Scan | ||
| ๐บ๐ธ johuang92 |
Cowrie SSH honeypot: session 75d4290eb2eb
|
SSH | ||
| ๐ณ๐ฑ EGP Abuse Dept |
Unauthorized connection to Telnet port 23
|
Port Scan Hacking | ||
| ๐บ๐ธ johuang92 |
Cowrie SSH honeypot: session 30e7e70c8066
|
SSH | ||
| ๐บ๐ธ drewf.ink |
[23:36] Attempted telnet login with credentials root:/******a
|
Brute-Force IoT Targeted | ||
| ๐ฉ๐ช KPS |
PortscanT
|
Port Scan | ||
| ๐ฉ๐ช guldkage |
Unauthorized connection attempt detected from IP address 131.196.12.144 to port 23 (ger-03) [k]
|
Brute-Force Exploited Host | ||
| ๐บ๐ธ drewf.ink |
[02:42] Attempted telnet login with credentials root:F******p
|
Brute-Force IoT Targeted | ||
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:57475 dst:23
|
Port Scan | ||
| ๐บ๐ธ cybsecaoccol |
unauthorized connection or malicious port scan attempted on tcp port - corp
|
Port Scan Hacking | ||
| ๐บ๐ธ RAP |
2026-09-02 18:44:28 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐บ๐ธ ipblock.com |
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
|
Hacking Bad Web Bot Web App Attack | ||
| ๐บ๐ธ NetVexor |
Attack source identified and submitted via NetVexor BGP Blackhole Network
|
Port Scan Hacking Brute-Force | ||
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:28839 dst:23
|
Port Scan |
Showing 1 to 15 of 39 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ